~ Rapport de ZHPDiag v2013.8.31.39 - Nicolas Coolman (31/08/2013) ~ Lancé par Angélique (31/08/2013 14:24:01) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Traduit par Nicolas Coolman ~ Etat de la version : Version à jour. ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Deactivate by program ---\\ Navigateurs Internet MSIE: Internet Explorer v10.0.9200.16660 (Defaut) ---\\ Informations sur les produits Windows ~ Langage: Français Windows 8 Home Premium Edition, 64-bit (Build 9200) Windows Server License Manager Script : OK ~ ion : Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : MY2MG Windows License : OK ~ Windows Remaining Initializations Number : 998 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection du système AVG 2013 v13.0.3222 Malwarebytes Anti-Malware version 1.75.0.1300 Norton Internet Security v20.4.0.40 Windows Defender W8 ---\\ Logiciels d'optimisation du système CCleaner v4.04 =>Piriform Ltd ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 11 Plugin Adobe Reader XI ---\\ Informations sur le système ~ Processor: AMD64 Family 21 Model 16 Stepping 1, AuthenticAMD ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 3479 MB (58% free) System Restore: Activé (Enable) System drive C: has 606 GB (66%) free of 913 GB ---\\ Mode de connexion au système ~ Computer Name: PC-HP-ANGELIQUE ~ User Name: Angélique ~ All Users Names: Angélique, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppData% : C:\Users\Angélique\AppData\Roaming\ ~ %Desktop% : C:\Users\Angélique\Desktop\ ~ %Favorites% : C:\Users\Angélique\Favorites\ ~ %LocalAppData% : C:\Users\Angélique\AppData\Local\ ~ %StartMenu% : C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C:\ Hard drive, Flash drive, Thumb drive (Free 606 Go of 913 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 17 Go) E:\ CD-ROM drive (Not Inserted) F:\ Floppy drive, Flash card reader, USB Key (Not Inserted) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 37 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.0E8E6463F81C80AFBED533E0F1F8895D] - (.Microsoft Corporation - Explorateur Windows.) (.01/06/2013 - 12:34:21.) -- C:\Windows\Explorer.exe [2391280] [MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608] [MD5.AC155DD9BD1E6D3B740826A4D1C68AAE] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/07/2013 - 06:13:37.) -- C:\Windows\System32\wininet.dll [2241024] [MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120] [MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408] [MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640] [MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840] [MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544] [MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080] [MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784] [MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.12/10/2012 - 02:42:21.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168] [MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640] [MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920] [MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688] [MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776] [MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544] [MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984] [MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928] [MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712] [MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248] [MD5.78A5BBA3819FFFC62FFEC3E2220D102D] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.01/06/2013 - 12:26:33.) -- C:\Windows\system32\Drivers\volsnap.sys [327936] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes musiques (My Musics) : 3/9 ~ Mes Favoris (My Favorites) : 1/109 ~ Mes Documents (My Documents) : 1/2172 ~ Mon Bureau (My Desktop) : 2/55972 ~ Menu demarrer (Programs) : 1/33 ~ Hidden Files: Scanned in 00mn 05s ---\\ Processus lancés au démarrage du système [MD5.BB4CEE22CFE1C259F5C4279349EB879C] - (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe [149824] [PID.1800] [MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.4184] [MD5.001D39ABE6B59F021B684CEA1A8266A4] - (...) -- C:\Program Files (x86)\4Free Video Converter\update.exe [36864] [PID.4280] [MD5.6528D7D23AB7EE8374791E9666976429] - (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe [884248] [PID.4344] [MD5.63A2D767B9261B4F33F97BF88F2FB197] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [276328] [PID.4448] [MD5.D658AB1B55127D18DCFBCAC8CAAEA522] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.4724] [MD5.288D8A54FE326AE26AD43F348E646147] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411440] [PID.4736] [MD5.724CB7A116F7E1A67009D751BCF86586] - (.CyberLink - CyberLink MediaLibray Service.) -- c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120] [PID.4876] [MD5.9EDFB86FAA07BFED3C3D00211FAB6D82] - (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\dist\ST2.exe [13446464] [PID.5052] [MD5.2FB757B35C94B1C1C65BA35E4E7EC0F2] - (.