cjoint

Publicité


Publicité

Commentaire : virus et dll manquante

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2014.4.14.26 - Nicolas Coolman (14/04/2014)
~ Lancé par Angélique (20/12/2015 15:53:16)
~ Adresse du Site Web http://nicolascoolman.webs.com
~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v11.20.10586.0
MFIE: Mozilla Firefox 39.0 (Defaut)
GCIE: Google Chrome v47.0.2526.106

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 10 Home, 64-bit (Build 10586)
Windows Server License Manager Script : OK
System - Enable Open file C:\Users\Angélique\AppData\Roaming\ZHP\Licence.txt =>.Nicolas Coolman

---\\ Logiciels de protection du système
Malwarebytes Anti-Malware version 2.1.6.1022

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer
eMule

---\\ Surveillance de Logiciels
Adobe Flash Player 20 NPAPI
Adobe Reader X

---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3979 MB (40% free)
System Restore: Activé (Enable)
System drive C: has 155 GB (55%) free of 279 GB

---\\ Mode de connexion au système
~ Computer Name: ANGIE
~ User Name: Angélique
~ All Users Names: DefaultAccount, Angélique, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Angélique\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Angélique\AppData\Roaming\
~ %Desktop% : C:\Users\Angélique\Desktop\
~ %Favorites% : C:\Users\Angélique\Favorites\
~ %LocalAppData% : C:\Users\Angélique\AppData\Local\
~ %StartMenu% : C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 155 Go of 279 Go)
D: Hard drive, Flash drive, Thumb drive (Free 316 Go of 398 Go)
E: CD-ROM drive (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
~ Security Center: 40 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.4572EB3DDBD2DFA10DE7A037A6CC6D53] - (.Microsoft Corporation - Explorateur Windows.) (.30/10/2015 - 08:18:10.) -- C:\Windows\Explorer.exe [4502864]
[MD5.CAD491DD9EC00BB841EA407D9C498C4A] - (.Microsoft Corporation - Application de démarrage de Windows.) (.30/10/2015 - 08:17:53.) -- C:\Windows\System32\Wininit.exe [290856]
[MD5.AB4C1A9F37C0B8467AC923ED4AD727D6] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.22/11/2015 - 10:24:13.) -- C:\Windows\System32\wininet.dll [2647552]
[MD5.46C8E60DEDBDA95C102D1B2E74676578] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.30/10/2015 - 08:17:53.) -- C:\Windows\System32\Winlogon.exe [584704]
[MD5.9EEAA1B69DC3FD620AE576CC8F4147DC] - (.Microsoft Corporation - Bibliothèque de licences.) (.30/10/2015 - 08:17:52.) -- C:\Windows\System32\sppcomapi.dll [430592]
[MD5.70148EFA9A562E7185B75BBE7D376BF7] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.05/11/2015 - 11:25:01.) -- C:\Windows\system32\Drivers\AFD.sys [578912]
[MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.30/10/2015 - 08:17:23.) -- C:\Windows\system32\Drivers\atapi.sys [28512]
[MD5.7F9C7226D743B232907ED2537B8A574F] - (.Microsoft Corporation - CD-ROM File System Driver.) (.30/10/2015 - 08:18:09.) -- C:\Windows\system32\Drivers\Cdfs.sys [92672]
[MD5.82D97776BF982AA143BDC7DFB5054EA8] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.30/10/2015 - 08:17:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [173568]
[MD5.C9478D7DB7BE5D7ACE65CB1167F07320] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.30/10/2015 - 08:17:58.) -- C:\Windows\system32\Drivers\DfsC.sys [148480]
[MD5.84BC034B6BB763733C1949B7B9BAF976] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.30/10/2015 - 08:17:18.) -- C:\Windows\system32\Drivers\HDAudBus.sys [79872]
[MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - (.Microsoft Corporation - Pilote de port i8042.) (.30/10/2015 - 08:17:23.) -- C:\Windows\system32\Drivers\i8042prt.sys [114688]
[MD5.9E5E8F2A1996F23B7E9687846AA81B01] - (.Microsoft Corporation - IP Network Address Translator.) (.30/10/2015 - 08:17:43.) -- C:\Windows\system32\Drivers\IpNat.sys [143360]
[MD5.61F9F27A8C3D7BCD287FE98A440421CE] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.30/10/2015 - 08:17:58.) -- C:\Windows\system32\Drivers\MRxSmb.sys [430944]
[MD5.F51C02D992A8D6BC5EC4D990F227D4C7] - (.Microsoft Corporation - MBT Transport driver.) (.30/10/2015 - 08:18:08.) -- C:\Windows\system32\Drivers\netBT.sys [279552]
[MD5.EFEFC245B884B1BE0401931398DCD707] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.01/12/2015 - 08:12:09.) -- C:\Windows\system32\Drivers\ntfs.sys [2152800]
[MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - (.Microsoft Corporation - Pilote de port parallèle.) (.30/10/2015 - 08:17:23.) -- C:\Windows\system32\Drivers\Parport.sys [96768]
[MD5.381B8F2311A0375676B635EA5E7C8AB0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.30/10/2015 - 08:17:41.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [104960]
[MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.30/10/2015 - 20:02:52.) -- C:\Windows\system32\Drivers\rdpdr.sys [173056]
[MD5.91D3F2A6253EF83EFBD7903028F58C4D] - (.Microsoft Corporation - TDI Translation Driver.) (.05/11/2015 - 13:05:48.) -- C:\Windows\system32\Drivers\tdx.sys [118624]
[MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.30/10/2015 - 08:17:22.) -- C:\Windows\system32\Drivers\volsnap.sys [414560]
~ Generic Processes: Scanned in 00mn 01s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/1614
~ Mes Videos (My Videos) : 1/45
~ Mes Favoris (My Favorites) : 1/7
~ Mes Documents (My Documents) : 8/174
~ Mon Bureau (My Desktop) : 47/1786
~ Menu demarrer (Programs) : 1/39
~ Hidden Files: Scanned in 00mn 09s



---\\ Processus lancés
[MD5.3BCB17DC9584A9A37E2187089FFDC2E7] - (.ASUS - ASUS InstantOn.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1122688] [PID.284]
[MD5.97432AB9F1B3B3E63E778C1E69E71E91] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1124032] [PID.4132]
[MD5.EE73B56ED71EB6383F25FA5468923BB2] - (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144] [PID.4708]
[MD5.A7BFC2C5D570EC93720DABC8B85ADEF9] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.4816]
[MD5.0B50F07E63EE15383CDFDC26D7A3D3E3] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [205184] [PID.4264]
[MD5.23075147F62C896784C66D706F38360E] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [328504] [PID.4180]
[MD5.B7BCA8A30CE13A283CDBDECEF5616C39] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [107192] [PID.5540]
[MD5.2010CA459E5EC8F9D5FC8B000D130294] - (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Angélique\AppData\Local\Microsoft\OneDrive\OneDrive.exe [551112] [PID.5660]
[MD5.97202E9C0D86387888435470CCAF45BE] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [192000] [PID.4104]
[MD5.B7995C675014EEBE77A0BEB7AFCCFC08] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432] [PID.6340]
[MD5.46B9417D04912FFE8FA205B3D10A1B75] - (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2239376] [PID.6384]
[MD5.6126702310F6E07A34506008463D0173] - (.Sony Corporation - Media Check Tool.) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2548248] [PID.6404]
[MD5.71738E5D624F00EFE56F7C35DB36267C] - (.Adobe Systems Incorporated - Adobe IPC Broker.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe [769904] [PID.6504]
[MD5.8021019D4600D97E67EF8AED3D3E5EA2] - (.Adobe Systems Incorporated - Adobe CEF Helper.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe [395120] [PID.6296]
[MD5.F3F709C2D49DD6636F4EDE5C2CAE5448] - (.http://www.emule-project.net - eMule.) -- C:\Program Files (x86)\eMule\emule.exe [5758976] [PID.7128]
[MD5.1E827B1C08007E18424315DDA4756279] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.3984]
[MD5.775DDB699B40C42E1BD799CC0EBF3528] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8215552] [PID.824]
~ Processes Running: Scanned in 00mn 02s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Preferences

---\\ Liste des dossiers d'extension Google Chrome

~ Google Lines Browser: 0 Scanned in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Angélique\AppData\Roaming\Mozilla\Firefox\Profiles\eheix3lq.default-1397253218871\prefs.js
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.41105.0.) -- C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll
P2 - FPN: [HKLM] [adobe.com/AdobeAAMDetect_x86_64] - (.Adobe Systems - Creative Cloud Desktop Plugin.v_2_0_0_0.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll
P2 - FPN: [HKCU] [sony.com/MediaGoDetector] - (.Sony Network Entertainment International LL - Media Go Detector Plug-in.) -- C:\Program Files (x86)\Sony\Media Go\npMediaGoDetector.dll
~ Firefox Browser: 4 Scanned in 00mn 04s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.10586.17 (th2_release.151121-2308)) -- C:\Windows\SysWOW64\ieframe.dll
~ IE Browser: 22 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 22



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} Clé orpheline
O2 - BHO: (no name) [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} Clé orpheline
~ BHO: 4 Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Angélique]: CONTES.lnk . (...) -- D:\TRAVAUX D ECRITURE\CONTES
O4 - GS\Desktop [Angélique]: Izia - Dessins animés -.lnk . (...) -- D:\IZIA - dessins animés
O4 - GS\Desktop [Angélique]: Izia' tales.lnk . (...) -- D:\Izia' tales
O4 - GS\Desktop [Angélique]: L'atelier du scrib'art.lnk . (...) -- D:\L'atelier du scrib'art
O4 - GS\Desktop [Angélique]: L'invasion des Trobbans.lnk . (...) -- D:\L'invasion des Trobbans
O4 - GS\Desktop [Angélique]: LES POURQUOI.lnk . (...) -- D:\IZIA - école Victor hugo\LES POURQUOI
O4 - GS\Desktop [Angélique]: MSI IMPLANTS - Raccourci.lnk . (...) -- D:\MSI IMPLANTS
O4 - GS\Desktop [Angélique]: Update Checker.lnk . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
~ Global Startup: 8 Scanned in 00mn 01s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ACMON] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
O4 - HKLM\..\Run: [ShadowPlay] . (.NVIDIA Corporation - NVIDIA Capture Server Proxy.) -- C:\Windows\system32\nvspcap64.dll
O4 - HKCU\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
O4 - HKCU\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
O4 - HKCU\..\Run: [Badoo Desktop] . (.Badoo - Badoo Desktop.) -- C:\ProgramData\Badoo\Badoo desktop\1.6.58.1220\Badoo.desktop.exe
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Angélique\AppData\Local\Microsoft\OneDrive\OneDrive.exe
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Angélique\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\WINDOWS\system32\cmd.exe =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe
O4 - HKLM\..\Wow6432Node\Run: [HDAudDeck] . (.VIA - VIA HD Audio CPL.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
O4 - HKLM\..\Wow6432Node\Run: [PMBVolumeWatcher] . (.Sony Corporation - Media Check Tool.) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe
O4 - HKUS\S-1-5-21-2741308799-4069407637-4289950776-1002\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
O4 - HKUS\S-1-5-21-2741308799-4069407637-4289950776-1002\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
O4 - HKUS\S-1-5-21-2741308799-4069407637-4289950776-1002\..\Run: [Badoo Desktop] . (.Badoo - Badoo Desktop.) -- C:\ProgramData\Badoo\Badoo desktop\1.6.58.1220\Badoo.desktop.exe
O4 - HKUS\S-1-5-21-2741308799-4069407637-4289950776-1002\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Angélique\AppData\Local\Microsoft\OneDrive\OneDrive.exe
O4 - HKUS\S-1-5-21-2741308799-4069407637-4289950776-1002\..\RunOnce: [Uninstall C:\Users\Angélique\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\WINDOWS\system32\cmd.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 03s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Se&nd to OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll =>.Microsoft Corporation
O9 - Extra button: Skype for Business Click to Call [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\lync.exe (.not file.)
O9 - Extra button: OneNote Lin&ked Notes [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll =>.Microsoft Corporation
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\WINDOWS\system32\napinsp.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\WINDOWS\system32\pnrpnsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\WINDOWS\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\WINDOWS\system32\NLAapi.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll
~ Winsock: 6 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{de93685e-d109-4e75-a0f7-96531069f6e7}: NameServer = 8.8.8.8,8.8.8.4
O17 - HKLM\System\CCS\Services\Tcpip\..\{f2b84631-4f78-4e6c-b8e0-d6440be8401d}: NameServer = 212.27.40.240,212.27.40.241
O17 - HKLM\System\CCS\Services\Tcpip\..\{de93685e-d109-4e75-a0f7-96531069f6e7}: DhcpNameServer = 89.2.0.10
O17 - HKLM\System\CS1\Services\Tcpip\..\{de93685e-d109-4e75-a0f7-96531069f6e7}: NameServer = 8.8.8.8,8.8.8.4
O17 - HKLM\System\CS1\Services\Tcpip\..\{f2b84631-4f78-4e6c-b8e0-d6440be8401d}: NameServer = 212.27.40.240,212.27.40.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{de93685e-d109-4e75-a0f7-96531069f6e7}: DhcpNameServer = 89.2.0.10
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.10
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) --
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 353.) - C:\Windows\system32\nvinitx.dll
~ AppInit DLL: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) . (.ASUS - ASUS InstantOn Program.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) - C:\WINDOWS\system32\nvvsvc.exe
O23 - Service: PMBDeviceInfoProvider (PMBDeviceInfoProvider) . (.Sony Corporation - Device Information Provider.) - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: Sony Digital Media Server (SOHDms) . (.Sony Corporation - Sony Digital Media Server.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: oem91.inf (VIAKaraokeService) . (.VIA Technologies, Inc. - Service binary.) - C:\Windows\System32\viakaraokesrv.exe
~ Services: 17 Scanned in 00mn 16s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1084]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1088]
[MD5.B89A82FB10E98F2FDF51FA82C7366DD3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736]
[MD5.F54564025D2284AE498E51D7C139F971] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504]
[MD5.3BCB17DC9584A9A37E2187089FFDC2E7] [APT] [ASUS InstantOn Config] (.ASUS.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1122688]
[MD5.CDEAAFB72433CB87D34BD91F0F1BA8D8] [APT] [ASUS Live Update1] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1602368]
[MD5.CDEAAFB72433CB87D34BD91F0F1BA8D8] [APT] [ASUS Live Update2] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1602368]
[MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] [APT] [ASUS P4G] (.ASUS.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240]
[MD5.96CBFC8DB8026CB0092D3BDF09CD8079] [APT] [ASUS Patch for VIA Audio] (.ASUSTek Computer INC..) -- C:\Windows\system32\AsPatchViaAudio.exe [160448]
[MD5.00000000000000000000000000000000] [APT] [ASUS Smart Gesture Launcher] (...) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [ASUS Touchpad Launcher (x64)] (...) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe (.not file.) [0]
[MD5.97432AB9F1B3B3E63E778C1E69E71E91] [APT] [ASUS USB Charger Plus] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1124032]
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200]
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200]
[MD5.00000000000000000000000000000000] [APT] [{AB9C590B-E71D-40AE-9399-D300C54931FE}] (...) -- C:\Users\Angélique\AppData\Roaming\sweet-page\UninstallManager.exe (.not file.) [0] =>PUP.SweetPage
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984]
[MD5.3C1865D8E8C2DD9ADB29B1A21A8B1972] [APT] [SOHLib SOHDms] (.Sony Corporation.) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [495248]
~ Scheduled Task: 21 Scanned in 00mn 17s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll
~ Active Setup: 9 Scanned in 00mn 01s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: C:\Windows\System32\drivers\ahcache.sys (ahcache) . (.Microsoft Corporation - Application Compatibility Cache.) - C:\Windows\System32\DRIVERS\ahcache.sys
O41 - Driver: (ATKWMIACPIIO) . (.ASUS - ATK WMIACPI Utility.) - C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys
O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys
O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\filecrypt.sys (FileCrypt) . (.Microsoft Corporation - Windows sandboxing and encryption filter.) - C:\Windows\System32\drivers\filecrypt.sys
O41 - Driver: C:\Windows\System32\drivers\gpuenergydrv.sys (GpuEnergyDrv) . (.Microsoft Corporation - GPU Energy Kernel Driver.) - C:\Windows\System32\drivers\gpuenergydrv.sys
O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: C:\Windows\system32\drivers\netbios.sys (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\drivers\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\drivers\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: C:\Windows\System32\drivers\vwififlt.sys (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\drivers\vwififlt.sys
~ Drivers: 38 Scanned in 00mn 01s



---\\ Logiciels installés (O42)
O42 - Logiciel: ASUS Instant Connect - (.ASUS.) [HKLM][64Bits] -- {89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}
O42 - Logiciel: ASUS InstantOn - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91}
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4}
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA}
O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D}
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D}
O42 - Logiciel: ASUS Tutor - (.ASUS.) [HKLM][64Bits] -- {58172D66-2F69-4215-9AEC-ED8196023736}
O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}
O42 - Logiciel: ASUS WebStorage Sync Agent - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- ASUS WebStorage
O42 - Logiciel: ASUSDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: ASUSDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
O42 - Logiciel: AVS Update Manager 1.0 - (.Online Media Technologies Ltd..) [HKLM][64Bits] -- AVS Update Manager_is1
O42 - Logiciel: AVS Video Converter 8 - (.Online Media Technologies Ltd..) [HKLM][64Bits] -- AVS4YOU Video Converter 7_is1
O42 - Logiciel: AVS4YOU Software Navigator 1.4 - (.Online Media Technologies Ltd..) [HKLM][64Bits] -- AVS4YOU Software Navigator_is1
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud
O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Reader X (10.1.16) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824161310}
O42 - Logiciel: Adobe Shockwave Player 12.2 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player
O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- AmUStor
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549}
O42 - Logiciel: BD Studio Pratic - (.Micro Application.) [HKLM][64Bits] -- BD Studio Pratic
O42 - Logiciel: Badoo Desktop - (.Badoo.) [HKLM][64Bits] -- {D91D71FB-C52E-440D-8A78-5E5E05487DA0}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Drawn: Trail of Shadows - (.WildTangent.) [HKLM][64Bits] -- WTA-15218ecd-d2d9-4a97-85e5-b5d0f960f0cb
O42 - Logiciel: Détection de l'application Winamp - (.Nullsoft, Inc.) [HKCU][64Bits] -- Winamp Detect
O42 - Logiciel: FileHippo.com Update Checker - (...) [HKLM][64Bits] -- FileHippo.com
O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {41BF4A3B-D60A-4E92-883F-C88C8C157261}
O42 - Logiciel: GIMP 2.8.4 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google+ Auto Backup - (.Google.) [HKLM][64Bits] -- {D4C4A751-F7F3-4DCA-B825-9AC391BFFC3F}
O42 - Logiciel: Inkscape 0.91 - (.inkscape.org.) [HKLM][64Bits] -- {81922150-317E-4BB0-A31D-FF1C14F707C5}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0}
O42 - Logiciel: Jeux WildTangent - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall
O42 - Logiciel: Les Essentiels - Communication écrite SPACE 3.27h - (.Woonoz SAs.) [HKLM][64Bits] -- Les Essentiels - Communication écrite SPACE 3.27h
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77}
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.6.1022 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Media Go - (.Sony.) [HKLM][64Bits] -- {F66C4A41-C3A8-4523-AB6C-BAA1DB38305C}
O42 - Logiciel: Media Go Network Downloader - (.Sony.) [HKLM][64Bits] -- {5562F05F-908C-4F15-9B3C-98D5FD32DCAB}
O42 - Logiciel: Media Go Video Playback Engine 2.4.103.12040 - (.Sony.) [HKLM][64Bits] -- {7C5AEEE1-6D7C-8922-4548-7BF9096077EC}
O42 - Logiciel: MergeModule_x64 - (.Sony Corporation.) [HKLM][64Bits] -- {20E0665F-E4EE-4E2A-8E86-EFC65129FE41}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: MyBitCast 2.0 - (.ASUS.) [HKLM][64Bits] -- MyBitCast
O42 - Logiciel: NVIDIA GeForce Experience 1.8.2.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.14.0702 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B455E95A-B804-439F-B533-336B1635AE97}
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
O42 - Logiciel: NVIDIA Pilote graphique 344.75 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA Virtual Audio 1.2.20 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver
O42 - Logiciel: NWZ-E380 WALKMAN Guide - (.Sony Corporation.) [HKLM][64Bits] -- {D98ED583-338D-4425-B2EF-A4C7FB93CE88}
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE}
O42 - Logiciel: Package de pilotes Windows - ASUS (ATP) Mouse (06/17/2015 1.0.0.262) - (.ASUS.) [HKLM][64Bits] -- 14588A15B66655338DBCC021FFA81E31DC281859
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3
O42 - Logiciel: PlayMemories Home - (.Sony Corporation.) [HKLM][64Bits] -- {7EA1A4E8-A5CE-4626-87DC-6DEF99BAE931}
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {627FFC10-CE0A-497F-BA2B-208CAC638010}
O42 - Logiciel: RAR Password Unlocker 4.2.0.0 - (.Password Unlocker Studio.) [HKLM][64Bits] -- {B789FA51-6A71-408F-92DE-EDE4A517B8F9}_is1
O42 - Logiciel: Raccolta foto - (.Microsoft Corporation.) [HKLM][64Bits] -- {86A1CEAD-EF47-47BB-AE79-DA8C09E15382}
O42 - Logiciel: SOHLib for PlayMemories Home - (.Sony Corporation.) [HKLM][64Bits] -- {F07F9109-D141-4E88-BFF5-0206D61994F5}
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054}
O42 - Logiciel: Sony Mobile Update Engine - (.Sony Mobile Communications AB.) [HKLM][64Bits] -- Update Engine
O42 - Logiciel: Sony PC Companion 2.10.211 - (.Sony.) [HKLM][64Bits] -- {F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}
O42 - Logiciel: The Tiny Bang Story - (.WildTangent.) [HKLM][64Bits] -- WTA-76806852-dd21-43c9-8f6d-92304cb77344
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App
O42 - Logiciel: VIA Platform Device Manager - (.VIA Technologies, Inc..) [HKLM][64Bits] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: WhoCrashed 5.03 - (.Resplendence Software Projects Sp..) [HKLM][64Bits] -- WhoCrashed_is1
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-wildgames
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D}
O42 - Logiciel: WinRAR 5.01 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Winamp - (.Nullsoft, Inc.) [HKLM][64Bits] -- Winamp
O42 - Logiciel: Windows Driver Package - ASUS (ATP) Mouse (11/09/2012 1.0.0.153) - (.ASUS.) [HKLM][64Bits] -- 5AB9160B769DD2E134ADCB8010377DECA2479378
O42 - Logiciel: YouTube Video Downloader 2.7.1 - (.Tomato.) [HKLM][64Bits] -- YouTube Video Downloader_is1
O42 - Logiciel: eMule - (...) [HKLM][64Bits] -- eMule
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
~ Logic: 63 Scanned in 00mn 01s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\ASUS]
[HKCU\Software\AVS4YOU]
[HKCU\Software\Adobe]
[HKCU\Software\AlterGeo]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow\Software\dealscompare-3]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Aurigma]
[HKCU\Software\Badoo]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\ECAREME]
[HKCU\Software\FileHippo.com]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Lake]
[HKCU\Software\Licenses]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\Norton]
[HKCU\Software\O&O]
[HKCU\Software\ODBC]
[HKCU\Software\Policies]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\Resplendence Sp]
[HKCU\Software\Sony Corporation]
[HKCU\Software\Sony Ericsson]
[HKCU\Software\Sony]
[HKCU\Software\TeleCharger]
[HKCU\Software\Tomato]
[HKCU\Software\Trolltech]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Winamp]
[HKCU\Software\Wow6432Node]
[HKCU\Software\Xilisoft]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\eMule]
[HKCU\Software\ej-technologies]
[HKCU\Software\kde.org]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ASUS]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Agere]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Dell]
[HKLM\Software\ECAREME]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\LSI]
[HKLM\Software\Macromedia]
[HKLM\Software\McAfee.com]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\O&O]
[HKLM\Software\ODBC]
[HKLM\Software\OEM]
[HKLM\Software\Partner]
[HKLM\Software\Policies]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Sony Corporation]
[HKLM\Software\Sony Mobile]
[HKLM\Software\WOW6432Node]
[HKLM\Software\Waves Audio]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node\AGEIA Technologies]
[HKLM\Software\Wow6432Node\ASUS]
[HKLM\Software\Wow6432Node\AVS4YOU]
[HKLM\Software\Wow6432Node\Adobe Systems]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\AppDataLow]
[HKLM\Software\Wow6432Node\Apple Computer, Inc.]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\AsLdr]
[HKLM\Software\Wow6432Node\Atheros Communications Inc.]
[HKLM\Software\Wow6432Node\CDDB]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\DivXNetworks]
[HKLM\Software\Wow6432Node\ECAREME]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Lake]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\McAfee]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\NVIDIA Corporation]
[HKLM\Software\Wow6432Node\Nero]
[HKLM\Software\Wow6432Node\Norton]
[HKLM\Software\Wow6432Node\Nullsoft]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Shortcut_Module]
[HKLM\Software\Wow6432Node\Sony Corporation]
[HKLM\Software\Wow6432Node\Sony Mobile]
[HKLM\Software\Wow6432Node\Sony]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\Taronja]
[HKLM\Software\Wow6432Node\VIA Technologies, Inc]
[HKLM\Software\Wow6432Node\VideoLAN]
[HKLM\Software\Wow6432Node\WildTangent]
[HKLM\Software\Wow6432Node\anset]
[HKLM\Software\Wow6432Node\ej-technologies]
[HKLM\Software\Wow6432Node\mozilla.org]
~ Key Software: 284 Scanned in 00mn 01s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 12/10/2013 - 21:48:26 - [0,043] ----D C:\Program Files (x86)\7-Zip
O43 - CFD: 19/07/2014 - 10:25:39 - [553,983] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 18/12/2014 - 18:42:52 - [0] ----D C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 11/05/2013 - 14:58:37 - [0,128] ---AD C:\Program Files (x86)\AmIcoSingLun
O43 - CFD: 18/08/2014 - 21:48:11 - [2,316] ---AD C:\Program Files (x86)\Apple Software Update =>.Apple Inc
O43 - CFD: 04/12/2015 - 04:31:47 - [246,458] ----D C:\Program Files (x86)\ASUS
O43 - CFD: 23/10/2013 - 20:20:35 - [72,360] ----D C:\Program Files (x86)\AVS4YOU
O43 - CFD: 04/12/2015 - 04:31:48 - [443,248] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 11/05/2013 - 15:07:46 - [178,894] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 13/12/2015 - 21:13:54 - [10,401] ----D C:\Program Files (x86)\eMule
O43 - CFD: 31/12/2013 - 17:18:49 - [0,421] ----D C:\Program Files (x86)\FileHippo.com
O43 - CFD: 04/07/2014 - 23:22:05 - [558,252] ----D C:\Program Files (x86)\Google
O43 - CFD: 24/06/2014 - 14:59:09 - [40,781] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 16/05/2014 - 17:57:06 - [174,392] ----D C:\Program Files (x86)\Intel
O43 - CFD: 11/12/2015 - 02:46:07 - [2,252] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 27/02/2015 - 09:20:59 - [135,622] ----D C:\Program Files (x86)\Java
O43 - CFD: 24/08/2013 - 18:43:14 - [85,410] ----D C:\Program Files (x86)\Les Essentiels - Communication écrite
O43 - CFD: 24/05/2015 - 09:39:22 - [46,668] ---AD C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 09/11/2013 - 00:02:49 - [68,127] ----D C:\Program Files (x86)\Micro Application
O43 - CFD: 27/11/2012 - 05:07:02 - [0,265] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 11/12/2015 - 02:47:16 - [40,892] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 27/11/2012 - 05:09:40 - [5,397] ----D C:\Program Files (x86)\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 27/11/2012 - 05:10:28 - [1,745] ---AD C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 04/12/2015 - 04:31:49 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 11/07/2015 - 08:49:44 - [85,395] ---AD C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 11/07/2015 - 08:49:44 - [0,247] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 04/12/2015 - 04:10:47 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 06/07/2014 - 20:33:47 - [15,001] ----D C:\Program Files (x86)\Notepad++
O43 - CFD: 04/12/2015 - 04:31:50 - [208,558] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 29/07/2015 - 16:31:56 - [70,157] ---AD C:\Program Files (x86)\QuickTime
O43 - CFD: 23/10/2013 - 17:51:54 - [9,530] ---AD C:\Program Files (x86)\RAR Password Unlocker
O43 - CFD: 04/12/2015 - 04:10:47 - [36,669] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 19/12/2015 - 01:28:56 - [1132,665] ----D C:\Program Files (x86)\Sony
O43 - CFD: 19/12/2015 - 09:30:39 - [11,300] ----D C:\Program Files (x86)\Sony Media Go Install
O43 - CFD: 24/06/2014 - 15:19:44 - [146,585] ----D C:\Program Files (x86)\Sony Mobile
O43 - CFD: 30/06/2014 - 22:03:46 - [3,160] ----D C:\Program Files (x86)\Tomato
O43 - CFD: 18/08/2013 - 20:20:06 - [37,088] ----D C:\Program Files (x86)\Ubi Soft
O43 - CFD: 04/12/2015 - 04:24:25 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 11/05/2013 - 14:59:22 - [48,690] ----D C:\Program Files (x86)\VIA
O43 - CFD: 15/12/2014 - 21:54:15 - [95,747] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 27/10/2013 - 20:01:53 - [0,628] ---AD C:\Program Files (x86)\WildGames
O43 - CFD: 19/10/2014 - 15:27:42 - [765,849] ----D C:\Program Files (x86)\WildTangent Games
O43 - CFD: 18/12/2013 - 09:40:06 - [42,330] ----D C:\Program Files (x86)\Winamp
O43 - CFD: 18/12/2013 - 09:39:00 - [0,172] ----D C:\Program Files (x86)\Winamp Detect
O43 - CFD: 30/10/2015 - 20:00:06 - [1,398] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 18/12/2014 - 13:21:57 - [102,804] ---AD C:\Program Files (x86)\Windows Live
O43 - CFD: 04/12/2015 - 04:31:51 - [5,686] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 30/10/2015 - 20:00:06 - [3,188] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 30/10/2015 - 08:24:28 - [0,210] ----D C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 30/10/2015 - 08:24:24 - [7,225] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 30/10/2015 - 20:00:06 - [5,230] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 30/10/2015 - 08:24:28 - [0,210] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 30/10/2015 - 08:24:24 - [0] -SH-D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 30/10/2015 - 08:24:24 - [3,425] -S--D C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 23/10/2013 - 19:03:52 - [1,810] ----D C:\Program Files (x86)\WinRAR
O43 - CFD: 12/08/2014 - 18:10:14 - [0] --H-D C:\Program Files (x86)\Zero G Registry
O43 - CFD: 14/04/2014 - 21:24:22 - [17,152] ---AD C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 19/07/2014 - 10:24:27 - [151,818] ---AD C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 19/02/2014 - 15:40:08 - [0,069] ----D C:\Program Files (x86)\Common Files\Adobe Systems Shared
O43 - CFD: 18/08/2014 - 21:48:26 - [63,233] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 23/10/2013 - 20:15:28 - [92,121] ----D C:\Program Files (x86)\Common Files\AVSMedia
O43 - CFD: 23/07/2015 - 00:48:32 - [0,013] ---AD C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 11/05/2013 - 14:59:05 - [1,629] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 27/02/2015 - 09:21:45 - [2,052] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 04/12/2015 - 04:31:48 - [47,889] ---AD C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 11/05/2013 - 14:57:08 - [0,185] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 18/12/2013 - 09:36:38 - [4,559] ----D C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 30/10/2015 - 08:24:28 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 24/06/2014 - 21:13:31 - [60,977] ----D C:\Program Files (x86)\Common Files\Sony Shared
O43 - CFD: 21/11/2015 - 16:36:36 - [0] ----D C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 04/12/2015 - 04:31:48 - [9,228] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 30/06/2014 - 22:03:49 - [7,397] ----D C:\Program Files (x86)\Common Files\Tomato
O43 - CFD: 27/11/2012 - 05:09:32 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 12/04/2014 - 16:28:55 - [0,004] ----D C:\ProgramData\3738F
O43 - CFD: 19/07/2014 - 10:25:35 - [45,861] ----D C:\ProgramData\Adobe
O43 - CFD: 19/02/2014 - 15:47:12 - [0,006] ----D C:\ProgramData\Adobe Systems
O43 - CFD: 11/05/2013 - 14:58:37 - [2,508] ----D C:\ProgramData\AmUStor
O43 - CFD: 21/11/2015 - 16:35:04 - [0] ----D C:\ProgramData\APN
O43 - CFD: 18/08/2014 - 21:48:08 - [22,627] ----D C:\ProgramData\Apple
O43 - CFD: 29/07/2015 - 16:31:19 - [27,090] ----D C:\ProgramData\Apple Computer
O43 - CFD: 04/12/2015 - 05:26:00 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 04/12/2015 - 09:56:04 - [3,847] ----D C:\ProgramData\ASUS Smart Gesture
O43 - CFD: 27/11/2012 - 05:09:15 - [0,002] ----D C:\ProgramData\ASUS WebStorage
O43 - CFD: 27/11/2012 - 05:08:26 - [0,012] ----D C:\ProgramData\ASUSLogos
O43 - CFD: 23/10/2013 - 17:09:01 - [0] ----D C:\ProgramData\AVS4YOU
O43 - CFD: 15/08/2014 - 21:38:12 - [1,829] ----D C:\ProgramData\Badoo
O43 - CFD: 01/03/2014 - 13:20:49 - [0,001] ----D C:\ProgramData\BlueStacks
O43 - CFD: 12/08/2014 - 20:47:36 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 27/11/2012 - 05:09:20 - [4,688] ----D C:\ProgramData\ChangeFolderView
O43 - CFD: 27/10/2013 - 20:04:45 - [0] ----D C:\ProgramData\Colibri Games
O43 - CFD: 30/10/2015 - 08:24:24 - [0] ----D C:\ProgramData\Comms
O43 - CFD: 28/08/2013 - 19:36:05 - [0,101] ----D C:\ProgramData\CyberLink
O43 - CFD: 04/12/2015 - 05:26:00 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 13/12/2015 - 21:15:57 - [0] ----D C:\ProgramData\eMule
O43 - CFD: 12/08/2013 - 12:10:54 - [0,585] ----D C:\ProgramData\FolderView
O43 - CFD: 11/05/2013 - 14:58:24 - [0,343] ----D C:\ProgramData\Intel
O43 - CFD: 06/05/2015 - 13:25:22 - [56,142] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 04/08/2014 - 21:03:03 - [0] ----D C:\ProgramData\McAfee
O43 - CFD: 12/08/2014 - 20:47:36 - [0] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 05/12/2015 - 08:18:26 - [1007,191] -S--D C:\ProgramData\Microsoft
O43 - CFD: 16/07/2014 - 13:29:16 - [0] ----D C:\ProgramData\Microsoft OneDrive
O43 - CFD: 27/11/2012 - 05:09:40 - [0] ----D C:\ProgramData\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 12/08/2014 - 20:47:36 - [0] -SH-D C:\ProgramData\Modèles
O43 - CFD: 12/08/2013 - 12:26:25 - [0,036] ----D C:\ProgramData\Mozilla
O43 - CFD: 21/11/2015 - 16:10:09 - [0,237] ----D C:\ProgramData\Norton
O43 - CFD: 26/10/2015 - 00:09:44 - [2,159] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 04/12/2015 - 04:24:38 - [0] ----D C:\ProgramData\NVIDIA
O43 - CFD: 04/12/2015 - 04:32:03 - [-1961,144] ----D C:\ProgramData\NVIDIA Corporation
O43 - CFD: 06/05/2015 - 13:10:37 - [54,333] ----D C:\ProgramData\OO Software
O43 - CFD: 27/02/2015 - 09:22:30 - [67,709] ----D C:\ProgramData\Oracle
O43 - CFD: 11/05/2013 - 15:05:40 - [0,002] ---AD C:\ProgramData\P4G
O43 - CFD: 07/12/2015 - 00:46:39 - [7,031] ----D C:\ProgramData\Package Cache
O43 - CFD: 30/07/2015 - 10:24:38 - [0,041] ----D C:\ProgramData\PRICache
O43 - CFD: 04/12/2015 - 04:40:55 - [0,002] ----D C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 18/12/2015 - 07:37:10 - [0,004] ---AD C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 04/12/2015 - 04:24:53 - [50,996] ----D C:\ProgramData\SetupTPDriver
O43 - CFD: 30/10/2015 - 08:24:24 - [0] ----D C:\ProgramData\SoftwareDistribution =>Adware.Boxore
O43 - CFD: 21/10/2013 - 17:32:53 - [8,229] ----D C:\ProgramData\Sony
O43 - CFD: 19/12/2015 - 01:28:57 - [20,339] ---AD C:\ProgramData\Sony Corporation
O43 - CFD: 24/06/2014 - 15:19:43 - [892,344] ----D C:\ProgramData\Sony Mobile
O43 - CFD: 28/11/2014 - 11:41:31 - [0] ----D C:\ProgramData\Sun
O43 - CFD: 11/05/2013 - 15:08:24 - [0,356] ----D C:\ProgramData\Temp
O43 - CFD: 11/05/2013 - 15:15:27 - [0] ----D C:\ProgramData\USBChargerPlus
O43 - CFD: 04/12/2015 - 04:32:04 - [0,002] ----D C:\ProgramData\USOPrivate
O43 - CFD: 10/07/2015 - 13:22:45 - [2,023] ----D C:\ProgramData\USOShared
O43 - CFD: 27/10/2013 - 20:03:04 - [0,443] ----D C:\ProgramData\WildTangent
O43 - CFD: 13/04/2014 - 17:01:18 - [9,553] ----D C:\Users\Angélique\AppData\Roaming\Adobe
O43 - CFD: 18/08/2014 - 22:47:53 - [0,023] ----D C:\Users\Angélique\AppData\Roaming\Apple Computer
O43 - CFD: 25/08/2013 - 11:01:07 - [0] ----D C:\Users\Angélique\AppData\Roaming\ASUS
O43 - CFD: 12/08/2013 - 12:12:12 - [0] ----D C:\Users\Angélique\AppData\Roaming\ASUS WebStorage
O43 - CFD: 23/10/2013 - 17:10:28 - [0] ----D C:\Users\Angélique\AppData\Roaming\AVS4YOU
O43 - CFD: 25/08/2014 - 19:31:27 - [15,437] ----D C:\Users\Angélique\AppData\Roaming\Big Fish Games
O43 - CFD: 27/10/2013 - 20:04:45 - [0,005] ----D C:\Users\Angélique\AppData\Roaming\Colibri Games
O43 - CFD: 28/08/2013 - 19:35:24 - [0,002] ----D C:\Users\Angélique\AppData\Roaming\CyberLink
O43 - CFD: 12/08/2014 - 20:51:34 - [0] ----D C:\Users\Angélique\AppData\Roaming\Identities
O43 - CFD: 08/04/2015 - 08:20:01 - [0,023] ----D C:\Users\Angélique\AppData\Roaming\inkscape
O43 - CFD: 12/08/2013 - 12:09:20 - [0,001] ----D C:\Users\Angélique\AppData\Roaming\Macromedia
O43 - CFD: 06/05/2015 - 13:25:22 - [0] ----D C:\Users\Angélique\AppData\Roaming\Malwarebytes
O43 - CFD: 04/12/2015 - 04:46:08 - [129,037] -S--D C:\Users\Angélique\AppData\Roaming\Microsoft
O43 - CFD: 12/08/2013 - 12:27:05 - [112,933] ----D C:\Users\Angélique\AppData\Roaming\Mozilla
O43 - CFD: 21/01/2014 - 18:44:12 - [0] ----D C:\Users\Angélique\AppData\Roaming\MusicNet
O43 - CFD: 06/07/2014 - 20:33:58 - [0,495] ----D C:\Users\Angélique\AppData\Roaming\Notepad++
O43 - CFD: 06/02/2014 - 20:12:17 - [0,999] ----D C:\Users\Angélique\AppData\Roaming\NVIDIA
O43 - CFD: 06/02/2014 - 09:24:16 - [0] ----D C:\Users\Angélique\AppData\Roaming\PDAppFlex
O43 - CFD: 24/06/2014 - 21:14:15 - [63,997] ----D C:\Users\Angélique\AppData\Roaming\Sony
O43 - CFD: 24/06/2014 - 15:16:40 - [25,846] ----D C:\Users\Angélique\AppData\Roaming\Sony Corporation
O43 - CFD: 18/12/2013 - 09:36:57 - [0,142] ----D C:\Users\Angélique\AppData\Roaming\Todae
O43 - CFD: 01/08/2014 - 19:43:10 - [0,052] ----D C:\Users\Angélique\AppData\Roaming\Tomato
O43 - CFD: 21/11/2015 - 14:56:55 - [0,080] ----D C:\Users\Angélique\AppData\Roaming\vlc
O43 - CFD: 27/10/2013 - 19:58:04 - [2,273] ----D C:\Users\Angélique\AppData\Roaming\WildTangent
O43 - CFD: 18/12/2013 - 09:36:47 - [0,089] ----D C:\Users\Angélique\AppData\Roaming\Winamp
O43 - CFD: 23/10/2013 - 19:06:12 - [1,809] ----D C:\Users\Angélique\AppData\Roaming\WinRAR
O43 - CFD: 23/10/2013 - 17:25:15 - [0] ----D C:\Users\Angélique\AppData\Roaming\Xilisoft
O43 - CFD: 20/12/2015 - 15:54:20 - [0,421] ----D C:\Users\Angélique\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 04/12/2015 - 09:56:06 - [0] ----D C:\Users\Angélique\AppData\Local\ActiveSync
O43 - CFD: 25/10/2015 - 23:59:43 - [17,131] ----D C:\Users\Angélique\AppData\Local\Adobe
O43 - CFD: 18/08/2014 - 21:48:13 - [0] ----D C:\Users\Angélique\AppData\Local\Apple
O43 - CFD: 03/12/2015 - 10:12:33 - [0,002] ----D C:\Users\Angélique\AppData\Local\Apple Computer
O43 - CFD: 04/12/2015 - 04:28:27 - [0] -SH-D C:\Users\Angélique\AppData\Local\Application Data
O43 - CFD: 12/08/2013 - 12:09:08 - [0,001] ----D C:\Users\Angélique\AppData\Local\ASUS
O43 - CFD: 30/12/2013 - 00:40:45 - [2,306] ----D C:\Users\Angélique\AppData\Local\cache
O43 - CFD: 13/08/2015 - 21:38:25 - [22,195] ----D C:\Users\Angélique\AppData\Local\Comms
O43 - CFD: 28/08/2013 - 20:53:38 - [0,232] ----D C:\Users\Angélique\AppData\Local\Cyberlink
O43 - CFD: 02/12/2015 - 09:19:11 - [0] ----D C:\Users\Angélique\AppData\Local\Diagnostics
O43 - CFD: 19/12/2015 - 08:48:04 - [4,931] ----D C:\Users\Angélique\AppData\Local\Downloaded Installations
O43 - CFD: 13/12/2015 - 22:02:32 - [0,430] ----D C:\Users\Angélique\AppData\Local\ElevatedDiagnostics
O43 - CFD: 04/01/2015 - 01:18:11 - [0] -SH-D C:\Users\Angélique\AppData\Local\EmieBrowserModeList
O43 - CFD: 24/11/2015 - 20:01:20 - [0] -SH-D C:\Users\Angélique\AppData\Local\EmieSiteList
O43 - CFD: 24/11/2015 - 20:01:20 - [0] -SH-D C:\Users\Angélique\AppData\Local\EmieUserList
O43 - CFD: 13/12/2015 - 21:13:54 - [2,860] ----D C:\Users\Angélique\AppData\Local\eMule
O43 - CFD: 19/11/2013 - 20:41:37 - [5,955] ----D C:\Users\Angélique\AppData\Local\fontconfig
O43 - CFD: 19/11/2013 - 20:40:12 - [0,001] ----D C:\Users\Angélique\AppData\Local\gegl-0.2
O43 - CFD: 15/09/2015 - 14:34:38 - [558,861] ----D C:\Users\Angélique\AppData\Local\Google
O43 - CFD: 11/06/2015 - 09:03:42 - [0] ----D C:\Users\Angélique\AppData\Local\GWX
O43 - CFD: 04/12/2015 - 04:28:27 - [0] -SH-D C:\Users\Angélique\AppData\Local\Historique
O43 - CFD: 19/08/2013 - 21:10:55 - [0] ----D C:\Users\Angélique\AppData\Local\Macromedia
O43 - CFD: 10/11/2013 - 14:45:36 - [0,882] ----D C:\Users\Angélique\AppData\Local\Micro Application
O43 - CFD: 04/12/2015 - 14:17:46 - [774,411] ----D C:\Users\Angélique\AppData\Local\Microsoft
O43 - CFD: 16/11/2014 - 15:12:35 - [0,121] ----D C:\Users\Angélique\AppData\Local\Microsoft Help
O43 - CFD: 11/09/2015 - 10:57:56 - [0,087] ----D C:\Users\Angélique\AppData\Local\MicrosoftEdge
O43 - CFD: 10/11/2013 - 14:45:51 - [0,002] ----D C:\Users\Angélique\AppData\Local\Micro_Application
O43 - CFD: 01/10/2013 - 11:41:47 - [5,899] ----D C:\Users\Angélique\AppData\Local\Mozilla
O43 - CFD: 30/07/2015 - 13:40:10 - [0] ----D C:\Users\Angélique\AppData\Local\NetworkTiles
O43 - CFD: 01/04/2014 - 17:12:52 - [1047,118] ----D C:\Users\Angélique\AppData\Local\NVIDIA
O43 - CFD: 01/04/2014 - 17:11:31 - [0,117] ----D C:\Users\Angélique\AppData\Local\NVIDIA Corporation
O43 - CFD: 06/05/2015 - 13:15:11 - [0,018] ----D C:\Users\Angélique\AppData\Local\O&O
O43 - CFD: 17/12/2015 - 21:43:49 - [-869,265] ----D C:\Users\Angélique\AppData\Local\Packages
O43 - CFD: 31/12/2013 - 17:43:25 - [6,733] ----D C:\Users\Angélique\AppData\Local\Programs
O43 - CFD: 30/07/2015 - 13:22:35 - [0] ----D C:\Users\Angélique\AppData\Local\Publishers
O43 - CFD: 24/06/2014 - 21:58:37 - [0,182] ----D C:\Users\Angélique\AppData\Local\Sony
O43 - CFD: 20/12/2015 - 15:55:51 - [191,925] ----D C:\Users\Angélique\AppData\Local\Temp
O43 - CFD: 04/12/2015 - 04:28:27 - [0] -SH-D C:\Users\Angélique\AppData\Local\Temporary Internet Files
O43 - CFD: 30/07/2015 - 13:17:19 - [13,820] ----D C:\Users\Angélique\AppData\Local\TileDataLayer
O43 - CFD: 18/08/2013 - 20:35:56 - [2,732] ----D C:\Users\Angélique\AppData\Local\VirtualStore
O43 - CFD: 01/12/2013 - 16:22:22 - [0,017] ----D C:\Users\Angélique\AppData\Local\webkit
O43 - CFD: 31/01/2015 - 23:58:53 - [0,066] ----D C:\Users\Angélique\AppData\Local\Windows Live
O43 - CFD: 04/12/2015 - 04:30:18 - [0,004] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 04/12/2015 - 09:54:15 - [0,003] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 07/12/2015 - 09:19:24 - [0] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 04/12/2015 - 04:40:55 - [0,001] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU
O43 - CFD: 04/12/2015 - 04:40:55 - [0,001] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Détection de l'application Winamp
O43 - CFD: 12/08/2013 - 15:46:57 - [0] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 04/12/2015 - 04:40:55 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup
O43 - CFD: 30/10/2015 - 08:24:29 - [0] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 06/07/2014 - 20:33:40 - [0] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 07/12/2015 - 09:19:24 - [0] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 04/12/2015 - 04:30:18 - [0,006] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 30/10/2015 - 08:24:49 - [0,007] RS--D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 04/12/2015 - 04:40:55 - [0,004] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
~ Program Folder: 209 Scanned in 02mn 16s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.95B9A9F4D41A54FD421CF6F7323B87FF] - 07/12/2015 - 04:32:46 ---A- . (.Microsoft Corporation - DIAL Server DLL.) -- C:\Windows\System32\dialserver.dll [126464]
O44 - LFC:[MD5.14CE7BCE9C6A442BD4B93AB3CB8765BF] - 07/12/2015 - 04:33:04 ---A- . (.Microsoft Corporation - Effectuer une conversion de type (transtypa.) -- C:\Windows\System32\MDEServer.exe [375296]
O44 - LFC:[MD5.55A629331D5EB924A1926C18E5028243] - 07/12/2015 - 04:39:24 ---A- . (.Microsoft Corporation - Windows BitLocker Drive Encryption API.) -- C:\Windows\System32\fveapi.dll [764928]
O44 - LFC:[MD5.43091BCAB6446E01AEB9DFFB2538B2F9] - 07/12/2015 - 04:40:23 ---A- . (.Microsoft Corporation - The engine that syncs ActiveSync accounts.) -- C:\Windows\System32\ActiveSyncProvider.dll [1995776]
O44 - LFC:[MD5.78065D08A6D5886ACF9B6BA7E34A554C] - 07/12/2015 - 04:40:47 ---A- . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\Windows\System32\win32kfull.sys [3593216]
O44 - LFC:[MD5.A44FB85192EE0DD3F7D6518B63044F4E] - 07/12/2015 - 04:43:07 ---A- . (.Microsoft Corporation - System settings network mobile handlers gro.) -- C:\Windows\System32\NetworkMobileSettings.dll [2598400]
O44 - LFC:[MD5.18CE63A5B5EB84FF7F9F575C8FE53F44] - 07/12/2015 - 04:43:35 ---A- . (.Microsoft Corporation - Codeur Microsoft MPEG-2.) -- C:\Windows\System32\MSMPEG2ENC.DLL [931328]
O44 - LFC:[MD5.184F5C80753CD7F6400AAA4087288B97] - 07/12/2015 - 04:45:44 ---A- . (.Microsoft Corporation - Media Foundation Media Engine DLL.) -- C:\Windows\System32\MFMediaEngine.dll [2582016]
O44 - LFC:[MD5.01AE64981A7C7AE4F84799931D8DAAD1] - 07/12/2015 - 04:45:45 ---A- . (.Microsoft Corporation - Windows.Networking.BackgroundTransfer DLL.) -- C:\Windows\System32\Windows.Networking.BackgroundTransfer.dll [900608]
O44 - LFC:[MD5.93D891995D253D4B6BCFABEE5C73454B] - 07/12/2015 - 04:47:02 ---A- . (.Microsoft Corporation - Windows Media Runtime DLL.) -- C:\Windows\System32\Windows.Media.dll [3428864]
O44 - LFC:[MD5.0F09B99EF80BB0D914538FC17A305A4F] - 07/12/2015 - 04:50:55 ---A- . (.Microsoft Corporation - Windows Runtime Window Media Audio server D.) -- C:\Windows\System32\Windows.Media.Audio.dll [1131520]
O44 - LFC:[MD5.E853D5823793FE6E5FB0351F256DC1F2] - 07/12/2015 - 04:51:00 ---A- . (.Microsoft Corporation - Windows BitLocker Drive Encryption Base API.) -- C:\Windows\System32\fveapibase.dll [223232]
O44 - LFC:[MD5.686E73A0F24F56A25A78D8EFE8E4B937] - 07/12/2015 - 04:51:16 ---A- . (.Microsoft Corporation - Bibliothèque du Gestionnaire de réseaux san.) -- C:\Windows\System32\wifinetworkmanager.dll [1318912]
O44 - LFC:[MD5.7A9FF15EF71DAC09420C4997D3FA7E48] - 07/12/2015 - 04:54:56 ---A- . (.Microsoft Corporation - Maps Store Dll.) -- C:\Windows\System32\MapsStore.dll [850432]
O44 - LFC:[MD5.735C408ADE2017B8D2F6A8D2C2DB7016] - 07/12/2015 - 04:55:38 ---A- . (.Microsoft Corporation - mos.) -- C:\Windows\System32\mos.dll [7979008]
O44 - LFC:[MD5.39E07EE74F50C39C1EB315152F03199C] - 07/12/2015 - 04:56:18 ---A- . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) -- C:\Windows\System32\wcmsvc.dll [607232]
O44 - LFC:[MD5.C8AEE94042CFDF6383C153AFD284AEF1] - 07/12/2015 - 04:56:27 ---A- . (.Microsoft Corporation - Media Foundation MKV Media Source and Sink.) -- C:\Windows\System32\mfmkvsrcsnk.dll [497152]
O44 - LFC:[MD5.8F53FEB251B01D2582931B8AC642C28A] - 07/12/2015 - 04:57:48 ---A- . (.Microsoft Corporation - DirectShow DVD PlayBack Runtime..) -- C:\Windows\System32\qdvd.dll [387072]
O44 - LFC:[MD5.6D0F04544716C90220B58008B4422B97] - 07/12/2015 - 04:58:17 ---A- . (.Microsoft Corporation - MapConfiguration.) -- C:\Windows\System32\MapConfiguration.dll [459776]
O44 - LFC:[MD5.E761095ADFC48739CA54A3B58242AF0D] - 07/12/2015 - 04:58:48 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [24601600]
O44 - LFC:[MD5.156963089DF9C18AF330E08BFE41884D] - 07/12/2015 - 04:59:16 ---A- . (.Microsoft Corporation - Provisioning Engine Datastore Library.) -- C:\Windows\System32\provdatastore.dll [165376]
O44 - LFC:[MD5.32D57C79EA65D0D6A923BF1C26A0EC0A] - 07/12/2015 - 04:59:37 ---A- . (.Microsoft Corporation - Windows MB Media Manager DLL.) -- C:\Windows\System32\MBMediaManager.dll [558080]
O44 - LFC:[MD5.7DD3B4B77A787E06A6B3DC9AE7B451E0] - 07/12/2015 - 04:59:49 ---A- . (.Microsoft Corporation - Provisioning Engine Library.) -- C:\Windows\System32\provengine.dll [292352]
O44 - LFC:[MD5.63A71E0B8BEF5FC3A5C9669B5C771A1C] - 07/12/2015 - 04:59:52 ---A- . (.Microsoft Corporation - Provisioning Engine Handlers Library.) -- C:\Windows\System32\provhandlers.dll [286208]
O44 - LFC:[MD5.B1305CDD98D5FC49863279D4B51DB510] - 07/12/2015 - 05:00:40 ---A- . (.Microsoft Corporation - Services de stockage.) -- C:\Windows\System32\StorSvc.dll [618496]
O44 - LFC:[MD5.57C2033773055CEE5963EBCB999337F8] - 07/12/2015 - 05:00:51 ---A- . (.Microsoft Corporation - Windows Connection Service Provider DLL.) -- C:\Windows\System32\wcmcsp.dll [210432]
O44 - LFC:[MD5.01C759FD50DFD46E30CC56B2B672B1A7] - 07/12/2015 - 05:00:52 ---A- . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [203776]
O44 - LFC:[MD5.6100515B0A4A9DE9EB83E632F873D1F7] - 07/12/2015 - 05:00:55 ---A- . (.Microsoft Corporation - Media Foundation FLAC Decoder.) -- C:\Windows\System32\MSFlacDecoder.dll [323072]
O44 - LFC:[MD5.3B36AFC1B127B13A82752A3F02CE9D8C] - 07/12/2015 - 05:01:07 ---A- . (.Microsoft Corporation - StoreAgent.) -- C:\Windows\System32\StoreAgent.dll [543232]
O44 - LFC:[MD5.0053C878CDBA8F8D55339547EC2E99E8] - 07/12/2015 - 05:02:01 ---A- . (.Microsoft Corporation - Downloaded Maps Manager Core.) -- C:\Windows\System32\moshostcore.dll [269824]
O44 - LFC:[MD5.88B38A7435DFA9B7E8F94F5D5FE999D2] - 07/12/2015 - 05:04:20 ---A- . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) -- C:\Windows\System32\moshost.dll [66560]
O44 - LFC:[MD5.1C671129864880F66678D3B80316074E] - 07/12/2015 - 05:04:28 ---A- . (.Microsoft Corporation - Provisioning package runtime processing too.) -- C:\Windows\System32\provtool.exe [56320]
O44 - LFC:[MD5.67C1D042FA62E2294973FD0CD1F1BC36] - 07/12/2015 - 05:05:15 ---A- . (.Microsoft Corporation - Provisioning package configuration service.) -- C:\Windows\System32\provisioningcsp.dll [192000]
O44 - LFC:[MD5.1CC123FE215B7FFBA4B7889FD13B32D5] - 07/12/2015 - 05:05:28 ---A- . (.Microsoft Corporation - Download/Upload Host.) -- C:\Windows\System32\BackgroundTransferHost.exe [36864]
O44 - LFC:[MD5.BFFC187B1FFA022F59D652A6A4CA130F] - 07/12/2015 - 05:06:38 ---A- . (.Microsoft Corporation - InstallAgent.) -- C:\Windows\System32\InstallAgent.exe [199168]
O44 - LFC:[MD5.54051585F9E1A644C3ED024B639C0E32] - 07/12/2015 - 05:06:52 ---A- . (.Microsoft Corporation - Knobs Core Library.) -- C:\Windows\System32\KnobsCore.dll [231936]
O44 - LFC:[MD5.35A6E2624696F77A8660529E9C5B7B9A] - 07/12/2015 - 05:07:13 ---A- . (.Microsoft Corporation - Windows.UI.Xaml dll.) -- C:\Windows\System32\Windows.UI.Xaml.dll [16984064]
O44 - LFC:[MD5.25DA92A03FFF1A620A950ED6209CDC8F] - 07/12/2015 - 05:07:34 ---A- . (.Microsoft Corporation - Provisioning plugin engine dll.) -- C:\Windows\System32\ProvPluginEng.dll [77312]
O44 - LFC:[MD5.9AEEB769F72EF13134BC21BA1465CCE3] - 07/12/2015 - 05:07:43 ---A- . (.Microsoft Corporation - Wi-Fi Conn API client dll.) -- C:\Windows\System32\wificonnapi.dll [134656]
O44 - LFC:[MD5.D6B9D1A83BDDF6912309A9C7C4024E10] - 07/12/2015 - 05:09:07 ---A- . (.Microsoft Corporation - FLV Property Handler DLL.) -- C:\Windows\System32\flvprophandler.dll [133120]
O44 - LFC:[MD5.A0C330AAF06A36A13171A28FE4B582A2] - 07/12/2015 - 05:09:27 ---A- . (.Microsoft Corporation - policymanagerprecheck.) -- C:\Windows\System32\policymanagerprecheck.dll [92160]
O44 - LFC:[MD5.9E55D606C3CE9A37FB2FE5A419AE9CE6] - 07/12/2015 - 05:09:36 ---A- . (.Microsoft Corporation - Storage Usage.) -- C:\Windows\System32\StorageUsage.dll [30208]
O44 - LFC:[MD5.549A1696E594E6939C210972B4AD9747] - 07/12/2015 - 05:10:37 ---A- . (.Microsoft Corporation - WpcWebFilter.dll.) -- C:\Windows\System32\WpcWebFilter.dll [824320]
O44 - LFC:[MD5.8C86CB7C7725B196773451DE66602199] - 07/12/2015 - 05:15:08 ---A- . (.Microsoft Corporation - Windows.Networking.XboxLive Proxy Stub Dll.) -- C:\Windows\System32\Windows.Networking.XboxLive.ProxyStub.dll [75776]
O44 - LFC:[MD5.69E727F94BEA64E66C284F3C482F33E6] - 07/12/2015 - 05:15:40 ---A- . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1035776]
O44 - LFC:[MD5.0A9C90159378EAF0F45AF2275156EF0D] - 07/12/2015 - 05:45:46 ---A- . (.Microsoft Corporation - ContentDeliveryManager.Utilities.) -- C:\Windows\System32\ContentDeliveryManager.Utilities.dll [264544]
O44 - LFC:[MD5.63976F057A5A9FD426DC84FB97CF3446] - 07/12/2015 - 05:46:46 ---A- . (.Microsoft Corporation - Utilitaire à l’exécution pour Internet Expl.) -- C:\Windows\System32\iertutil.dll [3671888]
O44 - LFC:[MD5.A2A0FD3DA492A903E6AEC6C2B946F26F] - 07/12/2015 - 05:48:07 ---A- . (.Microsoft Corporation - Media Foundation Proxy DLL.) -- C:\Windows\System32\mfps.dll [245848]
O44 - LFC:[MD5.95F53D812EF80A2819E9C1539A629B5F] - 07/12/2015 - 05:48:08 ---A- . (.Microsoft Corporation - Media Foundation MPEG2 Source and Sink DLL.) -- C:\Windows\System32\mfmpeg2srcsnk.dll [823264]
O44 - LFC:[MD5.8F6118120D9A11A1CFD8822850826064] - 07/12/2015 - 05:48:09 ---A- . (.Microsoft Corporation - Media Foundation ASF Source and Sink DLL.) -- C:\Windows\System32\mfasfsrcsnk.dll [1155944]
O44 - LFC:[MD5.9D9A25E3E658EAC6FA9BC1BC23168516] - 07/12/2015 - 05:48:09 ---A- . (.Microsoft Corporation - Media Foundation Platform DLL.) -- C:\Windows\System32\mfplat.dll [1092456]
O44 - LFC:[MD5.9DA2D5EB73F6F61BB32B63B59DF2BB0C] - 07/12/2015 - 05:48:10 ---A- . (.Microsoft Corporation - Media Foundation Net Source DLL.) -- C:\Windows\System32\mfnetsrc.dll [1299504]
O44 - LFC:[MD5.CCB125BB7072FEAFC68A56749FD2DFD7] - 07/12/2015 - 05:48:10 ---A- . (.Microsoft Corporation - Media Foundation Source and Sink DLL.) -- C:\Windows\System32\mfsrcsnk.dll [1020096]
O44 - LFC:[MD5.2AE2C153D33AB0D2B89E0920EC2ACF69] - 07/12/2015 - 05:48:11 ---A- . (.Microsoft Corporation - DLL MFCaptureEngine.) -- C:\Windows\System32\MFCaptureEngine.dll [498448]
O44 - LFC:[MD5.F3B1BFB19C6A47DE7706A9CF1A177028] - 07/12/2015 - 05:48:11 ---A- . (.Microsoft Corporation - Media Foundation ReadWrite DLL.) -- C:\Windows\System32\mfreadwrite.dll [526856]
O44 - LFC:[MD5.7014B74B0F62698EC891A19A781689D5] - 07/12/2015 - 05:48:12 ---A- . (.Microsoft Corporation - Media Foundation Playback API DLL.) -- C:\Windows\System32\MFPlay.dll [337840]
O44 - LFC:[MD5.4588022BF3C34392C0C2AFDC3634C0CF] - 07/12/2015 - 05:48:14 ---A- . (.Microsoft Corporation - DLL source et récepteur MPEG4 Media Foundat.) -- C:\Windows\System32\mfmp4srcsnk.dll [1065080]
O44 - LFC:[MD5.C08AA0383BCEE881C319F23A5189AB8D] - 07/12/2015 - 05:48:19 ---A- . (.Microsoft Corporation - Media Foundation Direct Show wrapper DLL.) -- C:\Windows\System32\mfds.dll [794888]
O44 - LFC:[MD5.FAD9326ED152667E57B5B2EDBD9973F8] - 07/12/2015 - 05:48:23 ---A- . (.Microsoft Corporation - Media Foundation Core DLL.) -- C:\Windows\System32\mfcore.dll [2544256]
O44 - LFC:[MD5.38F068BA3D5CE3C53A025E1F9381CC54] - 07/12/2015 - 05:48:29 ---A- . (.Microsoft Corporation - Network Configuration API.) -- C:\Windows\System32\NetSetupApi.dll [115040]
O44 - LFC:[MD5.C4DF460B84DB6A0D4C18375DE1117DD0] - 07/12/2015 - 05:48:29 ---A- . (.Microsoft Corporation - Network Configuration Engine.) -- C:\Windows\System32\NetSetupEngine.dll [696160]
O44 - LFC:[MD5.D1BB4122E41E04E2D8D57702396AE031] - 07/12/2015 - 05:49:31 ---A- . (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\Windows\System32\wifitask.exe [412512]
O44 - LFC:[MD5.45B88D0BBAB3EAA10883097C14C33678] - 07/12/2015 - 05:55:42 ---A- . (.Microsoft Corporation - LicenseManager.) -- C:\Windows\System32\LicenseManager.dll [1281376]
O44 - LFC:[MD5.E422BA9F3806207C686DDF2C7D25A4C2] - 08/12/2015 - 10:14:13 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1848398]
O44 - LFC:[MD5.97B08C845831060722BC20523733D1A1] - 08/12/2015 - 10:14:13 ---A- . (...) -- C:\Windows\System32\perfc009.dat [139034]
O44 - LFC:[MD5.525FB9F861AB0D0C6433D745B41CEC35] - 08/12/2015 - 10:14:13 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [155764]
O44 - LFC:[MD5.7CB7D02BAA7E1A6A724338B3BE9517FF] - 08/12/2015 - 10:14:13 ---A- . (...) -- C:\Windows\System32\perfh009.dat [734494]
O44 - LFC:[MD5.3F9FE8ECA503C4BCF2AA840493716CF3] - 08/12/2015 - 10:14:13 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [825500]
O44 - LFC:[MD5.6FB144600FAE112D455DC5792091B42A] - 09/12/2015 - 04:39:31 ----- . (.Microsoft Corporation - Microsoft Malware Protection Signature Upda.) -- C:\Windows\System32\MpSigStub.exe [301728]
O44 - LFC:[MD5.C6F9333F6C5F326B075CBC062E33793D] - 09/12/2015 - 13:14:01 ---A- . (.Microsoft Corporation - reading view resources.) -- C:\Windows\System32\readingviewresources.dll [7680]
O44 - LFC:[MD5.5B7B6AF7E94E972DCE4BF892ABD466B6] - 09/12/2015 - 13:14:02 ---A- . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\Windows\System32\win32k.sys [115200]
O44 - LFC:[MD5.7950D23F5542F6F8A9D41F046C01067F] - 09/12/2015 - 13:14:02 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2756096]
O44 - LFC:[MD5.EFA47480BEB0968E3A18479593B2E60C] - 09/12/2015 - 13:14:03 ---A- . (.Microsoft Corporation - DLL d’assistance de sockets Windows pour PG.) -- C:\Windows\System32\wshrm.dll [18944]
O44 - LFC:[MD5.FDB262D0B2C0790385B894AA4B2C0A6C] - 09/12/2015 - 13:14:04 ---A- . (.Microsoft Corporation - Expérience utilisateur fermeture.) -- C:\Windows\System32\shutdownux.dll [182784]
O44 - LFC:[MD5.2B91178DE30EF92DD383486485B0C97D] - 09/12/2015 - 13:14:05 ---A- . (.Microsoft Corporation - COM+ Configuration Catalog Server Utilities.) -- C:\Windows\System32\catsrvut.dll [523776]
O44 - LFC:[MD5.DBBACE77DDE8CCFD85B37B114965C385] - 09/12/2015 - 13:14:05 ---A- . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\Drivers\rmcast.sys [147968]
O44 - LFC:[MD5.486C22DD70BE538B1C164AE38E130009] - 09/12/2015 - 13:14:08 ---A- . (.Microsoft Corporation - Interface utilisateur d’authentification Wi.) -- C:\Windows\System32\authui.dll [2352128]
O44 - LFC:[MD5.69B4974176206D7276B733B30BCE442E] - 09/12/2015 - 13:14:08 ---A- . (.Microsoft Corporation - Microsoft GDI+.) -- C:\Windows\System32\GdiPlus.dll [1717248]
O44 - LFC:[MD5.DD97EF0AE9224B8C1161736E033C03F1] - 09/12/2015 - 13:14:09 ---A- . (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\user32.dll [1399224]
O44 - LFC:[MD5.42B6285314851A693F68F7A7B79FD1B9] - 09/12/2015 - 13:14:09 ---A- . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\Windows\System32\win32kbase.sys [1393664]
O44 - LFC:[MD5.CD2CC65DDF46F065BCC975C2BC89DD11] - 09/12/2015 - 13:14:10 ---A- . (.Microsoft Corporation - COM+ Services.) -- C:\Windows\System32\comsvcs.dll [1648640]
O44 - LFC:[MD5.EFEFC245B884B1BE0401931398DCD707] - 09/12/2015 - 13:14:10 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [2152800]
O44 - LFC:[MD5.E81DF157F4F225928EAE2B1E82863BF6] - 09/12/2015 - 13:14:11 ---A- . (.Microsoft Corporation - DLL Couche NT.) -- C:\Windows\System32\ntdll.dll [1817160]