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe [174952] [PID.5092] [MD5.F01A418BDDFC14D60E463C50CABC7750] - (.Hewlett-Packard Co. - HP CUE Alert Popup Window Objects.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe [565096] [PID.1972] [MD5.B2F0B501A7C017F21C4B4417623895BD] - (.Hewlett-Packard - GPCore COM object.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe [367976] [PID.4288] [MD5.1BF9D6476061B31CD7FC2BF848529A56] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368] [PID.2844] [MD5.E62B9C9E92ABE783DC442FA1CE3517DD] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7854080] [PID.6620] ~ Processes Running: Scanned in 00mn 00s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Preferences G2 - GCE: Preference [User Data\Default] [kidmhllhjmmmnpbiaihafgchacpmokof] L\x79\x72m\x69x v.1.131 (Activé) ~ Google Browser: 1 Scanned in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20513.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ~ Firefox Browser: 2 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16384 (win8_rtm.120725-1247)) -- C:\Windows\SysWOW64\ieframe.dll ~ IE Browser: 12 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Norton Identity Protection [64Bits] - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection [64Bits] - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (.Symantec Corporation - IPS Browser Helper DLL.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.dll O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll ~ BHO: 5 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Google Toolbar [64Bits] - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{D3028143-6145-4318-99D3-3EDCE54A95A9} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [BeatsOSDApp] . (.Hewlett-Packard - HP Beats.) -- C:\Program Files\IDT\WDM\beats64.exe O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe O4 - HKCU\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd or its subsidiaries - Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [qupdate] . (...) -- C:\Program Files (x86)\4Free Video Converter\update.exe O4 - HKCU\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Wow6432Node\Run: [AVG_UI] . (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\AVG2013\avgui.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd or its subsidiaries - Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [qupdate] . (...) -- C:\Program Files (x86)\4Free Video Converter\update.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe ~ Application: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop: Assistance Livebox.lnk . (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe O4 - GS\Desktop: Documents - Raccourci.lnk . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms O4 - GS\Desktop: DVD Shrink 3.2 - Raccourci.lnk . (.DVD Shrink - DVD Shrink 3.2.) -- C:\Program Files (x86)\DVD Shrink\DVD Shrink 3.2.exe O4 - GS\Desktop: ezcddax - Raccourci.lnk . (.Jukka Poikolainen - Easy CD-DA Extractor.) -- C:\Program Files (x86)\Easy CD-DA Extractor 10\ezcddax.exe O4 - GS\Desktop: iexplore - Raccourci.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Desktop: Images - Raccourci.lnk . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Libraries\Pictures.library-ms O4 - GS\Desktop: Microsoft Office Excel 2007.lnk . (...) -- C:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\xlicons.exe O4 - GS\Desktop: Microsoft Office Word 2007.lnk . (...) -- C:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\wordicon.exe O4 - GS\Desktop: Musique - Raccourci.lnk . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Libraries\Music.library-ms O4 - GS\Desktop: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe O4 - GS\Desktop: Téléchargements.lnk . (...) -- C:\Users\Angélique\Downloads O4 - GS\Desktop: Vidéos - Raccourci.lnk . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Libraries\Videos.library-ms O4 - GS\Desktop: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O4 - GS\Desktop: Windows Update - Raccourci.lnk - Clé orpheline ~ Global Startup: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\windows\system32\napinsp.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\windows\system32\NLAapi.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\windows\system32\mswsock.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\windows\system32\winrnr.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll ~ Winsock: 7 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{870C322F-686D-485B-B7FD-A97C039F54FF}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{993CF809-537F-4F29-8B14-6A4AFC9D0528}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{D4BBF431-BD44-4D52-871B-8580313EB529}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{870C322F-686D-485B-B7FD-A97C039F54FF}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{993CF809-537F-4F29-8B14-6A4AFC9D0528}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{D4BBF431-BD44-4D52-871B-8580313EB529}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Titr_HJT34=Protocole additionnel (O18) O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) - C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) - C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe O23 - Service: Bonjour Service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Dedicarz Service (Dedicarz Service) . (.Pas de propriétaire - DedicarzService.) - C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\DedicarzService.exe O23 - Service: Garmin Core Update Service (Garmin Core Update Service) . (.Garmin Ltd or its subsidiaries - Garmin Core Update Service.) - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Connected Remote Service (HPConnectedRemote) . (.Hewlett-Packard - HPConnectedRemoteService.) - c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe O23 - Service: Orange update Core Service (Orange update Core Service) . (.France Telecom SA - Orange Upd@te.) - C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O23 - Service: C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\STacSV64.exe ~ Services: 13 Scanned in 00mn 05s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1102] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1106] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForAngélique.job [380] [MD5.00000000000000000000000000000000] [APT] [4800] (...) -- C:\Users\Angélique\AppData\Local\Temp\launchie.vbs \\B (.not file.) [0] [MD5.BB4CEE22CFE1C259F5C4279349EB879C] [APT] [AssistanceLivebox] (.Orange.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe [149824] [MD5.E62ED5A7A2F21C5F377F924A33E12792] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3643160] =>Piriform Ltd [MD5.724CB7A116F7E1A67009D751BCF86586] [APT] [CLMLSvc_P2G8] (.CyberLink.) -- c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120] [MD5.CF7927AE082B578E38B82AE6D95B5F90] [APT] [CLVDLauncher] (.CyberLink Corp..) -- c:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [338544] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForAng‚lique] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [91704] [MD5.C66557728011B83C4FFAE7DD022F99DA] [APT] [Norton WSC Integration] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\WSCStub.exe [163944] [MD5.00000000000000000000000000000000] [APT] [{03B223CC-6C75-415A-A228-FD3CC84E00C8}] (...) -- C:\Program Files (x86)\DIFX\84B2E36983483FEB\DPInst.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{6177BAFB-3114-41D8-98DD-A335A84122CA}] (...) -- C:\Games\Iggle Pop!\ZY-IgglePop.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C142BBAB-9CFC-454C-8166-81BE38EE00FC}] (...) -- C:\Users\Angélique\AppData\Roaming\0C1I1L1R1J0M1P0I1G\VuuPC Packages\uninstaller.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C19E9783-013C-4849-AF35-817F8A488A28}] (...) -- C:\Users\Angélique\Desktop\Easy CD-DA Extractor 10\ezcddax.exe (.not file.) [0] [MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [525728] [MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [525728] [MD5.DDFD05786536EF7AA540CC490A9DE3CE] [APT] [Update Check] (.Hewlett-Packard Company.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [592288] [MD5.A6578474FB7265891B76A4A3B0BCC4E9] [APT] [WarrantyChecker] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1553112] [MD5.A6578474FB7265891B76A4A3B0BCC4E9] [APT] [WarrantyChecker_DeviceScan] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1553112] [MD5.7720251986778B402978761589434491] [APT] [Norton Error Analyzer] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [54096] [MD5.7720251986778B402978761589434491] [APT] [Norton Error Processor] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [54096] ~ Scheduled Task: 24 Scanned in 00mn 02s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll ~ Active Setup: 9 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (AVGIDSDriver) . (.AVG Technologies CZ, s.r.o. - IDS Application Activity Monitor Driver..) - C:\Windows\System32\DRIVERS\avgidsdrivera.sys O41 - Driver: (Avgldx64) . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) - C:\Windows\System32\DRIVERS\avgldx64.sys O41 - Driver: (Avgwfpa) . (.AVG Technologies CZ, s.r.o. - AVG Firewall driver.) - C:\Windows\system32\DRIVERS\avgwfpa.sys O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys O41 - Driver: (BHDrvx64) . (.Symantec Corporation - BASH Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\BASHDefs\20130715.001\BHDrvx64.sys O41 - Driver: (ccSet_NIS) . (.Symantec Corporation - Common Client Settings Driver.) - C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: (CLVirtualDrive) . (.CyberLink - It is a virtual device driver which could c.) - C:\Windows\system32\DRIVERS\CLVirtualDrive.sys O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (eeCtrl) . (.Symantec Corporation - Symantec Eraser Control Driver.) - C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys O41 - Driver: (IDSVia64) . (.Symantec Corporation - IDS Core Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\IPSDefs\20130830.001\IDSvia64.sys O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: (SRTSP) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\Drivers\NISx64\1404000.028\SRTSP64.sys O41 - Driver: (SRTSPX) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.sys O41 - Driver: (SymIRON) . (.Symantec Corporation - Iron Driver.) - C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.sys O41 - Driver: (SymNetS) . (.Symantec Corporation - Network Security Driver.) - C:\Windows\system32\Drivers\NISx64\1404000.028\SYMNETS.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys ~ Drivers: 56 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: 4Free Video Converter 3 - (.4Free Studio.) [HKLM][64Bits] -- {7061301A-0D44-432F-859D-AF705DA2C81F}_is1 O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854} O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {081E1427-66E4-4CEE-ED01-736966CBD54D} O42 - Logiciel: AVG 2013 - (.AVG Technologies.) [HKLM][64Bits] -- AVG O42 - Logiciel: AVG 2013 - (.AVG Technologies.) [HKLM][64Bits] -- {4FF9E8AA-D554-4CE7-89F9-B69DAA5A1E98} O42 - Logiciel: AVG 2013 - (.AVG Technologies.) [HKLM][64Bits] -- {6B02D047-A56D-4994-B1F1-53DA6B9885AB} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0A5B39D2-7ED6-4779-BCC9-37F381139DB3} O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader XI (11.0.03) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-572ff7f2-4c68-46f7-a10e-fcff19c6baa3 O42 - Logiciel: Assistance Livebox - (.Orange.) [HKLM][64Bits] -- Assistance Livebox O42 - Logiciel: BankPerfect 7.50 - (.Fabio Chelly.) [HKLM][64Bits] -- BankPerfect O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-175a1c47-c644-458b-840d-ae49669c115a O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: Build-a-lot 4 - Power Source - (.WildTangent.) [HKLM][64Bits] -- WTA-7c71af0c-ff09-45b7-8bc9-f49e1d6e3b19 O42 - Logiciel: CCScore - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {B4B44FE7-41FF-4DAD-8C0A-E406DDA72992} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>Piriform Ltd O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7474548C-E456-4818-8ED0-4A1F00EF77A1} O42 - Logiciel: Connected Music powered by Universal Music Group version 1.0 - (.Snowite.) [HKLM][64Bits] -- {46037DC7-F927-46DF-935F-D6F122BDD34B}_is1 O42 - Logiciel: Cradle of Rome 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-cf862b50-bb57-40e4-aa62-ad0d243cd5b3 O42 - Logiciel: Crazy Chicken Soccer - (.WildTangent.) [HKLM][64Bits] -- WTA-b20352c3-93ef-4897-ad55-6a5a8796e322 O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A} O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {4862344A-A39C-4897-ACD4-A1BED5163C5A} O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Dragon Ball Arcade - (...) [HKLM][64Bits] -- Dragon Ball Arcade O42 - Logiciel: ESSBrwr - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {643EAE81-920C-4931-9F0B-4B343B225CA6} O42 - Logiciel: ESSCDBK - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD} O42 - Logiciel: ESSPCD - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {14D4ED84-6A9A-45A0-96F6-1753768C3CB5} O42 - Logiciel: ESSPDock - (.Nom de votre société.) [HKLM][64Bits] -- {FCDB1C92-03C6-4C76-8625-371224256091} O42 - Logiciel: ESSTOOLS - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {8A502E38-29C9-49FA-BCFA-D727CA062589} O42 - Logiciel: ESScore - (.Nom de votre société.) [HKLM][64Bits] -- {42938595-0D83-404D-9F73-F8177FDD531A} O42 - Logiciel: ESSgui - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {91517631-A9F3-4B7C-B482-43E0068FD55A} O42 - Logiciel: ESSini - (.Nom de votre société.) [HKLM][64Bits] -- {8E92D746-CD9F-4B90-9668-42B74C14F765} O42 - Logiciel: Elevated Installer - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {D785E51B-6BE3-4747-A77E-EF28081FFEAD} O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WTA-343cf0ce-c563-4d18-913b-d64cb8ccacad O42 - Logiciel: Final Drive Fury - (.WildTangent.) [HKLM][64Bits] -- WTA-6528762b-10ca-4107-84a7-a3ba607ab0c4 O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090} O42 - Logiciel: Gardenscapes: Mansion Makeover - (.WildTangent.) [HKLM][64Bits] -- WTA-ce39a07a-0def-4996-8109-9a014d011b66 