O44 - LFC:[MD5.A2469A19FC330A400E2BED8003331BB8] - 09/12/2015 - 13:14:11 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [604672]
O44 - LFC:[MD5.EE5BD4F67199E1C5142F3C731035D18C] - 09/12/2015 - 13:14:18 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13381120]
O44 - LFC:[MD5.78CF1420E5E88B1664F92F07386D19A8] - 09/12/2015 - 13:14:30 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\edgehtml.dll [22393856]
O44 - LFC:[MD5.4A2FAC8C2F927521481CFC900775A44A] - 11/12/2015 - 02:47:47 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [5015712]
O44 - LFC:[MD5.485C44394575175E0EA7C2F12FEC2225] - 11/12/2015 - 02:59:53 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [140158008]
O44 - LFC:[MD5.DD3410F65ACC9EF21080F7031606130C] - 19/12/2015 - 01:23:20 ---A- . (...) -- C:\Windows\setupact.log [20978]
O44 - LFC:[MD5.55FB00283359B0564229039F9612AFEC] - 19/12/2015 - 08:56:26 ---A- . (...) -- C:\Windows\wmsetup.log [1118]
O44 - LFC:[MD5.A84768295C1565FD4883FB701791013E] - 20/12/2015 - 13:58:56 ---A- . (...) -- C:\Windows\PFRO.log [313768]
O44 - LFC:[MD5.9B052552D7A3B584508BC45FE5656602] - 20/12/2015 - 13:58:57 ---A- . (...) -- C:\Windows\MEMORY.DMP [660205407]
O44 - LFC:[MD5.C1410C6CE44B50E65A0E883AA1917736] - 20/12/2015 - 14:01:02 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.038356387332650843BCB352BB89A101] - 20/12/2015 - 15:22:46 ---A- . (...) -- C:\Windows\WindowsUpdate.log [275]
~ Files: 94 Scanned in 00mn 55s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.1634679E254C9E54CAD5B2F33296EB99] - 04/12/2015 - 09:53:43 ---A- - C:\Windows\Prefetch\PfPre_a5f26486.mkd
O45 - LFCP:[MD5.CBDD993FF1CDF6DAEACFB71B77620A89] - 04/12/2015 - 10:17:26 ---A- - C:\Windows\Prefetch\CLIPUP.EXE-316B782B.pf
O45 - LFCP:[MD5.1CB9C46A3376CB21B7ECFD7CD1655C4E] - 07/12/2015 - 23:22:33 ---A- - C:\Windows\Prefetch\PURCHASEDIALOG.EXE-1563B616.pf
O45 - LFCP:[MD5.CF928B091F8EB462E0CF092661897AB9] - 11/12/2015 - 06:49:08 ---A- - C:\Windows\Prefetch\PSEXPRESS.EXE-B5D6EBE3.pf
O45 - LFCP:[MD5.088273D3100C9603359D937549732CF0] - 13/12/2015 - 21:13:07 ---A- - C:\Windows\Prefetch\EMULE0.50A-INSTALLER (1).EXE-7C5F7826.pf
O45 - LFCP:[MD5.6F5A5E11E1CF5F6B4D898094BF26CFCC] - 13/12/2015 - 21:15:33 ---A- - C:\Windows\Prefetch\LINKCREATOR.EXE-64AB7FB9.pf
O45 - LFCP:[MD5.B3EEF3DD9950CC2D7B57E56E3CE09A57] - 16/12/2015 - 09:18:52 ---A- - C:\Windows\Prefetch\GLCND.EXE-85EEA724.pf
O45 - LFCP:[MD5.9A5AF7F9A5A03876507393C08B7C4BFF] - 17/12/2015 - 01:34:50 ---A- - C:\Windows\Prefetch\dynrespri.7db
O45 - LFCP:[MD5.5EFE60B5AB4F54DCD485FC9A10C5CFE6] - 17/12/2015 - 06:52:47 ---A- - C:\Windows\Prefetch\ResPriHMStaticDb.ebd
O45 - LFCP:[MD5.7331020F90B1794F0D0BC0B97D606842] - 18/12/2015 - 07:21:07 ---A- - C:\Windows\Prefetch\SIHOST.EXE-F66A4D44.pf
O45 - LFCP:[MD5.78D303355A56297EA4985B3E401C8A37] - 18/12/2015 - 07:36:18 ---A- - C:\Windows\Prefetch\OFFICECLICKTORUN.EXE-EE812CCB.pf
O45 - LFCP:[MD5.28EB8F9EF1D7F49FBEE7C9E6A130CCBC] - 18/12/2015 - 07:38:23 ---A- - C:\Windows\Prefetch\MICROSOFT.PHOTOS.EXE-61F36351.pf
O45 - LFCP:[MD5.CCCA1554546AFF98C92121AE3F5C374D] - 18/12/2015 - 08:17:07 ---A- - C:\Windows\Prefetch\WUAPIHOST.EXE-6D06E4D6.pf
O45 - LFCP:[MD5.259A487D9AFB31EFF8D37ECEF4916787] - 18/12/2015 - 21:31:18 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.5A045B5CD4B8C43FEEA5B1A16F5F7C72] - 18/12/2015 - 22:13:46 ---A- - C:\Windows\Prefetch\TWITTER.WINDOWS.EXE-32C8D1DC.pf
O45 - LFCP:[MD5.C2D380BE8A4DE36792D0F859A497471D] - 19/12/2015 - 00:58:56 ---A- - C:\Windows\Prefetch\NETWORKUXBROKER.EXE-F2E3B2DC.pf
O45 - LFCP:[MD5.4006323FFA405F6EA643C965A0E6A909] - 19/12/2015 - 01:10:33 ---A- - C:\Windows\Prefetch\SYSTEMSETTINGS.EXE-D8CC3B5E.pf
O45 - LFCP:[MD5.CA67E493A079D7916269C03E20017E94] - 19/12/2015 - 01:28:12 ---A- - C:\Windows\Prefetch\SETUP[1].EXE-ACFD26FF.pf
O45 - LFCP:[MD5.84174FF0858EAF58B414A62B90698F6A] - 19/12/2015 - 01:28:47 ---A- - C:\Windows\Prefetch\WMF11RT.EXE-E3FB259E.pf
O45 - LFCP:[MD5.2D9B9CA3E4EC797E9B1169503A982254] - 19/12/2015 - 01:28:53 ---A- - C:\Windows\Prefetch\COPYMODULE.EXE-607503D9.pf
O45 - LFCP:[MD5.FC6AC868002B1461096734793B8174A7] - 19/12/2015 - 07:23:53 ---A- - C:\Windows\Prefetch\NVOAWRAPPERCACHE.EXE-29D519D3.pf
O45 - LFCP:[MD5.8263E8D2EC0E07D5A45791203D8A3CF3] - 19/12/2015 - 07:24:03 ---A- - C:\Windows\Prefetch\DAO.20271937.EXE-8504F127.pf
O45 - LFCP:[MD5.85CE2A51CB1CC7803E00E1675C1ED1DC] - 19/12/2015 - 08:49:03 ---A- - C:\Windows\Prefetch\MEDIAGO_WM.EXE-55554237.pf
O45 - LFCP:[MD5.1AA25758CC8073CE83B6D5C1E36711B7] - 19/12/2015 - 08:49:41 ---A- - C:\Windows\Prefetch\WALKMANGUIDE.EXE-52A2542E.pf
O45 - LFCP:[MD5.6445DB27EE2BF8367452248E004A5184] - 19/12/2015 - 08:55:33 ---A- - C:\Windows\Prefetch\SETUP[1].EXE-83B2AF7E.pf
O45 - LFCP:[MD5.B6C4678DD75720D81731B76FB40CA5A5] - 19/12/2015 - 08:56:26 ---A- - C:\Windows\Prefetch\WMF11RT.EXE-AC1A600C.pf
O45 - LFCP:[MD5.B9B7524CE02CEC7BAFF497FABD56A722] - 19/12/2015 - 08:56:26 ---A- - C:\Windows\Prefetch\WMSETSDK.EXE-A7E94540.pf
O45 - LFCP:[MD5.934228521C407F4784DD4954AC6D9CFD] - 19/12/2015 - 08:56:32 ---A- - C:\Windows\Prefetch\COPYMODULE.EXE-3BF02437.pf
O45 - LFCP:[MD5.1BBBC7C16F14D3B2CDDC8B9F69B9CF0E] - 19/12/2015 - 09:30:47 ---A- - C:\Windows\Prefetch\MEDIAGO_WM.EXE-3663EE25.pf
O45 - LFCP:[MD5.F5D7EEC7A85BC6D16EC176AC7C50BC6E] - 19/12/2015 - 09:35:35 ---A- - C:\Windows\Prefetch\MICROSOFTEDGECP.EXE-5A99EBB1.pf
O45 - LFCP:[MD5.B9122B6E397473926114EC4091F1F24E] - 19/12/2015 - 09:35:36 ---A- - C:\Windows\Prefetch\BROWSER_BROKER.EXE-F75C36BA.pf
O45 - LFCP:[MD5.C5685CBEE5B713174A6E1FB9FA3CB511] - 19/12/2015 - 09:35:36 ---A- - C:\Windows\Prefetch\MICROSOFTEDGE.EXE-30432D54.pf
O45 - LFCP:[MD5.4ABC4BB054AF7869E7CC8D0AC5C78965] - 19/12/2015 - 09:52:41 ---A- - C:\Windows\Prefetch\COMPATTELRUNNER.EXE-93B5AB09.pf
O45 - LFCP:[MD5.4ACA1CFBD5197832B5B5D52BFA4B5F77] - 20/12/2015 - 13:54:06 ---A- - C:\Windows\Prefetch\LOCKAPP.EXE-1FC17B27.pf
O45 - LFCP:[MD5.AA1DB47303AFA29041A83E6D4270F152] - 20/12/2015 - 13:54:06 ---A- - C:\Windows\Prefetch\LOCKAPPHOST.EXE-6989C562.pf
O45 - LFCP:[MD5.530E8BABBFD0C5C0C4EC37F65120309C] - 20/12/2015 - 13:54:45 ---A- - C:\Windows\Prefetch\NETWORKUXBROKER.EXE-0A3086E6.pf
O45 - LFCP:[MD5.846DD0B517D5F3D9F0D7FE6473FAFE09] - 20/12/2015 - 13:54:45 ---A- - C:\Windows\Prefetch\SYSTEMSETTINGSBROKER.EXE-4BB8D329.pf
O45 - LFCP:[MD5.5901EB103C608F21F1CFAE54597AA383] - 20/12/2015 - 14:01:57 ---A- - C:\Windows\Prefetch\GAMESAPPINTEGRATIONSERVICE.EX-D44D8C89.pf
O45 - LFCP:[MD5.E762499DD1EE0C5D056C21D065044930] - 20/12/2015 - 14:02:04 ---A- - C:\Windows\Prefetch\SOHDMS.EXE-6F1EA412.pf
O45 - LFCP:[MD5.356910B8E8F52B36F4C4DE5DEDD2957D] - 20/12/2015 - 14:02:35 ---A- - C:\Windows\Prefetch\SHELLEXPERIENCEHOST.EXE-6842E37B.pf
O45 - LFCP:[MD5.FA5AE4F4EDEF45C946AC79C7A024262C] - 20/12/2015 - 14:03:02 ---A- - C:\Windows\Prefetch\SEARCHUI.EXE-B1FD4B81.pf
O45 - LFCP:[MD5.4B0D4B2159D7CE0584BC4FAE5858F492] - 20/12/2015 - 14:03:04 ---A- - C:\Windows\Prefetch\NVBACKEND.EXE-6C86381E.pf
O45 - LFCP:[MD5.A32472D92579436CD987DA5F8E3101A5] - 20/12/2015 - 14:03:25 ---A- - C:\Windows\Prefetch\PDVD10SERV.EXE-99C8A7B5.pf
O45 - LFCP:[MD5.653FBA67431459664E48A9F0A8008B93] - 20/12/2015 - 14:03:26 ---A- - C:\Windows\Prefetch\CREATIVE CLOUD.EXE-735FDB60.pf
O45 - LFCP:[MD5.0EEAD5F462D50CFEFC50C5AB8AC93D6B] - 20/12/2015 - 14:03:26 ---A- - C:\Windows\Prefetch\PMBVOLUMEWATCHER.EXE-2CDBB315.pf
O45 - LFCP:[MD5.9467152897FFCD23D14905C2E868FE53] - 20/12/2015 - 14:03:28 ---A- - C:\Windows\Prefetch\ADOBEIPCBROKER.EXE-0A22A070.pf
O45 - LFCP:[MD5.546A67EA615510AAD7646AF03CB68D53] - 20/12/2015 - 14:03:49 ---A- - C:\Windows\Prefetch\FONTDRVHOST.EXE-D0C00127.pf
O45 - LFCP:[MD5.542633254ADC98088C5BB4F38DFE520D] - 20/12/2015 - 14:05:46 ---A- - C:\Windows\Prefetch\EMULE.EXE-6F3A59E3.pf
O45 - LFCP:[MD5.F16A668E7351CA9DE26A2FF7C16492D1] - 20/12/2015 - 14:17:03 ---A- - C:\Windows\Prefetch\TASKHOSTW.EXE-1EAF2222.pf
O45 - LFCP:[MD5.3478318A0F40F75DF6106216EBB98581] - 20/12/2015 - 14:44:35 ---A- - C:\Windows\Prefetch\WIFITASK.EXE-7E2BADDC.pf
O45 - LFCP:[MD5.A48F0816CD98DC6AA4CB82ECAA23F010] - 20/12/2015 - 15:07:10 ---A- - C:\Windows\Prefetch\ACTIONURISERVER.EXE-18ECE736.pf
O45 - LFCP:[MD5.DEED03FA5BA1C6EAB770A9F4D5D73703] - 20/12/2015 - 15:44:11 ---A- - C:\Windows\Prefetch\APPLICATIONFRAMEHOST.EXE-4CE44C83.pf
O45 - LFCP:[MD5.DA1907668DD09DE3D01890ED5647BE7F] - 20/12/2015 - 15:44:58 ---A- - C:\Windows\Prefetch\VIDEO.UI.EXE-BAD482D5.pf
O45 - LFCP:[MD5.29FBA15D733C54700D95056F44D47D8E] - 20/12/2015 - 15:48:00 ---A- - C:\Windows\Prefetch\SPFSERVICE64.EXE-5E92687B.pf
~ Prefetcher: 54 Scanned in 00mn 02s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (...) -- C:\Windows\System32\livessp.dll
~ LSA: 9 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\Ahcache.sys . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\Windows\System32\Drivers\Ahcache.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\iai2c.sys . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\Windows\System32\Drivers\iai2c.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\SpbCx.sys . (.Microsoft Corporation - SPB Class Extension.) -- C:\Windows\System32\Drivers\SpbCx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\uefi.sys . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\Windows\System32\Drivers\uefi.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\Ahcache.sys . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\Windows\System32\Drivers\Ahcache.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\SpbCx.sys . (.Microsoft Corporation - SPB Class Extension.) -- C:\Windows\System32\Drivers\SpbCx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\uefi.sys . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\Windows\System32\Drivers\uefi.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 24 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ TDSD: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "DSCAutomationHostEnabled"=2
O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "DisableTaskMgr"=0
O55 - MWPS:[HKLM\...\Policies\System] - "DisableRegistryTools"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPath"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2
~ MWPS: 20 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoRecentDocsHistory"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoRun"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoControlPanel"=0
~ MWPE Keys: 6 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.DF1C3D7E6C7929AD83BE22852B5B08CB] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\Drivers\1394ohci.sys [235520]
O58 - SDL:[MD5.2C5B3035B86770ADD2FE9BFBAF5B35A4] - 30/10/2015 - 08:17:22 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [107360]
O58 - SDL:[MD5.6B6C39AB2CD7BEB6CFF624522E5449DE] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [563544]
O58 - SDL:[MD5.7EADED8087C392876521F7EBCE846EF4] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - ACPIEx Driver.) -- C:\Windows\System32\Drivers\acpiex.sys [127840]
O58 - SDL:[MD5.C498887123327CDFD73A05E7A2780920] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\Windows\System32\Drivers\acpipagr.sys [12288]
O58 - SDL:[MD5.C8DBE6EFFCF014CAA010B9BDDAC833EC] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\Drivers\acpipmi.sys [14336]
O58 - SDL:[MD5.17039DBEB3B7B9ADCDB4B4533AA9771F] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\Windows\System32\Drivers\acpitime.sys [12800]
O58 - SDL:[MD5.F7D0CD345D2DA42E7042ABCD73662403] - 30/10/2015 - 08:17:22 ---A- . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS/SATA controller.) -- C:\Windows\System32\Drivers\adp80xx.sys [1135456]
O58 - SDL:[MD5.70148EFA9A562E7185B75BBE7D376BF7] - 05/11/2015 - 11:25:01 ---A- . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\Drivers\afd.sys [578912]
O58 - SDL:[MD5.E15A9CE1E2E7D1C8DF97A4FC1FFE6289] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Miniport.) -- C:\Windows\System32\Drivers\agilevpn.sys [105472]
O58 - SDL:[MD5.870F1A2C936F92B5D053DF7EC75B352F] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\Drivers\AGP440.sys [63328]
O58 - SDL:[MD5.3DF7751D5DC6525E7DC6617FBB45054F] - 30/10/2015 - 08:18:08 ---A- . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\Windows\System32\Drivers\ahcache.sys [218624]
O58 - SDL:[MD5.16F6F6B7903B913AB41AB848C8BB5658] - 18/09/2012 - 12:51:54 ---A- . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\Windows\System32\Drivers\AiCharger.sys [17152]
O58 - SDL:[MD5.B70F0F2F54B4A4DB6E9C830454752F5A] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdk8.sys [121856]
O58 - SDL:[MD5.35E890482C9728DD5C552B85DA8A5AB2] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdppm.sys [119296]
O58 - SDL:[MD5.5B30BCFE6E02E45D3EE268FF001BC5E0] - 30/10/2015 - 08:17:22 ---A- . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [83296]
O58 - SDL:[MD5.F20B30F35A5C7888441B4DCA001ECF8E] - 30/10/2015 - 08:17:22 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [259424]
O58 - SDL:[MD5.AFE838D7576C581D6483529621AB10CC] - 30/10/2015 - 08:17:22 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [26976]
O58 - SDL:[MD5.C7BE7FBB9B6BDE11E12A0F204384C1D6] - 14/06/2012 - 02:06:50 ---A- . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\Windows\System32\Drivers\AmUStor.sys [100992]
O58 - SDL:[MD5.2BBD3A492B93C7E669D01EE88977D7DE] - 30/10/2015 - 08:17:53 ---A- . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\Drivers\appid.sys [146272]
O58 - SDL:[MD5.E3FE8F610B1CC12BC3B2E6BC43DC97E2] - 30/10/2015 - 08:17:22 ---A- . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [131936]
O58 - SDL:[MD5.7222DC0F811BBD1B4B4A7C28B7C31AE5] - 13/05/2015 - 04:44:24 ---A- . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\Windows\System32\Drivers\AsHIDSwitch64.sys [19976]
O58 - SDL:[MD5.5E00748A1AD246CAECBBB7553BED36CC] - 30/10/2015 - 08:17:42 ---A- . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\Drivers\asyncmac.sys [28160]
O58 - SDL:[MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\Drivers\atapi.sys [28512]
O58 - SDL:[MD5.B6664965BF346322BBDF286174851476] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [192864]
O58 - SDL:[MD5.54494B93BB5AD74C807100144EC30D64] - 26/08/2013 - 20:37:59 ---A- . (...) -- C:\Windows\System32\Drivers\atksgt.sys [310728]
O58 - SDL:[MD5.B4AC08B1D04D0CE085435E5CD0E663C5] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys [55808]
O58 - SDL:[MD5.25B5BB369DEE2BAE4BF459C978FF9035] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys [41472]
O58 - SDL:[MD5.D78528CA20ADED850E730AB369AAD667] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\Drivers\battc.sys [36704]
O58 - SDL:[MD5.3F5523DCEFE42B385659C5CB46A6B810] - 30/10/2015 - 08:17:22 ---A- . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\Drivers\bcmfn.sys [9728]
O58 - SDL:[MD5.0B750A6A6D847E73CA48ADD7A0F5A393] - 30/10/2015 - 08:17:22 ---A- . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\Drivers\bcmfn2.sys [9728]
O58 - SDL:[MD5.5A88834AEE15D97695FAE0837B73B3E4] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [9728]
O58 - SDL:[MD5.DA2C6F7ACE392193C424FEA975C5BFFB] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\Drivers\bowser.sys [105984]
O58 - SDL:[MD5.A934DF064C503A31683DD7EECDBD327A] - 30/10/2015 - 08:17:41 ---A- . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\Drivers\bridge.sys [114688]
O58 - SDL:[MD5.C99E80F3C1D4918C8661CAB5A0512EC9] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Manager.) -- C:\Windows\System32\Drivers\BtaMPM.sys [22016]
O58 - SDL:[MD5.CAEC7BC11AF69A181AF7932E636E09E4] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - HID de contrôle à distance audio/vidéo Bluetooth.) -- C:\Windows\System32\Drivers\BthAvrcpTg.sys [43008]
O58 - SDL:[MD5.5F2B4B32E986C058525D3BA2A475A16C] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control HID Enumerator.) -- C:\Windows\System32\Drivers\bthhfenum.sys [65536]
O58 - SDL:[MD5.5406289E8AE2CB52FC408154E0A64BA7] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Minipilote HID mains libres Bluetooth.) -- C:\Windows\System32\Drivers\BthhfHid.sys [30720]
O58 - SDL:[MD5.A76F20CCCA31895A1DA78A875E50F946] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\Drivers\bthmodem.sys [65536]
O58 - SDL:[MD5.BF89BDBA5D3A0B4256D3F6FC8D31880D] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Button Converter Driver.) -- C:\Windows\System32\Drivers\buttonconverter.sys [37376]
O58 - SDL:[MD5.6447BA6FA709514B6C803D159B4C7D1E] - 30/10/2015 - 08:17:22 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [531296]
O58 - SDL:[MD5.C24C27FDF93B85A4EFCF25F830253AA2] - 22/11/2015 - 10:54:39 ---A- . (.Microsoft Corporation - CapImg HID Driver.) -- C:\Windows\System32\Drivers\capimg.sys [117248]
O58 - SDL:[MD5.7F9C7226D743B232907ED2537B8A574F] - 30/10/2015 - 08:18:09 ---A- . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\Drivers\cdfs.sys [92672]
O58 - SDL:[MD5.82D97776BF982AA143BDC7DFB5054EA8] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\Drivers\cdrom.sys [173568]
O58 - SDL:[MD5.B603F6A7E087DFCD9937F4E18286B2CF] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\Windows\System32\Drivers\CEA.sys [76640]
O58 - SDL:[MD5.0505C1D991D0F9D47F3353BB98597C7E] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\Drivers\circlass.sys [48640]
O58 - SDL:[MD5.C1CEA624366F4A398B21566D16F3EFF4] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [375648]
O58 - SDL:[MD5.8B4B39C507ABA09AAFE8E3932D1B392C] - 30/10/2015 - 08:18:09 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\Drivers\clfs.sys [385376]
O58 - SDL:[MD5.06F5243040EAECCDB75062AE25C6631D] - 30/10/2015 - 08:17:52 ---A- . (.Microsoft Corporation - CLIP Service.) -- C:\Windows\System32\Drivers\ClipSp.sys [638816]
O58 - SDL:[MD5.95832B049E2833B9F5189823CDF946C7] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\Drivers\CmBatt.sys [29696]
O58 - SDL:[MD5.DA8B982AF02A59031BBD0C04AF05EB5E] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Kernel Configuration Manager Initial Configuration Extension Ho.) -- C:\Windows\System32\Drivers\cmimcext.sys [21856]
O58 - SDL:[MD5.80977779A19947939D680A4899E829EC] - 22/11/2015 - 11:30:26 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [604928]
O58 - SDL:[MD5.58D640BC2294C71BDE0953F12D4B432F] - 30/10/2015 - 08:17:52 ---A- . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\Windows\System32\Drivers\cnghwassist.sys [39264]
O58 - SDL:[MD5.02B8E49148DE5E0A2F6FDF28CE94A6AC] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Console Driver.) -- C:\Windows\System32\Drivers\condrv.sys [50016]
O58 - SDL:[MD5.F7583C824464CA3FC54742781B58D156] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\Drivers\crashdmp.sys [77152]
O58 - SDL:[MD5.2619DC483579DB9FE804044C1ADFFD1A] - 30/10/2015 - 08:17:46 ---A- . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\Windows\System32\Drivers\dam.sys [61280]
O58 - SDL:[MD5.783D2F105F48B62D05B67E098B9F9A69] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\Windows\System32\Drivers\devauthe.sys [44032]
O58 - SDL:[MD5.C9478D7DB7BE5D7ACE65CB1167F07320] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [148480]
O58 - SDL:[MD5.4904B152E4942BF700F2D73228B4D477] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\Drivers\disk.sys [103264]
O58 - SDL:[MD5.F6A0BAFBF599CDE8426BC5B249F3F0D8] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Drivers\Diskdump.sys [38240]
O58 - SDL:[MD5.31F193EEC1A499D4BB93C70ED238C31C] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\Windows\System32\Drivers\Dmpusbstor.sys [14336]
O58 - SDL:[MD5.0197AE4B9790A4E73751CACFAA480126] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Mémoire dynamique.) -- C:\Windows\System32\Drivers\dmvsc.sys [33792]
O58 - SDL:[MD5.A3AB2DFB27ADD3AD5C1500734A4A57DA] - 30/10/2015 - 08:17:19 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmk.sys [97280]
O58 - SDL:[MD5.25FA06D3B49D6ADF8E874FFCDCD76B50] - 30/10/2015 - 08:17:19 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [16168]
O58 - SDL:[MD5.555208AC157FD2B01BCEC0CD1B2E38C1] - 30/10/2015 - 08:18:08 ---A- . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\Drivers\Dumpata.sys [35680]
O58 - SDL:[MD5.96972FF2A837EBAD408B3ACE099FC99D] - 30/10/2015 - 08:18:43 ---A- . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\Drivers\dumpfve.sys [88496]
O58 - SDL:[MD5.E72358D5EB07287E5514343BAA820F4C] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\Windows\System32\Drivers\dumpsd.sys [185184]
O58 - SDL:[MD5.A2512BC5F2ABD84D8B3CB0D76ADB749A] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [1997664]
O58 - SDL:[MD5.4149BF1B499DA6852B1ADC74E3EB9145] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [393560]
O58 - SDL:[MD5.D2ED12C0B38F0B09DA8723CF0DBB4654] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms2.sys [576864]
O58 - SDL:[MD5.CEF108FCE06892CFA5F1B49527D4BF49] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667 devices.) -- C:\Windows\System32\Drivers\EhStorClass.sys [88416]
O58 - SDL:[MD5.5B1EAAE3001A7A320C106FC3859F4111] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Microsoft driver for storage devices supporting IEEE 1667 and T.) -- C:\Windows\System32\Drivers\EhStorTcgDrv.sys [117088]
O58 - SDL:[MD5.7A2705148A4BB3CA255F81624338B461] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [12288]
O58 - SDL:[MD5.491275B864B704B54EC08168344E0F38] - 30/10/2015 - 08:17:22 ---A- . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3436896]
O58 - SDL:[MD5.DFE8A33FBCF6F38182631A4D6097B92D] - 30/10/2015 - 08:17:49 ---A- . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\Drivers\exfat.sys [320000]
O58 - SDL:[MD5.03DE0EC072C5EBD5B018CAD83F1E522A] - 30/10/2015 - 08:17:46 ---A- . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\Drivers\fastfat.sys [335712]
O58 - SDL:[MD5.9D299AE86D671488926126A84DF77BFD] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\Drivers\fdc.sys [32256]
O58 - SDL:[MD5.8F12AB59336143B680F71B217B495AD2] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\Windows\System32\Drivers\filecrypt.sys [87040]
O58 - SDL:[MD5.92ECCFA58C8195B8EA33ED942469D4E6] - 30/10/2015 - 08:17:50 ---A- . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\Drivers\fileinfo.sys [85344]
O58 - SDL:[MD5.87C51FDD50C17882BA93E28BBABB9847] - 30/10/2015 - 08:17:46 ---A- . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\Drivers\filetrace.sys [35840]
O58 - SDL:[MD5.E99261DD76D1C9E05AF575939CAE5AC5] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\Drivers\flpydisk.sys [26112]
O58 - SDL:[MD5.25D7A58625E1453E40D36825DE74E4F1] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Gestionnaire de filtres de système de fichiers Microsoft.) -- C:\Windows\System32\Drivers\fltMgr.sys [377696]
O58 - SDL:[MD5.B4175E8BE60B099686FF55CA7D692316] - 30/10/2015 - 08:17:46 ---A- . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\fsdepends.sys [62816]
O58 - SDL:[MD5.CC71372CEB811A72F1DC99089C5CBF53] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [31584]
O58 - SDL:[MD5.421497634C86EF4B8F86D0EBC076728F] - 30/10/2015 - 08:18:43 ---A- . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [638304]
O58 - SDL:[MD5.6AE525646D5A7D3C6F180F08846978F6] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [405856]
O58 - SDL:[MD5.B9981A4CB9F728B3312A3885BFAA7204] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour plateformes de processe.) -- C:\Windows\System32\Drivers\GAGP30KX.sys [66912]
O58 - SDL:[MD5.F3AC9652D88BF87BA6596CBEA28CE10F] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Generic USB Function Class Driver.) -- C:\Windows\System32\Drivers\genericusbfn.sys [20992]
O58 - SDL:[MD5.D011B0ADB15F4815310CE1BF4780B33E] - 30/10/2015 - 08:17:46 ---A- . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\Windows\System32\Drivers\gpuenergydrv.sys [8192]
O58 - SDL:[MD5.84BC034B6BB763733C1949B7B9BAF976] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\Drivers\hdaudbus.sys [79872]
O58 - SDL:[MD5.772A1DEEDFDBC244183B5C805D1B7D85] - 02/07/2012 - 15:16:02 ---A- . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [62784]
O58 - SDL:[MD5.6B8CB114B8E64C0636EB49F7B914D1FC] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\Drivers\hidbatt.sys [28160]
O58 - SDL:[MD5.D1AD197CCDAAC0CB4819DA1D6EB17BAE] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périphériques HID.) -- C:\Windows\System32\Drivers\hidbth.sys [107520]
O58 - SDL:[MD5.40B6FF0EA1A703BF48B60B0A8D40CCA0] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\Windows\System32\Drivers\hidclass.sys [154624]
O58 - SDL:[MD5.64909DECCFCC6FB5D9A5BAFDCCB31FEE] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\Windows\System32\Drivers\hidi2c.sys [51200]
O58 - SDL:[MD5.F510F7B7BF61DEAAC04E65C3B65E8D59] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\Windows\System32\Drivers\hidinterrupt.sys [50016]
O58 - SDL:[MD5.90F3ED42D423C942BA5EA54E2FFE7AC7] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidir.sys [46592]
O58 - SDL:[MD5.08A63F9EFA5DF50FEE1632C136D857CA] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [40448]
O58 - SDL:[MD5.128DEDDD61915DBA4D451D91D21F0513] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [38400]
O58 - SDL:[MD5.FF442DCDCE1F6E9FAA9C8AD0CD1D199B] - 30/10/2015 - 08:17:22 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [64352]
O58 - SDL:[MD5.A403DAE4B083EB96BC6CEDB47639B4F8] - 30/10/2015 - 08:18:08 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [1089888]
O58 - SDL:[MD5.41A7938CAA6CC8D5F44721057C21D79C] - 30/10/2015 - 08:17:35 ---A- . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\Windows\System32\Drivers\hvsocket.sys [88928]
O58 - SDL:[MD5.CBA5E88A0F0475B7F49653BB72150BEF] - 30/10/2015 - 08:18:09 ---A- . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\Drivers\hwpolicy.sys [29024]
O58 - SDL:[MD5.D668FAB4B0397B426EE3D41683B9A1C0] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\Windows\System32\Drivers\hyperkbd.sys [16896]
O58 - SDL:[MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\Drivers\i8042prt.sys [114688]
O58 - SDL:[MD5.9A2A2F3C69B9A30B6E78536F6D258BAD] - 30/10/2015 - 08:17:18 ---A- . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\Windows\System32\Drivers\iai2c.sys [81408]
O58 - SDL:[MD5.59A20F5AD9F4AE54098154359519408E] - 30/10/2015 - 08:17:18 ---A- . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\Drivers\iaLPSS2i_I2C.sys [165888]
O58 - SDL:[MD5.16A10CCEDCF5AC4CAAE43DC9FC40392F] - 30/10/2015 - 08:17:18 ---A- . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\Drivers\iaLPSSi_GPIO.sys [38128]
O58 - SDL:[MD5.EB82A11613326691508D9ED9A4FE29E7] - 30/10/2015 - 08:17:18 ---A- . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\Drivers\iaLPSSi_I2C.sys [113152]
O58 - SDL:[MD5.6C91E425ACE29594BD574DE38AC9B76D] - 14/09/2012 - 06:15:10 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\Drivers\iaStorA.sys [647736]
O58 - SDL:[MD5.6B0029A0253098CCE28EACCFDB9E7208] - 30/10/2015 - 08:17:22 ---A- . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (inbox) - x64.) -- C:\Windows\System32\Drivers\iaStorAV.sys [673120]
O58 - SDL:[MD5.9652E1E35A92D8C75710C17A63B15796] - 30/10/2015 - 08:17:22 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [412000]
O58 - SDL:[MD5.FFADF691F7BF727AF5C863454A372723] - 30/10/2015 - 08:17:23 ---A- . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\Windows\System32\Drivers\ibbus.sys [424800]
O58 - SDL:[MD5.79AE3CC82CA1563A4B392207997ACE7C] - 01/06/2015 - 20:00:18 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd64.sys [5384176]
O58 - SDL:[MD5.F5495B38BFB9149925F54F65AB40EFBF] - 26/10/2012 - 11:28:30 ---A- . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\Drivers\IntcDAud.sys [342528]
O58 - SDL:[MD5.ECDB27420D3A98424666904525A8562A] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\Drivers\intelide.sys [19808]
O58 - SDL:[MD5.8FF1978643EFD219C5BA49690191D701] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\Windows\System32\Drivers\intelpep.sys [46432]
O58 - SDL:[MD5.B61B60F36E1C8022FA8166ABF0F66B07] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\intelppm.sys [133632]
O58 - SDL:[MD5.CA0D42029AFFC4514D295E1EF823D02D] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - I/O QoS Filter.) -- C:\Windows\System32\Drivers\ioqos.sys [26624]
O58 - SDL:[MD5.6E3F9D95235DFC9417384080A216F310] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\Drivers\ipfltdrv.sys [85504]
O58 - SDL:[MD5.4F527ECB5EAB47D8EAF34A469666C469] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [81408]
O58 - SDL:[MD5.9E5E8F2A1996F23B7E9687846AA81B01] - 30/10/2015 - 08:17:43 ---A- . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys [143360]
O58 - SDL:[MD5.45413D9ADD6E76ABE99A452956E434CE] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\Drivers\irda.sys [120320]
O58 - SDL:[MD5.C317EB660138BC9CBFE37CCDE56351AE] - 30/10/2015 - 08:17:42 ---A- . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\Drivers\irenum.sys [19456]
O58 - SDL:[MD5.531994A6D9399D9B74BE12B5BB58A81E] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\Drivers\isapnp.sys [22880]
O58 - SDL:[MD5.701D7DB13B0815E7076EF4CB4CE981F8] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\Drivers\kbdclass.sys [62304]
O58 - SDL:[MD5.884EBBDDBF5968003B40185BD96FF0E6] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\Drivers\kbdhid.sys [36864]
O58 - SDL:[MD5.A8080BEBCDB7A16495CE1205921DCAC5] - 02/08/2012 - 04:22:48 ---A- . (.Pas de propriétaire - Keyboard Filter Driver.) -- C:\Windows\System32\Drivers\kbfiltr.sys [14992]
O58 - SDL:[MD5.6B3A0C7902811E6372643447E41F7048] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\Windows\System32\Drivers\kdnic.sys [23040]
O58 - SDL:[MD5.E04288E0D41DDCC9C3D41C808785D586] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [390656]
O58 - SDL:[MD5.982C795DE20CED7AEDD2E7899B5D9BC1] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [129888]
O58 - SDL:[MD5.7D8B9214692C4D0F1646215D9984E19A] - 22/11/2015 - 11:30:26 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface Packages.) -- C:\Windows\System32\Drivers\ksecpkg.sys [161632]
O58 - SDL:[MD5.E9BB0023D730701BB5D9839B44F5E6B5] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\Drivers\ksthunk.sys [26112]
O58 - SDL:[MD5.4E444F41E69BBE2E0BAE34D5DFCB5732] - 30/10/2015 - 08:17:23 ---A- . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabit Ethernet Controlle.) -- C:\Windows\System32\Drivers\L1C63x64.sys [121344]
O58 - SDL:[MD5.8E4CA9AFD55EF6B509C80A8715ABF8C6] - 24/08/2013 - 18:34:06 ---A- . (...) -- C:\Windows\System32\Drivers\lirsgt.sys [42696]
O58 - SDL:[MD5.EC34EED89C34B27C292166B725AC7A7B] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\Drivers\lltdio.sys [64000]
O58 - SDL:[MD5.961F28D879D345BFA50AF51285C90F2E] - 30/10/2015 - 08:17:23 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [108888]
O58 - SDL:[MD5.6BFB8D1B3407518BE06B6F81F92FA0F5] - 30/10/2015 - 08:17:23 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2i.sys [104800]
O58 - SDL:[MD5.BE0E47988D78F731DEC2C0CB03E765CB] - 30/10/2015 - 08:17:23 ---A- . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas3i.sys [99168]
O58 - SDL:[MD5.F99BF02BE9219986817BF094981EEB18] - 30/10/2015 - 08:17:23 ---A- . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sss.sys [82784]
O58 - SDL:[MD5.2FCF837196082864F66CFD9CAB256275] - 30/10/2015 - 08:17:47 ---A- . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichier LUA.) -- C:\Windows\System32\Drivers\luafv.sys [126464]
O58 - SDL:[MD5.1E9E32AEC3E1EB1B31B8169F33168B56] - 14/04/2015 - 08:37:42 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25816]
O58 - SDL:[MD5.54D70409DE6932E9EFA117779611E7A9] - 14/04/2015 - 08:37:46 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [107736]
O58 - SDL:[MD5.E9CD058C79EA15B4AA93E259FA713B07] - 21/11/2015 - 15:46:36 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [136408]
O58 - SDL:[MD5.580EF74A18E5357AC88FB04E2864ED74] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\Drivers\mcd.sys [23552]
O58 - SDL:[MD5.2ED29B635F35E31A1C0D3DDB7DD2AD03] - 30/10/2015 - 08:17:23 ---A- . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\Drivers\megasas.sys [59744]
O58 - SDL:[MD5.22E3CB85870879CBAE13C5095A8B12E3] - 30/10/2015 - 08:17:23 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\megasr.sys [575840]
O58 - SDL:[MD5.D41920FBFFF2BBCBBC69A5B383AD022E] - 30/10/2015 - 08:17:23 ---A- . (.Mellanox - MLX4 Bus Driver.) -- C:\Windows\System32\Drivers\mlx4_bus.sys [705376]
O58 - SDL:[MD5.64BD0C87064EA20C2D3DC4199F9C239C] - 30/10/2015 - 08:17:57 ---A- . (.Microsoft Corporation - MMCSS Driver.) -- C:\Windows\System32\Drivers\mmcss.sys [47616]
O58 - SDL:[MD5.8D4B46FA84A3A3702EDADD37FAC6EDBA] - 30/10/2015 - 08:17:41 ---A- . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\Drivers\modem.sys [41984]
O58 - SDL:[MD5.78FEC1BDB168370F131BFBFEA0A04E9D] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\Drivers\monitor.sys [38400]
O58 - SDL:[MD5.D1CC0833CFBC4222A95CAA5D0C8C78FF] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\Drivers\mouclass.sys [59232]
O58 - SDL:[MD5.C2E05EC6B80BCF5AE362DA873E1BCE64] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\Drivers\mouhid.sys [32256]
O58 - SDL:[MD5.D5B7668A8F6C67C51FA5C6C513396D6C] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\Drivers\mountmgr.sys [102752]
O58 - SDL:[MD5.5FBCB85D127BE21E3A9DAF11A13C00EA] - 30/10/2015 - 08:17:59 ---A- . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\Drivers\mpsdrv.sys [76288]
O58 - SDL:[MD5.37C9EC0398BFC22C616711E41AE157D5] - 30/10/2015 - 08:17:47 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [144384]
O58 - SDL:[MD5.61F9F27A8C3D7BCD287FE98A440421CE] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\Drivers\mrxsmb.sys [430944]
O58 - SDL:[MD5.CCAD845F4D21D0E0E0468205EE865473] - 30/10/2015 - 08:18:43 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [285696]
O58 - SDL:[MD5.0F47A6C09F0A7FB5513D322A2B9BE4EC] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [216408]
O58 - SDL:[MD5.D123343DDB02E372B02BF2C4293F835F] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\Drivers\msfs.sys [31232]
O58 - SDL:[MD5.F802FBABF0C4DF1BAA733187B2E476F5] - 30/10/2015 - 08:17:52 ---A- . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\Windows\System32\Drivers\msgpioclx.sys [163680]
O58 - SDL:[MD5.B3358F380BA3F29F56BE0F7734C24D5F] - 30/10/2015 - 08:17:25 ---A- . (.Microsoft Corporation - GPIO Button Driver.) -- C:\Windows\System32\Drivers\msgpiowin32.sys [46944]
O58 - SDL:[MD5.B2044D5D125F249680508EC0B2AAEFAC] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\Drivers\mshidkmdf.sys [8704]
O58 - SDL:[MD5.36ABE7FC80BED4FE44754AE5CFB51432] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\Windows\System32\Drivers\mshidumdf.sys [11776]
O58 - SDL:[MD5.59307FEAFC9E72EEEC56B7FD7D294F4C] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\Drivers\msisadrv.sys [18784]
O58 - SDL:[MD5.68D5354A4A9692EEC24664C60F47D4A2] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\Drivers\msiscsi.sys [277344]
O58 - SDL:[MD5.E9457EDFEBC774199F907395C6D09CA2] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [13824]
O58 - SDL:[MD5.C85D79735641D27C5821C35ECDDC2334] - 30/10/2015 - 08:17:39 ---A- . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discovery Protocol) Micros.) -- C:\Windows\System32\Drivers\mslldp.sys [81920]
O58 - SDL:[MD5.EF75184B64356850D0F04D049C253526] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [10752]
O58 - SDL:[MD5.543933D166C618E7588EA77707EC1683] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [10752]
O58 - SDL:[MD5.182711E9DDF70121A20EBB61B2DFB9E8] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\Drivers\msrpc.sys [354144]
O58 - SDL:[MD5.E887FFDD6734C496407E9219225CB6FF] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\Drivers\mssmbios.sys [43872]
O58 - SDL:[MD5.83A2AB75951000D681FABDB80C07AEFC] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [12800]
O58 - SDL:[MD5.4FA0483896FC16583851EFB733FCB083] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\Drivers\MTConfig.sys [15872]
O58 - SDL:[MD5.60F88248608315E13391C2F1C3B4473F] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\Windows\System32\Drivers\mup.sys [124248]
O58 - SDL:[MD5.218705233D02776AE4D19CC37D985C1B] - 30/10/2015 - 08:17:23 ---A- . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\Drivers\mvumis.sys [63840]
O58 - SDL:[MD5.28B597A61C9AC9B59BC0573D70A62CBF] - 14/04/2015 - 08:38:00 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [64216]
O58 - SDL:[MD5.B57CE307DA101C739885B7CC0678077F] - 30/10/2015 - 08:17:23 ---A- . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\Windows\System32\Drivers\ndfltr.sys [76128]
O58 - SDL:[MD5.AFAECF904F1C343EBD50F91BC8D0DBE8] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - NDIS (Network Driver Interface Specification).) -- C:\Windows\System32\Drivers\ndis.sys [1152864]
O58 - SDL:[MD5.202260E7CDD731A32AF62ABD1ABEE008] - 30/10/2015 - 08:17:41 ---A- . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\Drivers\ndiscap.sys [50176]
O58 - SDL:[MD5.A1D473D0CF10561F29B58EA7C5412A92] - 30/10/2015 - 08:17:42 ---A- . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\Windows\System32\Drivers\NdisImPlatform.sys [126976]
O58 - SDL:[MD5.1A0AE283B8DE6BB76412A0F8213D45AC] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\Drivers\ndistapi.sys [25600]
O58 - SDL:[MD5.A74EE2D2C0BFF5EC3A6185791868C4CA] - 30/10/2015 - 08:17:43 ---A- . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\Drivers\ndisuio.sys [63488]
O58 - SDL:[MD5.32A9BD1342640D48AD85C8B3E812B984] - 30/10/2015 - 08:17:42 ---A- . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Microsoft.) -- C:\Windows\System32\Drivers\NdisVirtualBus.sys [20480]
O58 - SDL:[MD5.6A6A8CF5EE61801375A38EBB871D4057] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\Drivers\ndiswan.sys [188928]
O58 - SDL:[MD5.50AEF8EF0064A91ABB08D858D039C9DE] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\Drivers\ndproxy.sys [60928]
O58 - SDL:[MD5.D358DF634F52247CB43F0781218F4D6E] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Windows Network Data Usage Monitoring Driver.) -- C:\Windows\System32\Drivers\Ndu.sys [124928]
O58 - SDL:[MD5.026618ECF6C4BEBDCB7885D42EC0DBE4] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\Drivers\netbios.sys [57184]
O58 - SDL:[MD5.F51C02D992A8D6BC5EC4D990F227D4C7] - 30/10/2015 - 08:18:08 ---A- . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\Drivers\netbt.sys [279552]
O58 - SDL:[MD5.D356F0A996E1F061025B975C1A7ACF29] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [465248]
O58 - SDL:[MD5.465DC580170CD844206D7E3EF1DBF2A1] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\Drivers\npfs.sys [68608]
O58 - SDL:[MD5.29395C214D2CD4C81F73166AB988A797] - 30/10/2015 - 08:17:25 ---A- . (.Microsoft Corporation - Named pipe service triggers.) -- C:\Windows\System32\Drivers\npsvctrig.sys [26624]
O58 - SDL:[MD5.2871225495F832A8C8A7DD1A17EDB3DC] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys [40960]
O58 - SDL:[MD5.EFEFC245B884B1BE0401931398DCD707] - 01/12/2015 - 08:12:09 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [2152800]
O58 - SDL:[MD5.13D72CB58503C91ECD4D98C25B3E7D56] - 30/10/2015 - 08:19:26 ---A- . (.Microsoft Corporation - NTOS extension host driver.) -- C:\Windows\System32\Drivers\ntosext.sys [19296]
O58 - SDL:[MD5.6DBD703320484C37CEA9E4E2D266A8CE] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\Drivers\null.sys [7168]
O58 - SDL:[MD5.AEEA2EC9CEEB8ADE8284583BBB98AB0D] - 13/07/2015 - 19:45:08 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 353.54.) -- C:\Windows\System32\Drivers\nvlddmkm.sys [11139216]
O58 - SDL:[MD5.96C8DE2AE83B2633B937D7121EC9A96F] - 13/07/2015 - 19:45:08 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 353.54.) -- C:\Windows\System32\Drivers\nvpciflt.sys [31560]
O58 - SDL:[MD5.604D27CC38CC23493F218D0BB834B3FF] - 30/10/2015 - 08:17:23 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [150368]
O58 - SDL:[MD5.8B50D897657AB4A15FD9E251BBF7D107] - 30/10/2015 - 08:17:23 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166240]
O58 - SDL:[MD5.939C0FAE9CC0CDD69E6508BDE4C11FE5] - 27/12/2013 - 19:42:26 ---A- . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\Drivers\nvvad64v.sys [39200]
O58 - SDL:[MD5.31F990B2B6B91E9D7A667405CE12FCB1] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\Drivers\NV_AGP.SYS [126304]
O58 - SDL:[MD5.536A0806CE2061A2157E65D4D8ABF30C] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\Drivers\nwifi.sys [530432]
O58 - SDL:[MD5.596FB6C5A72F34B7566930985E543806] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\Drivers\pacer.sys [160608]
O58 - SDL:[MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\Drivers\parport.sys [96768]
O58 - SDL:[MD5.24AC0FD10325FBC2303B29A5F237AEB0] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [118624]
O58 - SDL:[MD5.1D4E995955BDAE781C46CB97AE1CFB58] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\Drivers\pci.sys [330080]
O58 - SDL:[MD5.2B4D98DF0CA57FB9536DBC80D2449D1F] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\pciide.sys [16224]
O58 - SDL:[MD5.D0426C4E42AAE2108EBB9E28E5F00448] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\Drivers\pciidex.sys [52064]
O58 - SDL:[MD5.F4D5793BF2E58AF15C6CF2FEEF9E73EB] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\Drivers\pcmcia.sys [118112]
O58 - SDL:[MD5.22A53744CEEADFFFD33BA010FAD95229] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\Drivers\pcw.sys [51544]
O58 - SDL:[MD5.48F3A3222CF340FE31535CB6D49C6D6F] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\Windows\System32\Drivers\pdc.sys [99680]
O58 - SDL:[MD5.E2F8376F9731D12A009C522036C6073A] - 30/10/2015 - 08:17:52 ---A- . (.Microsoft Corporation - Protected Environment Authentication and Authorization Export D.) -- C:\Windows\System32\Drivers\PEAuth.sys [721408]
O58 - SDL:[MD5.1398A85E59698067CBBE1D66A9C13ADF] - 30/10/2015 - 08:17:23 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\Drivers\percsas2i.sys [58208]
O58 - SDL:[MD5.35F7C7AD709D909D618D9EDF987FC3ED] - 30/10/2015 - 08:17:23 ---A- . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\Drivers\percsas3i.sys [58720]
O58 - SDL:[MD5.9D78A9327B1B00F43FDF22AD1441A806] - 30/10/2015 - 08:17:19 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport Devices).) -- C:\Windows\System32\Drivers\portcls.sys [333824]
O58 - SDL:[MD5.21AECFF3EB5748CBE12538A2500EFDE5] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\processr.sys [118272]
O58 - SDL:[MD5.CFBA9C976CBF6796E5DC39EF59984021] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Pilote du support de Microsoft Quality Windows Audio Video Expe.) -- C:\Windows\System32\Drivers\qwavedrv.sys [48640]