O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {01748EE1-FD8D-4708-B0D2-65709A2DE0BD} O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {bd9bc494-8cd2-4ae2-92fe-6a3dda9c3ee9} O42 - Logiciel: Garmin Express Tray - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {0B17B1DA-76AB-4D07-B8E8-FD6061E6BCA5} O42 - Logiciel: Garmin Update Service - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {6B6B527F-72AC-426D-821F-39E261CC6297} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} =>Toolbar.Google O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-3a064d19-be21-47b7-b59d-67954b680a86 O42 - Logiciel: HP Connected Music (Meridian - installer) - (.Meridian Audio Ltd.) [HKLM][64Bits] -- StartHPConnectedMusic O42 - Logiciel: HP Connected Remote - (.Hewlett-Packard.) [HKLM][64Bits] -- {F243A34B-AB7F-4065-B770-B85B767C247C} O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} O42 - Logiciel: HP Customer Participation Program 14.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall O42 - Logiciel: HP Imaging Device Functions 14.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions O42 - Logiciel: HP Photosmart C5300 All-In-One Driver Software 14.0 Rel. 6 - (.HP.) [HKLM][64Bits] -- {12440487-BEA5-48CF-A36C-C86F5D350999} O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD} O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {C2E428EB-116E-41C0-9E84-B22DE9CCA42F} O42 - Logiciel: HP Solution Center 14.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE} O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE} O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM][64Bits] -- ImgBurn O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-57e2679c-3836-4680-beb7-c9a2504283cd O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WTA-ac5d8928-63d0-405c-90ae-3fe5ad79c034 O42 - Logiciel: Logiciel Kodak EasyShare - (.Eastman Kodak Company.) [HKLM][64Bits] -- {D32470A1-B10C-4059-BA53-CF0486F68EBC} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} O42 - Logiciel: Mahjongg Artifacts - (.WildTangent.) [HKLM][64Bits] -- WTA-f69c8153-5057-42f2-8d6e-a84135bad88a O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Mystery of Mortlake Mansion - (.WildTangent.) [HKLM][64Bits] -- WTA-743461a0-1e43-4477-9425-e0e229102ef4 O42 - Logiciel: Nero 7 Premium - (.Nero AG.) [HKLM][64Bits] -- {43FFE159-3199-4188-A1CD-629166AD1036} O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM][64Bits] -- NIS O42 - Logiciel: Notification Mail - (.Orange.) [HKLM][64Bits] -- MailNotifier O42 - Logiciel: OfotoXMI - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {B162D0A6-9A1D-4B7C-91A5-88FB48113C45} O42 - Logiciel: Orange update - (.Orange.) [HKLM][64Bits] -- OrangeUpdateManager O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-0aa8df5d-b57f-4830-ae5e-fb63d1d2bef6 O42 - Logiciel: Ranch Rush 2 - Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-c2dc9053-3fb8-456c-aafd-4f7a36da5ba8 O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} O42 - Logiciel: Royal Envoy 2 Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-67b92396-022f-43b7-9a84-0b0636dd7d98 O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} O42 - Logiciel: SFR - (.Eastman Kodak Company.) [HKLM][64Bits] -- {DB02F716-6275-42E9-B8D2-83BA2BF5100B} O42 - Logiciel: SHASTA - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {605A4E39-613C-4A12-B56F-DEFBE6757237} O42 - Logiciel: SKINXSDK - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Ski Challenge 13 (AT) - (...) [HKCU][64Bits] -- sc13-AT_MAIN O42 - Logiciel: TmNationsForever - (.Nadeo.) [HKLM][64Bits] -- TmNationsForever_is1 O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-253138d8-4694-4a9f-a945-eefab5f8c0b9 O42 - Logiciel: VPRINTOL - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {999D43F4-9709-4887-9B1A-83EBB15A8370} O42 - Logiciel: Visual Studio 2010 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {21B133D6-5979-47F0-BE1C-F6A6B304693F} O42 - Logiciel: WIRELESS - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {F9593CFB-D836-49BC-BFF1-0E669A411D9F} O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WTA-dac326c9-a4cb-4adc-9c5d-db6e8d5d4683 O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst O42 - Logiciel: WinRAR 4.20 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Youda Jewel Shop - (.WildTangent.) [HKLM][64Bits] -- WTA-08e75b4b-713b-4255-8593-09b98ca96941 O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-a24172ee-bc94-446a-b1ed-2bf823ca8ce9 O42 - Logiciel: essvatgt - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F} O42 - Logiciel: fflink - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {608D2A3C-6889-4C11-9B54-A42F45ACBFDB} O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} O42 - Logiciel: netbrdg - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {4537EA4B-F603-4181-89FB-2953FC695AB1} O42 - Logiciel: skin0001 - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {5316DFC9-CE99-4458-9AB3-E8726EDE0210} O42 - Logiciel: staticcr - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {8943CE61-53BD-475E-90E1-A580869E98A2} ~ Logic: 201 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\4Free] [HKCU\Software\7-Zip] [HKCU\Software\ATI] [HKCU\Software\Adkins Resource] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\MarkAny] [HKCU\Software\AppDataLow\Software\Orange] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\ArcSoft] [HKCU\Software\Aurigma] [HKCU\Software\Avg] [HKCU\Software\BankPerfect] [HKCU\Software\Classes] [HKCU\Software\CyberLink] [HKCU\Software\DVD Shrink] [HKCU\Software\Distromatic] [HKCU\Software\FreewareFiles] [HKCU\Software\Gabest] [HKCU\Software\GameHouse] [HKCU\Software\Garmin] [HKCU\Software\Google] [HKCU\Software\Greentube] [HKCU\Software\HP] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IGA] [HKCU\Software\ImgBurn] [HKCU\Software\IvoSoft] [HKCU\Software\JavaSoft] [HKCU\Software\Kodak] [HKCU\Software\Lake] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Macromedia] [HKCU\Software\Macrovision] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MultiStageTrayAgent] [HKCU\Software\Nero] [HKCU\Software\Netscape] [HKCU\Software\Norton] [HKCU\Software\ODBC] [HKCU\Software\Opendisc] [HKCU\Software\Piriform] [HKCU\Software\Poikosoft] [HKCU\Software\Policies] [HKCU\Software\RegisteredApplications] [HKCU\Software\Samsung] [HKCU\Software\Software] [HKCU\Software\Symantec] [HKCU\Software\SystemTools] [HKCU\Software\TeleCharger_v2] [HKCU\Software\Trolltech] [HKCU\Software\VSO] [HKCU\Software\WildTangent] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Wow6432Node] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\ahead] [HKCU\Software\kde.org] [HKCU\Software\mozilla] [HKCU\Software\yahooinstall] =>Toolbar.Yahoo [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\Apple Inc.] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\EnigmaSoftwareGroup] [HKLM\Software\Hewlett-Packard] [HKLM\Software\IDT] [HKLM\Software\Intel] [HKLM\Software\Khronos] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Norton] [HKLM\Software\ODBC] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\RegisteredApplications] [HKLM\Software\SAMSUNG] [HKLM\Software\SoundResearch] [HKLM\Software\Symantec] [HKLM\Software\WinRAR] [HKLM\Software\Wow6432Node\ATI Technologies] [HKLM\Software\Wow6432Node\ATI] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\Ahead] [HKLM\Software\Wow6432Node\AppDataLow] [HKLM\Software\Wow6432Node\Apple Inc.] [HKLM\Software\Wow6432Node\Audible] [HKLM\Software\Wow6432Node\Avg] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\CyberLink] [HKLM\Software\Wow6432Node\Exent] [HKLM\Software\Wow6432Node\Garmin] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\IDT] [HKLM\Software\Wow6432Node\InstallShield] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\Khronos] [HKLM\Software\Wow6432Node\Kodak] [HKLM\Software\Wow6432Node\Lake] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\Nero] [HKLM\Software\Wow6432Node\Norton] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Orange] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Sagem] [HKLM\Software\Wow6432Node\SoftVTU] [HKLM\Software\Wow6432Node\Software] [HKLM\Software\Wow6432Node\Symantec] [HKLM\Software\Wow6432Node\Trad-FR] [HKLM\Software\Wow6432Node\VSO] [HKLM\Software\Wow6432Node\Vittalia] [HKLM\Software\Wow6432Node\WildTangent] [HKLM\Software\Wow6432Node\WinPcap] [HKLM\Software\Wow6432Node\Wow6432Node] [HKLM\Software\Wow6432Node] ~ Key Software: 215 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 28/08/2013 - 21:05:21 - [113,247] ----D C:\Program Files (x86)\4Free Video Converter O43 - CFD: 01/08/2013 - 07:22:32 - [120,568] ----D C:\Program Files (x86)\Adobe O43 - CFD: 24/05/2013 - 00:38:52 - [2,145] ----D C:\Program Files (x86)\AMD APP O43 - CFD: 24/05/2013 - 00:38:48 - [58,908] ----D C:\Program Files (x86)\ATI Technologies O43 - CFD: 31/08/2013 - 10:25:36 - [117,960] ----D C:\Program Files (x86)\AVG O43 - CFD: 04/08/2013 - 09:24:41 - [0,602] ----D C:\Program Files (x86)\Bonjour O43 - CFD: 29/08/2013 - 17:38:26 - [494,587] ----D C:\Program Files (x86)\Common Files O43 - CFD: 24/05/2013 - 00:45:58 - [2,557] ----D C:\Program Files (x86)\Connected Music powered by Universal Music Group O43 - CFD: 24/05/2013 - 00:54:04 - [-1582,072] ----D C:\Program Files (x86)\CyberLink O43 - CFD: 25/08/2013 - 15:07:21 - [0,934] ----D C:\Program Files (x86)\DVD Shrink O43 - CFD: 26/08/2013 - 20:00:09 - [12,750] ----D C:\Program Files (x86)\Easy CD-DA Extractor 10 O43 - CFD: 03/08/2013 - 19:18:24 - [15,020] ----D C:\Program Files (x86)\Garmin O43 - CFD: 30/07/2013 - 21:54:58 - [25,253] ----D C:\Program Files (x86)\Google O43 - CFD: 30/07/2013 - 20:37:37 - [206,080] ----D C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 05/08/2013 - 17:58:23 - [120,970] ----D C:\Program Files (x86)\HP O43 - CFD: 24/05/2013 - 00:56:53 - [1818,294] ----D C:\Program Files (x86)\HP Games O43 - CFD: 24/05/2013 - 00:44:29 - [0,720] ----D C:\Program Files (x86)\HPConnectedMusic O43 - CFD: 11/08/2013 - 16:27:18 - [3,211] ----D C:\Program Files (x86)\ImgBurn O43 - CFD: 04/08/2013 - 20:45:23 - [166,244] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 16/08/2013 - 20:57:16 - [4,623] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 04/08/2013 - 09:32:33 - [1255,994] ----D C:\Program Files (x86)\Kodak O43 - CFD: 30/08/2013 - 21:51:25 - [13,336] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 07/08/2013 - 20:28:04 - [365,704] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 07/08/2013 - 20:33:07 - [40,851] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 24/05/2013 - 00:58:08 - [5,306] ----D C:\Program Files (x86)\Microsoft SkyDrive O43 - CFD: 24/05/2013 - 00:58:39 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 04/08/2013 - 22:41:06 - [3,554] ----D C:\Program Files (x86)\Microsoft Works O43 - CFD: 31/07/2013 - 20:11:40 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 30/08/2013 - 20:08:27 - [0] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 10/08/2012 - 17:09:11 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 29/08/2013 - 18:08:51 - [375,613] ----D C:\Program Files (x86)\Nero O43 - CFD: 24/05/2013 - 00:59:37 - [368,968] ----D C:\Program Files (x86)\Norton Internet Security O43 - CFD: 24/05/2013 - 00:59:17 - [20,860] ----D C:\Program Files (x86)\NortonInstaller O43 - CFD: 30/07/2013 - 12:54:37 - [1,563] R---D C:\Program Files (x86)\Online Services O43 - CFD: 30/08/2013 - 19:59:53 - [167,684] ----D C:\Program Files (x86)\Orange O43 - CFD: 10/08/2012 - 17:09:11 - [36,536] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 04/08/2013 - 20:45:24 - [258,091] ----D C:\Program Files (x86)\Samsung O43 - CFD: 24/05/2013 - 01:00:14 - [2,444] ----D C:\Program Files (x86)\SymSilent O43 - CFD: 24/05/2013 - 00:56:49 - [66,181] ----D C:\Program Files (x86)\WildGames O43 - CFD: 16/08/2013 - 20:57:24 - [1,038] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 15/08/2013 - 18:16:26 - [86,829] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 02/08/2013 - 23:17:46 - [5,466] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 02/08/2013 - 23:17:46 - [3,494] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 26/07/2012 - 10:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 26/07/2012 - 10:12:59 - [7,243] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 02/08/2013 - 23:17:46 - [5,226] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 26/07/2012 - 10:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 26/07/2012 - 10:12:59 - [0] -SH-D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 31/08/2013 - 14:24:09 - [16,497] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 01/08/2013 - 07:22:34 - [6,289] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 30/07/2013 - 22:49:17 - [45,858] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 29/08/2013 - 18:09:12 - [106,072] ----D C:\Program Files (x86)\Common Files\Ahead O43 - CFD: 04/08/2013 - 09:22:30 - [0,000] ----D C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 24/05/2013 - 00:45:30 - [0,091] ----D C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 31/07/2013 - 20:11:46 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 05/08/2013 - 13:35:13 - [2,453] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 05/08/2013 - 13:35:21 - [1,348] ----D C:\Program Files (x86)\Common Files\HP O43 - CFD: 04/08/2013 - 09:08:54 - [3,363] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 04/08/2013 - 09:32:27 - [3,422] ----D C:\Program Files (x86)\Common Files\Kodak O43 - CFD: 04/08/2013 - 22:41:11 - [237,314] ----D C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 04/08/2013 - 09:31:45 - [0,622] ----D C:\Program Files (x86)\Common Files\MSSoap O43 - CFD: 24/05/2013 - 00:44:25 - [1,416] ----D C:\Program Files (x86)\Common Files\Nikon O43 - CFD: 26/07/2012 - 10:13:01 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 30/07/2013 - 19:02:58 - [0,596] ----D C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 02/08/2013 - 23:17:44 - [41,845] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 24/05/2013 - 00:57:55 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 01/08/2013 - 19:24:59 - [43,806] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 08/08/2013 - 20:48:56 - [150,251] ----D C:\ProgramData\Adobe O43 - CFD: 24/05/2013 - 00:44:36 - [2,558] ----D C:\ProgramData\Apple