O58 - SDL:[MD5.7B2AD8C55217B514C14281AB97B4E21D] - 30/10/2015 - 08:17:39 ---A- . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\Drivers\rasacd.sys [17408]
O58 - SDL:[MD5.381B8F2311A0375676B635EA5E7C8AB0] - 30/10/2015 - 08:17:41 ---A- . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\rasl2tp.sys [104960]
O58 - SDL:[MD5.3369023EB5790A75BA7DABA14B75D922] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\raspppoe.sys [81408]
O58 - SDL:[MD5.5BA6B9AD03B81546BA64E488C4EF9D17] - 30/10/2015 - 08:17:41 ---A- . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\Drivers\raspptp.sys [95744]
O58 - SDL:[MD5.1E32A8CD65C4AD0A827CFEB13034DA29] - 30/10/2015 - 08:17:41 ---A- . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\Drivers\rassstp.sys [78336]
O58 - SDL:[MD5.2B648363E4C5E34B469C58596F377DD9] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire tampon de lecteur red.) -- C:\Windows\System32\Drivers\rdbss.sys [422752]
O58 - SDL:[MD5.D0221C13960E274CC539D72D5A842ED0] - 30/10/2015 - 20:02:59 ---A- . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\Drivers\rdpbus.sys [26112]
O58 - SDL:[MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - 30/10/2015 - 20:02:52 ---A- . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) -- C:\Windows\System32\Drivers\rdpdr.sys [173056]
O58 - SDL:[MD5.177DF954D0DEC0465A380C75F6E7F65F] - 30/10/2015 - 20:02:53 ---A- . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\Drivers\rdpvideominiport.sys [29536]
O58 - SDL:[MD5.5D1680871054D2B0B8A971BC8AB3B837] - 30/10/2015 - 08:17:48 ---A- . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\Drivers\rdyboost.sys [236384]
O58 - SDL:[MD5.341E6830DA70F65730300DAB4CB0B490] - 30/10/2015 - 08:18:09 ---A- . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\Windows\System32\Drivers\refsv1.sys [930656]
O58 - SDL:[MD5.DBBACE77DDE8CCFD85B37B114965C385] - 24/11/2015 - 10:37:04 ---A- . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\Drivers\rmcast.sys [147968]
O58 - SDL:[MD5.AFF59ECB510B9F1C89883FF82D4996E6] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\Drivers\RNDISMP.sys [34304]
O58 - SDL:[MD5.312E61F310F440379EAB18B5EAEAC22A] - 30/10/2015 - 08:17:41 ---A- . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\Drivers\rootmdm.sys [12800]
O58 - SDL:[MD5.0AC5FCDC29ED97ECDEF1276425EE2059] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Link-Layer Topology Responder Driver for NDIS 6.) -- C:\Windows\System32\Drivers\rspndr.sys [80896]
O58 - SDL:[MD5.82ABD9D5B96E8EDC1155CFAC55AECE85] - 30/10/2015 - 08:17:19 ---A- . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 33003.) -- C:\Windows\System32\Drivers\rtwlane_13.sys [3749888]
O58 - SDL:[MD5.530F797129776AA7E81994783A97E2AD] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\Drivers\sbp2port.sys [110432]
O58 - SDL:[MD5.9B6B1D4DB35A3D9BEAF023BC95E1F49D] - 30/10/2015 - 08:17:52 ---A- . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce Microsoft.) -- C:\Windows\System32\Drivers\scfilter.sys [43008]
O58 - SDL:[MD5.26680088FE0841859B07128D00BB38FC] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\Drivers\scsiport.sys [173408]
O58 - SDL:[MD5.E1137E39C3BB3EF9AF2243745D901D60] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\Windows\System32\Drivers\sdbus.sys [277856]
O58 - SDL:[MD5.B6695A72A6E91E08439534AA74520D0C] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\Windows\System32\Drivers\sdport.sys [87904]
O58 - SDL:[MD5.DE6D7DC78D956928F59F7415A0F41E13] - 22/11/2015 - 11:33:26 ---A- . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\Windows\System32\Drivers\sdstor.sys [95072]
O58 - SDL:[MD5.67585C295FF2D221679E376B68893B35] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Serial Class Extension.) -- C:\Windows\System32\Drivers\SerCx.sys [74584]
O58 - SDL:[MD5.B8C4852CBCAAC1374C08EC7445443824] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\Windows\System32\Drivers\SerCx2.sys [155488]
O58 - SDL:[MD5.D3A103944A8FCD78FD48B2B19092790C] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\Drivers\serenum.sys [25088]
O58 - SDL:[MD5.88D58E1DAA6C5062DD3A26273106961F] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\Drivers\serial.sys [83968]
O58 - SDL:[MD5.0F5B43074AE731D2C6F061241C9D84A6] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys [27648]
O58 - SDL:[MD5.D9FE59276BD56A9643C32D5FACE2F251] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\Drivers\sfloppy.sys [18432]
O58 - SDL:[MD5.ABBE803FE0BDAE0E5BE74DDEFBE62F23] - 30/10/2015 - 08:17:23 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [44896]
O58 - SDL:[MD5.6043DF55CFE3C7ACF477645FA64DEA98] - 30/10/2015 - 08:17:23 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [81760]
O58 - SDL:[MD5.FC7A8A729B3AB453B2540798640D85E8] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\Drivers\smclib.sys [22016]
O58 - SDL:[MD5.1A6CB30F0EFC1632E6F1B852CA892583] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\Windows\System32\Drivers\spaceport.sys [532832]
O58 - SDL:[MD5.E1C158F6C00359278727A2CEE5D2ED71] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - SPB Class Extension.) -- C:\Windows\System32\Drivers\SpbCx.sys [77664]
O58 - SDL:[MD5.ACC1709EC7FE6EB8999DBC91C50C2B34] - 30/10/2015 - 08:18:43 ---A- . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\Drivers\srv.sys [407552]
O58 - SDL:[MD5.AFBCFC946FAE7483E27BD316D03F94A5] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\Windows\System32\Drivers\srv2.sys [690688]
O58 - SDL:[MD5.107C1EBE79710E4A759449BD6604245A] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [235520]
O58 - SDL:[MD5.CCDA497C880AD16D87EDFAEFCFB2EDF5] - 30/10/2015 - 08:17:23 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x64.) -- C:\Windows\System32\Drivers\stexstor.sys [31072]
O58 - SDL:[MD5.BF8EA6FC3358C2F69678E3E94F764F84] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\storahci.sys [133984]
O58 - SDL:[MD5.CC21DB3EF619B9480FE31A4EFE92CBEB] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Driver.) -- C:\Windows\System32\Drivers\stornvme.sys [79200]
O58 - SDL:[MD5.D10640D88BBEAC0C5B8E9771A86F2176] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\storport.sys [465248]
O58 - SDL:[MD5.390B8A75768E2689586539C224520895] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\Windows\System32\Drivers\storqosflt.sys [78848]
O58 - SDL:[MD5.770A92D9D3A0BF61C97C3AFCB36847D9] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\Windows\System32\Drivers\storufs.sys [34144]
O58 - SDL:[MD5.736A2418E3E7F3DB3CF6EB0A55D1D581] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\Drivers\storvsc.sys [36192]
O58 - SDL:[MD5.3DE7C9F63DB19B0C6101C39761F8AD1D] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\Drivers\stream.sys [74240]
O58 - SDL:[MD5.BD98B0225BCD49E8A62F4F8EE1D1F613] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\Drivers\swenum.sys [17760]
O58 - SDL:[MD5.CAE4B27B469C583131EA5AAE622F5D76] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - VSC vidéo Synth3D RemoteFX Microsoft.) -- C:\Windows\System32\Drivers\Synth3dVsc.sys [64000]
O58 - SDL:[MD5.67DA0E88D4855E2E6145182B87D6EC86] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\Drivers\tape.sys [31232]
O58 - SDL:[MD5.BEF8B869EDB75B97EDB4E8A334F02842] - 30/10/2015 - 08:17:46 ---A- . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\Windows\System32\Drivers\tbs.sys [25440]
O58 - SDL:[MD5.892F30506DCCF230C5A57019C1D8D31B] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [2403680]
O58 - SDL:[MD5.17F37EC9042D84561C550620643D9A85] - 30/10/2015 - 08:17:41 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [52224]
O58 - SDL:[MD5.2773E58897A3486354275019214BA6B9] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\Drivers\tdi.sys [39776]
O58 - SDL:[MD5.91D3F2A6253EF83EFBD7903028F58C4D] - 05/11/2015 - 13:05:48 ---A- . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\Drivers\tdx.sys [118624]
O58 - SDL:[MD5.E730D0EB1B84EBC98423FC8D285EDBC0] - 30/10/2015 - 20:02:59 ---A- . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\Windows\System32\Drivers\terminpt.sys [38752]
O58 - SDL:[MD5.ABBB149E1962C4E7DF06382F4B1FE55A] - 30/10/2015 - 08:18:08 ---A- . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\Windows\System32\Drivers\tm.sys [129368]
O58 - SDL:[MD5.169B0A246067457FEF8A18EED7EED9D5] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\Windows\System32\Drivers\tpm.sys [209760]
O58 - SDL:[MD5.48E828C66AB016E48F2CB4DD585315FD] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du Bureau à distance.) -- C:\Windows\System32\Drivers\TsUsbFlt.sys [61952]
O58 - SDL:[MD5.267C76EE60736EA5A1811A53FA02AABE] - 30/10/2015 - 08:17:25 ---A- . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\Drivers\TsUsbGD.sys [33280]
O58 - SDL:[MD5.8CE72F094B822AD5EE9C3A3AFC0C16B6] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\Drivers\tunnel.sys [153600]
O58 - SDL:[MD5.42C546414F80BD6C0137FC3A106F8A69] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\Drivers\UAGP35.sys [66400]
O58 - SDL:[MD5.1686DBC81748B096232B15F16C302985] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\Windows\System32\Drivers\uaspstor.sys [77664]
O58 - SDL:[MD5.3995CC3DEDED258768B8EBC2F4C0DC73] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\Windows\System32\Drivers\UcmCx.sys [61952]
O58 - SDL:[MD5.1C95F7CE37D9EFB90EBE987A9712356C] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - USB Connector Manager UCSI Client.) -- C:\Windows\System32\Drivers\UcmUcsi.sys [46592]
O58 - SDL:[MD5.AED081772091C98173905E2DF28C223B] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - USB Controller Extension.) -- C:\Windows\System32\Drivers\Ucx01000.sys [209248]
O58 - SDL:[MD5.DCA34A111C29E4578DF2B8CEA3C7CDBD] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - udecx.DRIVER.) -- C:\Windows\System32\Drivers\Udecx.sys [45056]
O58 - SDL:[MD5.718A956AE00CE086F381044AB66CC29C] - 30/10/2015 - 08:17:50 ---A- . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [321024]
O58 - SDL:[MD5.BA760F8E66428BA9FF1E8BFBC6248136] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\Windows\System32\Drivers\uefi.sys [28512]
O58 - SDL:[MD5.5F0D997E6FC5A418D7673148CEF72887] - 30/10/2015 - 08:17:52 ---A- . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\Windows\System32\Drivers\ufx01000.sys [254816]
O58 - SDL:[MD5.2B1DABA97DDF5365FC66EE7DEDD86A13] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - UFX Chipidea Client Driver.) -- C:\Windows\System32\Drivers\UfxChipidea.sys [94048]
O58 - SDL:[MD5.DB630FC660443D63EBAB2C830C298EFE] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\Windows\System32\Drivers\ufxsynopsys.sys [131424]
O58 - SDL:[MD5.6DE78C04BF32ECA7AF3064F53687C9A5] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à processeur K8/9.) -- C:\Windows\System32\Drivers\ULIAGPKX.SYS [66912]
O58 - SDL:[MD5.67D1E0E6E4D5D33AF0AEF0E33B4DA0F4] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\Drivers\umbus.sys [56832]
O58 - SDL:[MD5.11680607944A719EF20E0E740785712A] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\Drivers\umpass.sys [13824]
O58 - SDL:[MD5.2410A0C20D21A25E6C01979FA886BE90] - 30/10/2015 - 08:17:25 ---A- . (.Microsoft Corporation - USB Role-Switch Driver for Chipidea Core.) -- C:\Windows\System32\Drivers\urschipidea.sys [28512]
O58 - SDL:[MD5.6E59CE43B6BA5AA1ADCF36A4DBBB92BB] - 30/10/2015 - 08:17:52 ---A- . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\Windows\System32\Drivers\urscx01000.sys [57696]
O58 - SDL:[MD5.E8A59FA109A22FC07E44BDFCC9727DBD] - 30/10/2015 - 08:17:25 ---A- . (.Microsoft Corporation - USB Role-Switch Driver for Synopsys Core.) -- C:\Windows\System32\Drivers\urssynopsys.sys [27488]
O58 - SDL:[MD5.CAD4D520592B30F569C320A0EC050C21] - 30/10/2015 - 08:17:43 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [23040]
O58 - SDL:[MD5.C93438D72136124C4908C93040022684] - 30/10/2015 - 08:17:51 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD2.sys [36864]
O58 - SDL:[MD5.D8A44550ECE102B6443F5D54DCE7DAB3] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [159072]
O58 - SDL:[MD5.66B3D22DAB5312FF238ABF5C6D9F8FAB] - 30/10/2015 - 08:17:19 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [102400]
O58 - SDL:[MD5.5EB167907085B708D8A60D412532B7D3] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [30048]
O58 - SDL:[MD5.3E4F20DB902D2E2914F3FF3DB9772200] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [95584]
O58 - SDL:[MD5.41F7F00D76904416EF1F9EFA1A4C37A2] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\Windows\System32\Drivers\usbhub.sys [500064]
O58 - SDL:[MD5.12A0B486EA13DF46C27B90CC2CE92FE5] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\Windows\System32\Drivers\USBHUB3.SYS [534368]
O58 - SDL:[MD5.DAB35CCA86F5FBE77D870A40089BC4A1] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [29696]
O58 - SDL:[MD5.1FC3C563E2B1EAA6AE03904B2BBBF655] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [454496]
O58 - SDL:[MD5.21162F65C7756AAECAEBED9E67D0A5FE] - 30/10/2015 - 08:17:21 ---A- . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\Drivers\usbprint.sys [27648]
O58 - SDL:[MD5.87870D9FA15A649DAF7D36C6E956AC8A] - 30/10/2015 - 08:18:43 ---A- . (.Microsoft Corporation - Gestionnaire de stratégie de redirection USB Windows.) -- C:\Windows\System32\Drivers\usbrpm.sys [32768]
O58 - SDL:[MD5.CA6369870F91F3D367D26278E0AD0DDF] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - USB Serial Driver.) -- C:\Windows\System32\Drivers\usbser.sys [67072]
O58 - SDL:[MD5.37C2CD8587BF7F785381EB7B26916B52] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [127840]
O58 - SDL:[MD5.8B3E458A8851F9A3B2109B1680EE1159] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [35328]
O58 - SDL:[MD5.4B13B61CBB9CC3CB373C60B930D648F5] - 30/10/2015 - 08:17:19 ---A- . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\Drivers\usbvideo.sys [221184]
O58 - SDL:[MD5.325727F01F03C504CF788618A13DC266] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\Windows\System32\Drivers\USBXHCI.SYS [378208]
O58 - SDL:[MD5.E1BE37312785A71862516F66B3FD24CE] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\Windows\System32\Drivers\vdrvroot.sys [52576]
O58 - SDL:[MD5.E42C0F2850735FF9D908B9DB581E6314] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Driver Verifier Extension.) -- C:\Windows\System32\Drivers\VerifierExt.sys [200536]
O58 - SDL:[MD5.EC15FD6A28757793E2DA394CD94ABD52] - 30/10/2015 - 08:17:23 ---A- . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\Drivers\vhdmp.sys [707424]
O58 - SDL:[MD5.D0C9632C350F46786643A069251BC249] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Pilote d'infrastructure HID virtuelle (VHF).) -- C:\Windows\System32\Drivers\vhf.sys [31744]
O58 - SDL:[MD5.EF2270C2DF2B61FF1B8C422DC443CEFE] - 22/06/2015 - 01:49:50 ---A- . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\viahduaa.sys [701136]
O58 - SDL:[MD5.97F5A1D8AD1CB0A73C86F53C60DA06B6] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\Drivers\videoprt.sys [50176]
O58 - SDL:[MD5.CCBC5D1B7A2544642FFB5B890B2C180F] - 30/10/2015 - 08:17:35 ---A- . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\Windows\System32\Drivers\vmbkmcl.sys [79712]
O58 - SDL:[MD5.E886CB75DA2B6EB35469EF10135624C7] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Child Driver.) -- C:\Windows\System32\Drivers\vmbus.sys [99672]
O58 - SDL:[MD5.46D2EC27820EC0F798F85821E53C2942] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\Drivers\VMBusHID.sys [25088]
O58 - SDL:[MD5.3FEA05AE93C872BE6AFC9EC26FFA823F] - 22/06/2015 - 01:49:50 ---A- . (.Creative Technology Ltd. - Creative Audio Driver.) -- C:\Windows\System32\Drivers\VMfilt64.sys [42192]
O58 - SDL:[MD5.77555B11B264991DDC26872FFCF1AB97] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\Windows\System32\Drivers\vmgencounter.sys [13312]
O58 - SDL:[MD5.044890BB0D6CF1E23C1087234D320509] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\Drivers\vms3cap.sys [8704]
O58 - SDL:[MD5.32FF460DA8C1F370F5C08B7654899B73] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\Windows\System32\Drivers\vmstorfl.sys [46944]
O58 - SDL:[MD5.B9265F47E7A354BAAA0AF5CBA3F8F7CE] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgr.sys [81248]
O58 - SDL:[MD5.BEE9C8B72AB752B794F69C2B9B3678AA] - 30/10/2015 - 08:18:08 ---A- . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys [367968]
O58 - SDL:[MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [414560]
O58 - SDL:[MD5.F7B1B1101271E31F43CC76E890704F51] - 30/10/2015 - 08:17:18 ---A- . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\Windows\System32\Drivers\vpci.sys [74080]
O58 - SDL:[MD5.D48ED0A08BD2FD25A833E6AC99623091] - 30/10/2015 - 08:17:23 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [166752]
O58 - SDL:[MD5.6990D4AFDF545669D4E6C232F26DE1FB] - 30/10/2015 - 08:17:23 ---A- . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\Drivers\VSTXRAID.SYS [305504]
O58 - SDL:[MD5.1EE11F0508C58EF081F4176E66D6970B] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Virtual Wi-Fi Bus Driver.) -- C:\Windows\System32\Drivers\vwifibus.sys [26624]
O58 - SDL:[MD5.938E4EF58E42D252B742B0E243011B90] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\Drivers\vwififlt.sys [74240]
O58 - SDL:[MD5.3BE5AAC930447FD18D4A8255A2FEC95C] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\Drivers\vwifimp.sys [39936]
O58 - SDL:[MD5.00C27B64C758C111E5D78A70DE6CA2B6] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\Drivers\wacompen.sys [30208]
O58 - SDL:[MD5.8CB53620B2C2F0641DD7563EA0FDF491] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\Drivers\wanarp.sys [79872]
O58 - SDL:[MD5.8AD4E5544825EBC298B4C138C070185F] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\Drivers\watchdog.sys [58880]
O58 - SDL:[MD5.069D3D6E20AD753B34FCE856F0436869] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\Windows\System32\Drivers\WdBoot.sys [44568]
O58 - SDL:[MD5.6CC727E94CD84E9720FDCDA8089CABCC] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys [794432]
O58 - SDL:[MD5.E3E97151A1D1E87BB2D5371F66C5F169] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Microsoft antimalware file system filter driver.) -- C:\Windows\System32\Drivers\WdFilter.sys [293216]
O58 - SDL:[MD5.B5E45BF47AE0C1D724FBD51CE8D6CDEE] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [61248]
O58 - SDL:[MD5.E70DDD8E2245CC67547B0861983912D8] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\Windows\System32\Drivers\WdiWiFi.sys [694784]
O58 - SDL:[MD5.07B043160399AF4009054E2EA3464BF4] - 30/10/2015 - 08:17:37 ---A- . (.Microsoft Corporation - Microsoft Network Realtime Inspection Driver.) -- C:\Windows\System32\Drivers\WdNisDrv.sys [118112]
O58 - SDL:[MD5.5B23A79E2C76215BC5A0CBA834290F37] - 30/10/2015 - 08:18:18 ---A- . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\Windows\System32\Drivers\werkernel.sys [39776]
O58 - SDL:[MD5.C11272713719922DE5711094333BD166] - 30/10/2015 - 08:18:01 ---A- . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwfs.sys [154464]
O58 - SDL:[MD5.EF536C54AB9281FDC4E83B07279FCFC4] - 13/11/2015 - 07:55:02 ---A- . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\Drivers\wimmount.sys [35680]
O58 - SDL:[MD5.D8966A76408107224C6013993135DD78] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\Windows\System32\Drivers\WindowsTrustedRT.sys [106520]
O58 - SDL:[MD5.8B102A7B6CE326FD4208CC7C2D183343] - 30/10/2015 - 08:17:26 ---A- . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Driver.) -- C:\Windows\System32\Drivers\WindowsTrustedRTProxy.sys [17944]
O58 - SDL:[MD5.297A5126D1854199F294330B681A779D] - 30/10/2015 - 08:17:35 ---A- . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\Drivers\winhv.sys [30048]
O58 - SDL:[MD5.4A53441C1C4D2878BEF27E381138BB2D] - 30/10/2015 - 08:17:23 ---A- . (.Mellanox - Kernel WinMad.) -- C:\Windows\System32\Drivers\winmad.sys [26976]
O58 - SDL:[MD5.260907CE034FE327AC99BDA4153AB22F] - 30/10/2015 - 08:17:19 ---A- . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\Windows\System32\Drivers\winusb.sys [89088]
O58 - SDL:[MD5.40A3E8D729F458B2C9A8BD9380FF83D5] - 30/10/2015 - 08:17:23 ---A- . (.Mellanox - Kernel WinVerbs.) -- C:\Windows\System32\Drivers\winverbs.sys [59232]
O58 - SDL:[MD5.8F010BF65238F3F822D22BA12831796E] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\Drivers\wmiacpi.sys [18432]
O58 - SDL:[MD5.7284BD8705CF83CAE1775A0B98A1E7E4] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\Drivers\wmilib.sys [20320]
O58 - SDL:[MD5.2A9650FCC696DB28E45EA8B33B99B8E6] - 30/10/2015 - 08:17:50 ---A- . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\Windows\System32\Drivers\wof.sys [199008]
O58 - SDL:[MD5.22C52D7EE7C7D0E02C8EFD8CAE8E3A71] - 30/10/2015 - 08:18:42 ---A- . (.Microsoft Corporation - Family Safety Filter Driver.) -- C:\Windows\System32\Drivers\wpcfltr.sys [52768]
O58 - SDL:[MD5.1C08E424CBDD5065BB7266F8C048C1B1] - 30/10/2015 - 08:19:39 ---A- . (.Microsoft Corporation - Windows Portable Device Upper Class Filter Driver.) -- C:\Windows\System32\Drivers\WpdUpFltr.sys [30560]
O58 - SDL:[MD5.0AA9752E990BA2B0ACF440B7FAEE650E] - 30/10/2015 - 08:18:03 ---A- . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\Windows\System32\Drivers\WppRecorder.sys [25440]
O58 - SDL:[MD5.638B43D39A3D0B47024555CF1095E6F1] - 30/10/2015 - 08:17:40 ---A- . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\Drivers\ws2ifsl.sys [22528]
O58 - SDL:[MD5.A928F25CB62232F413EE655352856E10] - 30/10/2015 - 08:18:09 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Platform.) -- C:\Windows\System32\Drivers\WUDFPf.sys [98816]
O58 - SDL:[MD5.A932391623D5CEC4EF4A2A17D3CEBFCD] - 30/10/2015 - 08:18:09 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Reflecto.) -- C:\Windows\System32\Drivers\WUDFRd.sys [216064]
O58 - SDL:[MD5.80BC02A73A3949A7AEF34791206C7D7F] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\Windows\System32\Drivers\xboxgip.sys [238592]
O58 - SDL:[MD5.1F1EF8E701859581251B52035C1C1CEF] - 30/10/2015 - 08:17:22 ---A- . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\Windows\System32\Drivers\xinputhid.sys [26112]
O58 - SDL:[MD5.5B7B6AF7E94E972DCE4BF892ABD466B6] - 24/11/2015 - 10:53:39 ---A- . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\Windows\System32\win32k.sys [115200]
O58 - SDL:[MD5.42B6285314851A693F68F7A7B79FD1B9] - 24/11/2015 - 09:55:41 ---A- . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\Windows\System32\win32kbase.sys [1393664]
O58 - SDL:[MD5.78065D08A6D5886ACF9B6BA7E34A554C] - 07/12/2015 - 04:40:47 ---A- . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\Windows\System32\win32kfull.sys [3593216]
O58 - SDL:[MD5.6B02BDB30F311C46B5709FECB0FB9B97] - 30/10/2015 - 08:18:01 ---A- . (.Microsoft Corporation - Windows Background System Events Broker API Server.) -- C:\Windows\System32\Windows.ApplicationModel.Background.SystemEventsBroker.dll [112128]
O58 - SDL:[MD5.4A17F6A6CA1F809B14031F455626464C] - 30/10/2015 - 08:18:01 ---A- . (.Microsoft Corporation - Windows System Diagnostics DLL.) -- C:\Windows\System32\Windows.System.Diagnostics.dll [74752]
O58 - SDL:[MD5.6D64E397E6CAFF519D45E2427BCFF071] - 30/10/2015 - 08:17:59 ---A- . (.Microsoft Corporation - Windows.System.Launcher.) -- C:\Windows\System32\Windows.System.Launcher.dll [301056]
O58 - SDL:[MD5.53ACCB2032B5AD12C062E179141DBC6F] - 30/10/2015 - 08:17:57 ---A- . (.Microsoft Corporation - DLL d’ID matériel du profil du système Windows.) -- C:\Windows\System32\Windows.System.Profile.HardwareId.dll [207872]
O58 - SDL:[MD5.81345D13507B03D5B4483A9303BF26B7] - 30/10/2015 - 08:17:50 ---A- . (.Microsoft Corporation - Platform Diagnostics and Usage Settings DLL.) -- C:\Windows\System32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll [50176]
O58 - SDL:[MD5.AE5A851BF0316A2875BDCD00234115B3] - 30/10/2015 - 08:18:14 ---A- . (.Microsoft Corporation - Windows.System.Profile.RetailInfo Runtime DLL.) -- C:\Windows\System32\Windows.System.Profile.RetailInfo.dll [145408]
O58 - SDL:[MD5.A7F0D3D9F450AC7214E40DD2CDB44E91] - 30/10/2015 - 08:17:50 ---A- . (.Microsoft Corporation - Windows.System.Profile.SystemManufacturers.) -- C:\Windows\System32\Windows.System.Profile.SystemManufacturers.dll [28160]
O58 - SDL:[MD5.D5693FED29FD50AE7DF4936FEF3C211B] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Windows System RemoteDesktop Runtime DLL.) -- C:\Windows\System32\Windows.System.RemoteDesktop.dll [23552]
O58 - SDL:[MD5.0689B5CFCC436144E842C8F2C9F4E7D1] - 30/10/2015 - 08:17:58 ---A- . (.Microsoft Corporation - Windows Runtime SystemManagement DLL.) -- C:\Windows\System32\Windows.System.SystemManagement.dll [128000]
O58 - SDL:[MD5.708A606A535B7CBC34A75FFB8656C846] - 30/10/2015 - 08:18:31 ---A- . (.Microsoft Corporation - Windows Background System Events Broker API Server.) -- C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll [88064]
O58 - SDL:[MD5.3784BD50A932AB97C115083B7E247B81] - 30/10/2015 - 08:18:31 ---A- . (.Microsoft Corporation - Windows System Diagnostics DLL.) -- C:\Windows\SysWOW64\Windows.System.Diagnostics.dll [59392]
O58 - SDL:[MD5.24FF008FFBD442555111BB9DFFC1E7F2] - 30/10/2015 - 08:18:31 ---A- . (.Microsoft Corporation - Windows.System.Launcher.) -- C:\Windows\SysWOW64\Windows.System.Launcher.dll [221696]
O58 - SDL:[MD5.FA70DB54DACDDD8B5942454DE74CC9F5] - 30/10/2015 - 08:18:29 ---A- . (.Microsoft Corporation - DLL d’ID matériel du profil du système Windows.) -- C:\Windows\SysWOW64\Windows.System.Profile.HardwareId.dll [176640]
O58 - SDL:[MD5.233774274C2CAF8382999B13AC0FCF24] - 30/10/2015 - 08:18:22 ---A- . (.Microsoft Corporation - Platform Diagnostics and Usage Settings DLL.) -- C:\Windows\SysWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll [39936]
O58 - SDL:[MD5.D13496DEE83544271C97D5D611445766] - 30/10/2015 - 08:18:36 ---A- . (.Microsoft Corporation - Windows.System.Profile.RetailInfo Runtime DLL.) -- C:\Windows\SysWOW64\Windows.System.Profile.RetailInfo.dll [110080]
O58 - SDL:[MD5.05DF7FF6F44337F6B7C3EF94E88F0C90] - 30/10/2015 - 08:18:22 ---A- . (.Microsoft Corporation - Windows.System.Profile.SystemManufacturers.) -- C:\Windows\SysWOW64\Windows.System.Profile.SystemManufacturers.dll [23040]
O58 - SDL:[MD5.41BBC95736FF490917CE84E0F60455C9] - 30/10/2015 - 08:18:31 ---A- . (.Microsoft Corporation - Windows System RemoteDesktop Runtime DLL.) -- C:\Windows\SysWOW64\Windows.System.RemoteDesktop.dll [18944]
O58 - SDL:[MD5.02152DD41E6E25D45FF528390FA4030F] - 30/10/2015 - 08:18:31 ---A- . (.Microsoft Corporation - Windows Runtime SystemManagement DLL.) -- C:\Windows\SysWOW64\Windows.System.SystemManagement.dll [97280]
~ Drivers: 20 Scanned in 00mn 17s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 17/12/2015 - 15:58:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\CdmAdapterVersion [13]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\5Lv_tAdv_bigger[1].png [2617]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\CWbgrsOWIAAeoBc[1].png [144537]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\CWcEpy4XAAAYBb-[1].png [141102]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\EiSy_pr-_bigger[1].png [13475]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\Qf9Ob16M_bigger[1].png [9203]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\XDfHUsCM_bigger[1].png [2973]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\9Wg7OslE_bigger[1].png [2617]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\CWX9I_tWIAEAdZI[1].png [316820]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\CWabtAjWsAAWTn0[1].png [450044]
O61 - LFC: 17/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\CWcnWbLU4AAPTy2[1].png [443821]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\oSCSnt15_bigger[1].png [3863]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\xtLGoMpu_bigger[1].png [9559]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\KEO4P3NZ\DEgPbOLB_bigger[1].png [4753]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\KEO4P3NZ\LFg9-CwO_bigger[1].png [4397]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\KEO4P3NZ\p4YoQ3IN_bigger[1].png [4931]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\KEO4P3NZ\scVy6260_bigger[1].png [3685]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\CWVt2AVW4AAvSUr[1].png [321914]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\CWb4nOPWUAQRuFU[1].png [83518]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\CWbzEZ4WIAAQECC[1].png [251905]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\DEF11TAe_bigger[1].png [5109]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\JgXAxPOC_bigger[1].png [3329]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\ZCvxEX_-_bigger[1].png [2439]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\kjAEKJPc_bigger[1].png [5999]
O61 - LFC: 17/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\oW8ZOK4P_bigger[1].png [8491]
O61 - LFC: 17/12/2015 - 15:59:25 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\65 - notes MT Platonov dec 2005 (1).LNK [1247]
O61 - LFC: 17/12/2015 - 15:59:26 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\Frank.LNK [551]
O61 - LFC: 17/12/2015 - 15:59:26 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\Le 16 septembre 2015 17.LNK [730]
O61 - LFC: 17/12/2015 - 15:59:26 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\Nul et non avenu-2 -.LNK [1322]
O61 - LFC: 17/12/2015 - 15:59:26 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\Nul et non avenu-2.LNK [1312]
O61 - LFC: 17/12/2015 - 15:59:26 --H-- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\index.dat [1020]
O61 - LFC: 17/12/2015 - 15:59:32 ---A- . (.angelique.aubanodalinor@gmail.com.) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Word\Enregistrement automatique deNul et non avenu-2 -.asd [510464]
O61 - LFC: 17/12/2015 - 15:59:33 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Word\Nul%20et%20non%20avenu-2%20-304888521420289129\Nul%20et%20non%20avenu-2%20-.docx.lnk [886]
O61 - LFC: 17/12/2015 - 15:59:33 R---- . (.angelique.aubanodalinor@gmail.com.) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Word\Nul%20et%20non%20avenu-2%20-304888521420289129\Nul%20et%20non%20avenu-2%20-((Autosaved-304888603059427440)).asd [510464]
O61 - LFC: 17/12/2015 - 16:00:00 ---A- . (.Michael.) -- C:\Users\Angélique\Downloads\65 - notes MT Platonov dec 2005 (1).doc [31744]
O61 - LFC: 17/12/2015 - 16:00:00 ---A- . (.Michael.) -- C:\Users\Angélique\Downloads\65 - notes MT Platonov dec 2005.doc [31744]
O61 - LFC: 18/12/2015 - 15:58:23 --HA- . (...) -- C:\Users\Angélique\AppData\Local\IconCache.db [44363]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\9E2F88E3.Twitter_4.3.3.0_x86__wgeqdkkx372wm\ActivationStore\ActivationStore.dat [16384]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\-n3UGB0h_bigger[1].png [12763]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\0U59shKt_bigger[1].png [9025]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\CWhChkHUwAAbdFi[1].png [191630]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\CWhxsEnVEAAH8PZ[1].png [149913]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\RU5EQBtk_bigger[1].png [5643]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\_kDZwq27_bigger[1].png [9025]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\1S9NAIFY\e3b3d9edd9c3f3c80b04ab9f78e03d17_bigger[1].png [16298]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\CWa_YbiWEAAAFnK[1].png [109689]
O61 - LFC: 18/12/2015 - 15:58:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\CWhzhmBWUAAAvGu[1].png [124051]
O61 - LFC: 18/12/2015 - 15:58:28 -SHA- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\9E2F88E3.Twitter_4.3.3.0_x86__wgeqdkkx372wm\ActivationStore\ActivationStore.dat.LOG1 [16384]
O61 - LFC: 18/12/2015 - 15:58:28 -SHA- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\9E2F88E3.Twitter_4.3.3.0_x86__wgeqdkkx372wm\ActivationStore\ActivationStore.dat.LOG2 [0]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\K1pddZ32_bigger[1].png [7957]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\rt74mtSJ_bigger[1].png [5999]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\DH4004XT\xGJe1ilF_bigger[1].png [4041]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\KEO4P3NZ\CWiLJnlWoAABl3d[1].png [313349]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\KEO4P3NZ\UH8eGmAQ_bigger[1].png [4753]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\KEO4P3NZ\t3CLtFjw_bigger[1].png [5287]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\KEO4P3NZ\u88vMjhZ_bigger[1].png [6533]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\1921d18bae30463167da58ad64611996_bigger[1].png [16298]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\6Hfy7rKx_bigger[1].png [3863]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\CWh0tB4UAAAIjlT[1].png [376825]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\CWh7n16U8AAiNb1[1].png [294906]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\CWhIiTQUAAE6h8y[1].png [252779]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\CWhsw7nUAAA4p__[1].png [153028]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\cj83X4sx_bigger[1].png [3507]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\fnTFGDX__bigger[1].png [8135]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\AC\INetCache\T7EXR9B5\json[2].json [202743]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\LocalState\_sessionState.json [535]
O61 - LFC: 18/12/2015 - 15:58:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\9E2F88E3.Twitter_wgeqdkkx372wm\Settings\settings.dat [8192]
O61 - LFC: 18/12/2015 - 15:58:30 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\AdobeSystemsIncorporated.AdobePhotoshopExpress_ynb6jyjzte8ga\AdobeSystemsIncorporated.AdobePhotoshopExpress_1.3.0.44_x64__ynb6jyjzte8ga\ActivationStore\ActivationStore.dat [32768]
O61 - LFC: 18/12/2015 - 15:58:30 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\AdobeSystemsIncorporated.AdobePhotoshopExpress_ynb6jyjzte8ga\Settings\settings.dat [8192]
O61 - LFC: 18/12/2015 - 15:58:30 -SHA- . (...) -- C:\Users\Angélique\AppData\Local\Packages\AdobeSystemsIncorporated.AdobePhotoshopExpress_ynb6jyjzte8ga\AdobeSystemsIncorporated.AdobePhotoshopExpress_1.3.0.44_x64__ynb6jyjzte8ga\ActivationStore\ActivationStore.dat.LOG1 [20480]
O61 - LFC: 18/12/2015 - 15:58:30 -SHA- . (...) -- C:\Users\Angélique\AppData\Local\Packages\AdobeSystemsIncorporated.AdobePhotoshopExpress_ynb6jyjzte8ga\AdobeSystemsIncorporated.AdobePhotoshopExpress_1.3.0.44_x64__ynb6jyjzte8ga\ActivationStore\ActivationStore.dat.LOG2 [0]
O61 - LFC: 19/12/2015 - 15:58:19 ---A- . (.Sony Corporation.) -- C:\Users\Angélique\AppData\Local\Downloaded Installations\{68F8FD2F-085B-4EC6-B5E7-A5E34174522E}\1036.MST [53760]
O61 - LFC: 19/12/2015 - 15:58:19 ---A- . (.Sony Corporation.) -- C:\Users\Angélique\AppData\Local\Downloaded Installations\{68F8FD2F-085B-4EC6-B5E7-A5E34174522E}\NWZ-E380 WALKMAN Guide.msi [5116928]
O61 - LFC: 19/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\002.part [62131634]
O61 - LFC: 19/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\004.part [0]
O61 - LFC: 19/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\007.part [0]
O61 - LFC: 19/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\015.part [259886512]
O61 - LFC: 19/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\023.part [0]
O61 - LFC: 20/12/2015 - 15:58:18 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Comms\Temp\CalendarCache.dat [20]
O61 - LFC: 20/12/2015 - 15:58:18 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Comms\UnistoreDB\USS.chk [8192]
O61 - LFC: 20/12/2015 - 15:58:18 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Comms\Unistore\data\AggregateCache.uca [4]
O61 - LFC: 20/12/2015 - 15:58:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [189101]
O61 - LFC: 20/12/2015 - 15:58:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Local State [44205]
O61 - LFC: 20/12/2015 - 15:59:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\TileDataLayer\Database\EDB.chk [8192]
O61 - LFC: 20/12/2015 - 15:59:27 -SHA- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Protect\S-1-5-21-2741308799-4069407637-4289950776-1002\4042c6e3-3171-411e-9a9c-a9130d96b842 [468]
O61 - LFC: 20/12/2015 - 15:59:27 -SHA- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Protect\S-1-5-21-2741308799-4069407637-4289950776-1002\89e53652-8ca9-4707-a981-12d6552db3b7 [468]
O61 - LFC: 20/12/2015 - 15:59:27 -SHA- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Protect\S-1-5-21-2741308799-4069407637-4289950776-1002\bf0225e9-a41b-42fb-b5c7-0a4a966f841a [468]
O61 - LFC: 20/12/2015 - 15:59:27 -SHA- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Protect\S-1-5-21-2741308799-4069407637-4289950776-1002\ddc58b2e-8481-4ce9-90a6-0758cf9e4827 [468]
O61 - LFC: 20/12/2015 - 15:59:27 -SHA- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Protect\S-1-5-21-2741308799-4069407637-4289950776-1002\e31947f5-a075-43a8-b21a-d5cb94c5c3cc [468]
O61 - LFC: 20/12/2015 - 15:59:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Sony Corporation\PMB\Announce\2015082780.xml [1639]
O61 - LFC: 20/12/2015 - 15:59:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Sony Corporation\PMB\Announce\2015122001.xml [5975]
O61 - LFC: 20/12/2015 - 15:59:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Sony Corporation\PMB\Announce\{00D8E668-390A-4228-8D55-3D654EBCFDA6}.png [8979]
O61 - LFC: 20/12/2015 - 15:59:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Sony Corporation\PMB\Announce\{22EE0DAB-DEC2-4e8f-9A27-0686F361F910}.png [69]
O61 - LFC: 20/12/2015 - 15:59:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Sony Corporation\PMB\Announce\{29A6152D-3340-40db-B101-2884CED0D786}.png [7484]
O61 - LFC: 20/12/2015 - 15:59:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Sony Corporation\PMB\Announce\{A0FCB006-6039-4521-B7D6-6D25DFA67492}.png [69]
O61 - LFC: 20/12/2015 - 15:59:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Sony Corporation\PMB\Announce\{D4910BC8-0572-4cab-9CEF-1FA422933C39}.png [4477]
O61 - LFC: 20/12/2015 - 15:59:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Sony Corporation\PMB\Announce\{E29D194E-0F97-4166-A9FB-6D32EC1DD085}.png [69]
O61 - LFC: 20/12/2015 - 15:59:45 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\sp_data.sys [500]
O61 - LFC: 20/12/2015 - 16:00:16 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Incoming\01-shym-et_alors.mp3 [7432243]
O61 - LFC: 20/12/2015 - 16:00:16 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Incoming\03-shym-on_se_fout_de_nous.mp3 [8388340]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Incoming\Shym-Prendre.L.Air.2010.H5N1.By.Cheyenne.rar [75282535]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Incoming\shym-et_alors.mp3 [7432243]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\001.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\001.part.met [326]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\001.part.met.bak [326]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\002.part.met [321]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\002.part.met.bak [321]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\003.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\003.part.met [167]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\003.part.met.bak [167]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\004.part.met [373]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\004.part.met.bak [373]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\005.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\005.part.met [112]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\005.part.met.bak [112]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\006.part.met [154]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\006.part.met.bak [154]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\007.part.met [150]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\007.part.met.bak [150]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\008.part [1758809787]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\008.part.met [3709]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\008.part.met.bak [3709]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\009.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\009.part.met [123]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\009.part.met.bak [123]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\010.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\010.part.met [128]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\010.part.met.bak [128]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\013.part.met [271]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\013.part.met.bak [271]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\014.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\014.part.met [135]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\014.part.met.bak [135]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\015.part.met [644]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\015.part.met.bak [644]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\016.part.met [638]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\016.part.met.bak [638]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\017.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\017.part.met [127]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\017.part.met.bak [127]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\019.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\019.part.met [138]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\019.part.met.bak [138]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\020.part [0]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\020.part.met [262]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\020.part.met.bak [262]
O61 - LFC: 20/12/2015 - 16:00:17 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\023.part.met [173]
O61 - LFC: 20/12/2015 - 16:00:18 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\023.part.met.bak [173]
O61 - LFC: 20/12/2015 - 16:00:18 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\025.part.met [152]
O61 - LFC: 20/12/2015 - 16:00:18 ---A- . (...) -- C:\Users\Angélique\Downloads\eMule\Temp\025.part.met.bak [152]
O61 - LFC: 20/12/2015 - 16:01:21 ---A- . (...) -- C:\Users\Angélique\Downloads\ZHPDiag3 (1).exe [2030592] =>.Nicolas Coolman
O61 - LFC: 20/12/2015 - 16:01:22 ---A- . (...) -- C:\Users\Angélique\Downloads\ZHPDiag3.exe [2030592] =>.Nicolas Coolman
~ Files: 152 Scanned in 03mn 15s



---\\ Fichiers Alternate Data Stream (ADS) (O62)
O62 - ADS:Alternate Data Stream File - C:\Windows\System32\Adobe\:Win32App_1
~ ADS: Scanned in 00mn 09s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
~ FASS Keys: 11 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {03692130-062A-4ED8-B2FD-555971000115} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Goo) - http://www.google.com
~ Keys: Scanned in 00mn 00s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [192000]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [192000]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [283136]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1338368]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [957952]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [958464]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [31232]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [94720]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151040]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1012224]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [225280]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134656]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [328192]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [372736]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [96256]
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\System32\dcpsvc.dll [186880]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2058240]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Microsoft.) -- C:\Windows\System32\ncasvc.dll [168960]
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [203776]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [59392]
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\System32\RDXService.dll [1073152]
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [106496]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à distance.) -- C:\Windows\System32\rasmans.dll [696320]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [507904]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [73216]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [457728]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [311808]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2280448]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [1144320]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [608768]
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [360448]
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1035776]
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [360960]
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1130496]
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [205824]
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [912384]
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [948224]

~ Services: 41 Scanned in 00mn 01s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.4A93070098539B54FDA391D4D551C880] [SPRF][22/07/2009] (...) -- C:\ProgramData\SetStretch.exe [24576]
[MD5.F35F9433773E70EFD43BCC25EADC9DB0] [SPRF][20/12/2015] (...) -- C:\Users\Angélique\AppData\Roaming\sp_data.sys [500]
~ Files: 2 Scanned in 00mn 00s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "vm-monitoring-dcom" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "vm-monitoring-rpc" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-In-UDP" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-UDP" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-TCP" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe
O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC-EPMapper" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe
O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "DeliveryOptimization-TCP-In" | In - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "DeliveryOptimization-UDP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "EventForwarder-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Event Forwarder.) -- C:\Windows\system32\NetEvtFwdr.exe
O87 - FAEL: "EventForwarder-RPCSS-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "ProximityUxHost-Sharing-In-TCP-NoScope" | In - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe
O87 - FAEL: "ProximityUxHost-Sharing-Out-TCP-NoScope" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe
O87 - FAEL: "AllJoyn-Router-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "AllJoyn-Router-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "AllJoyn-Router-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "AllJoyn-Router-Out-UDP" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-DAS-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-DAS-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Netlogon-TCP-RPC-In" | In - None - P6 - FALSE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\System32\lsass.exe
O87 - FAEL: "WirelessDisplay-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\WUDFHost.exe
O87 - FAEL: "WirelessDisplay-Out-TCP" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\WUDFHost.exe
O87 - FAEL: "WirelessDisplay-Out-UDP" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\WUDFHost.exe
O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-Server-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-Server-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-Server-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-Server-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-P2PHost-In-TCP" |In - None - P6 - TRUE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-In-UDP-NoScope" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-UDP-LocalSubnetScope" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-NoScope" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-LocalSubnetScope" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-NoScope" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-LocalSubnetScope" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Effectuer une conversion de type (transtypage) vers un serveur de périphé.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-SSDP-Discovery-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-In-TCP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-Out-TCP-PlayToScope" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WFDPRINT-DAFWSD-In-Active" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "WFDPRINT-DAFWSD-Out-Active" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "WFDPRINT-SPOOL-In-Active" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "WFDPRINT-SPOOL-Out-Active" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "WFDPRINT-SCAN-In-Active" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WFDPRINT-SCAN-Out-Active" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-WLANSvc-ASP-CP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-WLANSvc-ASP-CP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MDNS-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MDNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-Out-TCP" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-In-TCP" |In - None - P6 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-TERMSRV-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-Prov-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\mcx2prov.exe (.not file.)
O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-McrMgr-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\mcrmgr.exe (.not file.)
O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-LLMNR-Out-UDP_1" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-LLMNR-In-UDP_1" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnP-Out-TCP_1" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP_1" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP_1" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP_1" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-Out-TCP_1" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WMP-Out-TCP_1" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-UDP_1" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-In-UDP_1" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "{9354B0D9-A4AA-4A40-9936-BBA0930FAE1E}" | In - Private - P6 - TRUE | .(.Sony Corporation - Browser.) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe
O87 - FAEL: "{B915CFDA-1A7C-4B9B-94DF-966C15459F7C}" | In - Private - P17 - TRUE | .(.Sony Corporation - Browser.) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe
O87 - FAEL: "{12965BE2-9A0F-4DE3-B5D6-66193524DFC6}" | In - Private - P17 - TRUE | .(.Sony Corporation - VAIO Device Searcher.) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O87 - FAEL: "{19CA770B-0A5F-4590-89A3-14AF04A4686A}" | In - Private - P6 - TRUE | .(.Sony Corporation - Sony Digital Media Server.) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O87 - FAEL: "{086A0F43-5E9A-4A43-9B5E-3DF737B8728B}" | In - Private - P17 - TRUE | .(.Sony Corporation - Sony Digital Media Server.) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O87 - FAEL: "{7FDFCB74-9C94-4D02-A627-D1D3587E8338}" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
O87 - FAEL: "{33753FE2-AE03-4419-BAB5-C2EE5D7CC73F}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
O87 - FAEL: "{14D35862-794D-45E9-A1EE-E512883123A3}" | In - None - P17 - TRUE | .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "{2801240B-9D4A-4D0C-A4F3-3F573BEE57AE}" | In - None - P6 - TRUE | .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "{C1501A98-4995-40A7-9674-237FAB1D8595}" | In - None - P17 - TRUE | .(.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O87 - FAEL: "{2C36BB55-019D-49D3-9219-5C78734F5DBE}" | In - None - P6 - TRUE | .(.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O87 - FAEL: "{3A9B72AE-D3B4-4202-9ED5-7B563869C70E}" | In - None - P6 - TRUE | .(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{F04DB357-5361-4935-B597-08AAF78388CB}" | In - None - P6 - TRUE | .(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{F4BE26E0-4446-45ED-BC19-E771904BF295}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
O87 - FAEL: "{8CA47CBF-046B-4C62-B8A4-6D85C0C6B1F9}" | In - Public - P17 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\Program Files (x86)\Winamp\winamp.exe
O87 - FAEL: "{F65908F2-56B4-419F-8CF9-85B17869D66A}" | In - Private - P17 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\Program Files (x86)\Winamp\winamp.exe
O87 - FAEL: "{DE23107F-742A-4AF5-AE89-E26A4A8C09AA}" | In - Private - P6 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\Program Files (x86)\Winamp\winamp.exe
O87 - FAEL: "{7FFBA817-0E2F-492F-9C10-78061AEF7888}" | In - Domain - P17 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\Program Files (x86)\Winamp\winamp.exe
O87 - FAEL: "{6FBC28F6-E468-4612-B9AF-4F3D23FED45E}" | In - Domain - P6 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\Program Files (x86)\Winamp\winamp.exe
O87 - FAEL: "{BF7D537C-79B5-4B29-B0D7-C0130120F172}" | In - None - P6 - TRUE | .(.CyberLink Corp. - ASUSDVD.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.exe
O87 - FAEL: "{DB1EC0D2-5433-40D4-9751-074CB79FD633}" | In - None - P6 - TRUE | .(.CyberLink Corp. - CyberLink PowerDVD Cinema 10 Main Program.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
O87 - FAEL: "{7E78E94B-3D22-4E6B-A679-603A2CEA3199}" | In - None - P6 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
O87 - FAEL: "{F839EDDA-80A4-4690-9A1B-B7BCBEC42BF5}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
O87 - FAEL: "{42F71BFC-DE4A-47EE-84BC-DBC0D1FF56B4}" | In - Private - P6 - TRUE | .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O87 - FAEL: "{1DF46A56-80D3-40F4-B50E-ED493258CC78}" | In - Private - P17 - TRUE | .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O87 - FAEL: "TCP Query User{8116C728-3DE5-470B-9EE1-D5BF6AE55CF1}C:\program files (x86)\mozilla firefox\firefox.exe" | In - Public - P6 - TRUE | .(.Mozilla Corporation - Firefox.) -- C:\program files (x86)\mozilla firefox\firefox.exe
O87 - FAEL: "UDP Query User{B47309F8-F0FE-4B1D-9740-EBCD2E0AB101}C:\program files (x86)\mozilla firefox\firefox.exe" | In - Public - P17 - TRUE | .(.Mozilla Corporation - Firefox.) -- C:\program files (x86)\mozilla firefox\firefox.exe
O87 - FAEL: "TCP Query User{D6CF3A84-94A4-4AEB-80D5-5914D16913AA}C:\windows\system32\settingsynchost.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Host Process for Setting Synchronization.) -- C:\windows\system32\settingsynchost.exe
O87 - FAEL: "UDP Query User{D0533623-D18E-42DB-92B1-5B916108217F}C:\windows\system32\settingsynchost.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Host Process for Setting Synchronization.) -- C:\windows\system32\settingsynchost.exe
O87 - FAEL: "TCP Query User{2BD7A44E-8270-4793-A41F-FB96A3D24A1F}C:\program files (x86)\emule\emule.exe" | In - Public - P6 - TRUE | .(.http://www.emule-project.net - eMule.) -- C:\program files (x86)\emule\emule.exe
O87 - FAEL: "UDP Query User{B896062E-6E2C-48EF-9669-49A431F1874D}C:\program files (x86)\emule\emule.exe" | In - Public - P17 - TRUE | .(.http://www.emule-project.net - eMule.) -- C:\program files (x86)\emule\emule.exe
O87 - FAEL: "{9F5BE5CA-4545-4561-9D81-2522255FD200}" | In - None - P17 - TRUE | .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
~ Firewall: 261 Scanned in 00mn 03s



---\\ Enumère les codes produits des logiciels (PUC) (O90)
O90 - PUC: "01CFF726A0ECF794ABB202C8CA360801" . (.QuickTime 7.) -- C:\WINDOWS\Installer\{627FFC10-CE0A-497F-BA2B-208CAC638010}\Installer.ico
O90 - PUC: "05122918E7130BB43AD1FFC1417F705C" . (.Inkscape 0.91.) -- C:\WINDOWS\Installer\{81922150-317E-4BB0-A31D-FF1C14F707C5}\inkscape.ico
O90 - PUC: "14A4C66F8A3C3254BAC6AB1ABD8303C5" . (.Media Go.) -- C:\Windows\Installer\{F66C4A41-C3A8-4523-AB6C-BAA1DB38305C}\mediago.ico
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "1EEEA5C7C7D622985484B79F900677CE" . (.Media Go Video Playback Engine 2.4.103.12040.) -- C:\Windows\Installer\{7C5AEEE1-6D7C-8922-4548-7BF9096077EC}\MediaGo__0001.ico
O90 - PUC: "21F1DBD139DE0C947ACC65BCED841885" . (.ASUS LifeFrame3.) -- C:\Windows\Installer\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}\_853F67D554F05449430E7E.exe
O90 - PUC: "24727D9F1530C7441B060F5ACAD978FB" . (.Alcor Micro USB Card Reader.) -- C:\Windows\Installer\{F9D72742-0351-447C-B160-F0A5AC9D87BF}\ARPPRODUCTICON.exe
O90 - PUC: "385DE89DD83352442BFE4A7CBF39EC88" . (.NWZ-E380 WALKMAN Guide.) -- C:\WINDOWS\Installer\{D98ED583-338D-4425-B2EF-A4C7FB93CE88}\ARPPRODUCTICON.exe
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\WINDOWS\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc
O90 - PUC: "50FA96906FF400C4496034952983EDD0" . (.ASUS Splendid Video Enhancement Technology.) -- C:\Windows\Installer\{0969AF05-4FF6-4C00-9406-43599238DE0D}\_853F67D554F05449430E7E.exe
O90 - PUC: "5A440F64B8EC691489E4B56D25E563D1" . (.Apple Application Support.) -- C:\WINDOWS\Installer\{46F044A5-CE8B-4196-984E-5BD6525E361D}\WinInstall.ico
O90 - PUC: "5E3E958AF26CAFB4FAD1B2590E1366FA" . (.ASUS USB Charger Plus.) -- C:\Windows\Installer\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}\_853F67D554F05449430E7E.exe
O90 - PUC: "66D2718596F25124A9CEDE1869207363" . (.ASUS Tutor.) -- C:\windows\Installer\{58172D66-2F69-4215-9AEC-ED8196023736}\_853F67D554F05449430E7E.exe
O90 - PUC: "68AB67CA408033019195008142613101" . (.Adobe Refresh Manager.) -- C:\WINDOWS\Installer\{AC76BA86-0804-1033-1959-001824161310}\ARPPRODUCTICON.exe
O90 - PUC: "68AB67CA7DA7FFFFB744AA0000000010" . (.Adobe Reader X (10.1.16) MUI.) -- C:\windows\Installer\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}\SC_Reader.ico
O90 - PUC: "6A6823D4BA6FA894284A4E0F0425F9D3" . (.ASUS Smart Gesture.) -- C:\WINDOWS\Installer\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}\_853F67D554F05449430E7E.exe
O90 - PUC: "76E045AFC590B1A479ABD445D7CEA94F" . (.ASUS Live Update.) -- C:\Windows\Installer\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}\MyIcon
O90 - PUC: "7C43C21609E58D74B9C5F017D78D7262" . (.swMSM.) -- C:\WINDOWS\Installer\{612C34C7-5E90-47D8-9B5C-0F717DD82726}\ARPPRODUCTICON.exe
O90 - PUC: "9019F70F141D88E4FB5F20606D91495F" . (.SOHLib for PlayMemories Home.) -- C:\Windows\Installer\{F07F9109-D141-4E88-BFF5-0206D61994F5}\ARPPRODUCTICON.exe
O90 - PUC: "A58BCE98339DAEC41961C5CBC9E29DB5" . (.ASUS Instant Connect.) -- C:\windows\Installer\{89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}\_853F67D554F05449430E7E.exe
O90 - PUC: "A59E554B408BF9345B3333B66153EA79" . (.NVIDIA PhysX.) -- C:\WINDOWS\Installer\{B455E95A-B804-439F-B533-336B1635AE97}\icon.ico
O90 - PUC: "B476F94747628E7478C965620AB6A219" . (.ASUS InstantOn.) -- C:\Windows\Installer\{749F674B-2674-47E8-879C-5626A06B2A91}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "D2A425F405350054677A7A857BC05200" . (.Search App by Ask.) -- C:\WINDOWS\Installer\{4F524A2D-5350-4500-76A7-A758B70C2500}\ToolbarIcon.exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\WINDOWS\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "DE532CED4A8571542A874CE1D8EABAB3" . (.PowerDVD.) -- C:\Windows\Installer\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\ARPPRODUCTICON.exe
O90 - PUC: "E19212F84440D1B49B9F34077AE343D6" . (.WinFlash.) -- C:\Windows\Installer\{8F21291E-0444-4B1D-B9F9-4370A73E346D}\MyIcon
O90 - PUC: "E339C5BAD7C503D43B41C9384AB949EB" . (.ATK Package.) -- C:\Windows\Installer\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}\_294823.exe
O90 - PUC: "F50F2655C80951F4B9C3895DDF23CDBA" . (.Media Go Network Downloader.) -- C:\Windows\Installer\{5562F05F-908C-4F15-9B3C-98D5FD32DCAB}\Media_Go_icon
O90 - PUC: "FB9326B958E40954D827153ED01B9AAA" . (.ASUS Power4Gear Hybrid.) -- C:\Windows\Installer\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}\_853F67D554F05449430E7E.exe
~ Update Products: 95 Scanned in 00mn 00s



---\\ Enumère les données de la clé NameSpace (MNS) (O92)
O92 - MNS: - {088e3905-0323-4b02-9826-5d99428e115f}
O92 - MNS: - {1CF1260C-4DD0-4ebb-811F-33C572699FDE}
O92 - MNS: - {24ad3ad4-a569-4530-98e1-ab02f9417aa8}
O92 - MNS: - {374DE290-123F-4565-9164-39C4925E467B}
O92 - MNS: - {3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}
O92 - MNS: - {3dfdf296-dbec-4fb4-81d1-6a3438bcf4de}
O92 - MNS: - {A0953C92-50DC-43bf-BE83-3742FED03C9C}
O92 - MNS: - {A8CDFF1C-4878-43be-B5FD-F8091C1C60D0}
O92 - MNS: - {B4BFCC3A-DB2C-424C-B029-7FE99A87C641}
O92 - MNS: - {d3162b92-9365-467a-956b-92703aca08af}
O92 - MNS: - {f86fa3ab-70d2-4fc7-9c99-fcbf05467f3a}
~ MNS: 11 Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.A3B406F92A38C5A3AEC0E1A5140FA175] [WIS][07/04/2015] (.inkscape.org - Inkscape Installer.) -- C:\Windows\Installer\163908.msi [97868152]
[MD5.18C5960A73B702B37F7298CFFC94BD85] [WIS][14/04/2014] (.Alcor Micro Corp. - AmIcoSinglun.) -- C:\Windows\Installer\1f85d.msi [1562112]
[MD5.9F090734399A6778CE3DAB9A5B50D417] [WIS][14/04/2014] (.VIA Technologies, Inc. - VIA Universal Setup Program.) -- C:\Windows\Installer\1f865.msi [2744832]
[MD5.452351AB7744C3B10F4EF4F34821C807] [WIS][13/11/2015] (.APN, LLC - Search App by Ask.) -- C:\Windows\Installer\25ecc21.msi [532480]
[MD5.5A381D88FEF1C4D00F056C514A74ED0E] [WIS][14/04/2014] (.Google - Google+ Auto Backup.) -- C:\Windows\Installer\435830.msi [3088384]
[MD5.DAED4A33BDCA23D15EB9BAAD2CDFD12C] [WIS][15/08/2014] (.Badoo - Badoo Desktop Installer.) -- C:\Windows\Installer\f5e22a0.msi [2296832]
~ WIS: 99 Scanned in 00mn 17s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 19/02/2014 72704 | (Adobe LM Service) . (.Adobe Systems.) - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
SS - | Demand 09/12/2015 269504 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 01/06/2015 290224 | (cphs) . (.Intel Corporation.) - C:\Windows\SysWow64\IntelCpHeciSvc.exe
SS - | Demand 25/08/2014 203344 | (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
SS - | Auto 27/08/2015 144200 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 27/08/2015 144200 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 09/05/2011 136120 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 03/07/2015 148136 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 03/12/2013 79000 | (SOHDs) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
SS - | Demand 04/02/2013 155824 | (Sony PC Companion) . (.Avanquest Software.) - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
SS - | Demand 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SS - | Demand 30/10/2015 43944 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

SR - | Auto 28/10/2015 82128 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 15/01/2013 107320 | (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
SR - | Auto 13/04/2012 277120 | (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
SR - | Auto 21/11/2011 96896 | (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
SR - | Auto 19/10/2014 254016 | (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
SR - | Auto 20/04/2012 635104 | (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
SR - | Auto 27/06/2012 129856 | (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
SR - | Auto 25/06/2012 166720 | (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
SR - | Auto 17/07/2012 277824 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - | Auto 05/02/2014 1593632 | (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
SR - | Auto 05/02/2014 16941856 | (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
SR - | Auto 13/07/2015 937616 | (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe
SR - | Auto 23/04/2014 481816 | (PMBDeviceInfoProvider) . (.Sony Corporation.) - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
SR - | Auto 16/01/2014 495248 | (SOHDms) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
SR - | Demand 01/12/2011 289952 | (SpfService) . (.Sony Corporation.) - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
SR - | Auto 17/07/2012 365376 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Auto 22/06/2015 36504 | (VIAKaraokeService) . (.VIA Technologies, Inc..) - C:\Windows\System32\viakaraokesrv.exe
SR - | Demand 10/07/1658 0 | (WdNisSvc) . (...) - C:\Program Files (x86)\Windows Defender\NisSrv.exe
SR - | Auto 10/07/1658 0 | (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe

~ Services: Scanned in 00mn 26s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Run by Angélique at 20/12/2015 16:05:50
~ OS 64 not supported by MBR tool

~ MBR: 0 Scanned in 00mn 00s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Angélique at 20/12/2015 16:05:52

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin

~ MBR: Scanned in 00mn 02s



---\\ Scan Additionnel (O88)
Database Version : 13044 - (14/04/2014)
Clés trouvées (Keys found) : 1
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 1
Fichiers trouvés (Files found) : 0

[HKLM\Software\Classes\S] =>Toolbar.Agent
C:\ProgramData\SoftwareDistribution =>Adware.Boxore^
~ Additionnel Scan: 327078 Items scanned in 01mn 14s



---\\ Récapitulatif des détections trouvées sur votre station
http://nicolascoolman.webs.com/apps/blog/show/40584589-pup-sweetpage =>PUP.SweetPage
http://nicolascoolman.webs.com/apps/blog/show/26626977-adware-boxore =>Adware.Boxore
~ MSI: 2 link(s) detected in 00mn 00s



End of the scan (2158 lines in 14mn 07s)(0)

Publicité


Signaler le contenu de ce document

Publicité