O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Application Data O43 - CFD: 04/08/2013 - 09:08:01 - [0,011] ----D C:\ProgramData\ArcSoft O43 - CFD: 24/05/2013 - 00:39:54 - [0,000] ----D C:\ProgramData\ATI O43 - CFD: 31/08/2013 - 10:26:21 - [250,481] ----D C:\ProgramData\AVG2013 O43 - CFD: 30/07/2013 - 12:45:17 - [0] --H-D C:\ProgramData\Bureau O43 - CFD: 31/08/2013 - 10:19:53 - [0,000] --H-D C:\ProgramData\Common Files O43 - CFD: 30/07/2013 - 21:31:20 - [0,323] ----D C:\ProgramData\CyberLink O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Desktop O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Documents O43 - CFD: 18/08/2013 - 19:31:02 - [0,000] ----D C:\ProgramData\DriverGenius O43 - CFD: 25/08/2013 - 15:09:30 - [0,077] ----D C:\ProgramData\DVD Shrink O43 - CFD: 03/08/2013 - 19:18:20 - [-832,678] ----D C:\ProgramData\Garmin O43 - CFD: 30/07/2013 - 21:54:51 - [0,012] ----D C:\ProgramData\Google O43 - CFD: 30/07/2013 - 12:50:31 - [6,723] ----D C:\ProgramData\Hewlett-Packard O43 - CFD: 05/08/2013 - 13:39:25 - [26,280] ----D C:\ProgramData\HP O43 - CFD: 05/08/2013 - 13:36:24 - [0,009] ----D C:\ProgramData\HP Product Assistant O43 - CFD: 24/05/2013 - 00:53:39 - [0,108] ----D C:\ProgramData\install_clap O43 - CFD: 04/08/2013 - 09:27:54 - [83,648] ----D C:\ProgramData\Kodak O43 - CFD: 30/08/2013 - 21:51:23 - [6,457] ----D C:\ProgramData\Malwarebytes O43 - CFD: 30/07/2013 - 12:45:17 - [0] --H-D C:\ProgramData\Menu Démarrer O43 - CFD: 31/08/2013 - 12:44:20 - [9,061] ----D C:\ProgramData\MFAData O43 - CFD: 05/08/2013 - 18:11:57 - [-1811,953] -S--D C:\ProgramData\Microsoft O43 - CFD: 16/08/2013 - 20:55:06 - [0,055] ----D C:\ProgramData\Microsoft Help O43 - CFD: 24/05/2013 - 00:58:02 - [0] ----D C:\ProgramData\Microsoft SkyDrive O43 - CFD: 30/07/2013 - 12:45:17 - [0] --H-D C:\ProgramData\Modèles O43 - CFD: 29/08/2013 - 18:08:51 - [4,830] ----D C:\ProgramData\Nero O43 - CFD: 30/07/2013 - 13:18:54 - [429,871] ----D C:\ProgramData\Norton O43 - CFD: 24/05/2013 - 00:59:17 - [1,343] ----D C:\ProgramData\NortonInstaller O43 - CFD: 30/07/2013 - 22:53:55 - [0,051] ----D C:\ProgramData\Orange O43 - CFD: 03/08/2013 - 19:18:14 - [14,181] ----D C:\ProgramData\Package Cache O43 - CFD: 31/07/2013 - 07:34:23 - [0,039] ----D C:\ProgramData\PRICache O43 - CFD: 31/07/2013 - 18:26:04 - [0,136] ----D C:\ProgramData\Recovery O43 - CFD: 26/07/2012 - 11:45:49 - [0,001] ----D C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 04/08/2013 - 20:25:30 - [11,112] ----D C:\ProgramData\Samsung O43 - CFD: 04/08/2013 - 22:37:44 - [0,017] ----D C:\ProgramData\SoundResearch O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Start Menu O43 - CFD: 24/05/2013 - 00:54:04 - [2,129] ----D C:\ProgramData\Temp O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Templates O43 - CFD: 04/08/2013 - 22:15:23 - [0,007] ----D C:\ProgramData\TrackMania O43 - CFD: 05/08/2013 - 13:39:13 - [0,000] ----D C:\ProgramData\WEBREG O43 - CFD: 30/07/2013 - 12:56:30 - [-46,523] ----D C:\ProgramData\WildTangent O43 - CFD: 24/05/2013 - 00:39:08 - [39,643] ----D C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF} O43 - CFD: 28/08/2013 - 21:05:34 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\4Free O43 - CFD: 02/08/2013 - 16:42:00 - [12,529] ----D C:\Users\Angélique\AppData\Roaming\Adobe O43 - CFD: 29/08/2013 - 13:27:02 - [0,062] ----D C:\Users\Angélique\AppData\Roaming\Ahead O43 - CFD: 04/08/2013 - 09:07:51 - [0,002] ----D C:\Users\Angélique\AppData\Roaming\Arcsoft O43 - CFD: 30/07/2013 - 12:56:11 - [0] ----D C:\Users\Angélique\AppData\Roaming\ATI O43 - CFD: 31/08/2013 - 10:26:41 - [0,014] ----D C:\Users\Angélique\AppData\Roaming\AVG2013 O43 - CFD: 26/08/2013 - 20:35:32 - [0,107] ----D C:\Users\Angélique\AppData\Roaming\BankPerfect O43 - CFD: 03/08/2013 - 17:46:38 - [3,826] ----D C:\Users\Angélique\AppData\Roaming\CyberLink O43 - CFD: 30/07/2013 - 22:50:54 - [0,009] ----D C:\Users\Angélique\AppData\Roaming\fr.orange.assistancelivebox O43 - CFD: 03/08/2013 - 22:50:48 - [0] ----D C:\Users\Angélique\AppData\Roaming\Garmin O43 - CFD: 31/07/2013 - 07:41:28 - [0] ----D C:\Users\Angélique\AppData\Roaming\Google O43 - CFD: 30/07/2013 - 13:00:49 - [1,423] ----D C:\Users\Angélique\AppData\Roaming\Hewlett-Packard O43 - CFD: 05/08/2013 - 13:40:23 - [0,134] ----D C:\Users\Angélique\AppData\Roaming\HP O43 - CFD: 27/08/2013 - 21:00:10 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\HP Support Assistant O43 - CFD: 02/08/2013 - 19:05:23 - [0] ----D C:\Users\Angélique\AppData\Roaming\hpqlog O43 - CFD: 27/08/2013 - 21:00:07 - [0,002] ----D C:\Users\Angélique\AppData\Roaming\HpUpdate O43 - CFD: 30/07/2013 - 19:14:28 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\IDT O43 - CFD: 11/08/2013 - 16:47:04 - [1,993] ----D C:\Users\Angélique\AppData\Roaming\ImgBurn O43 - CFD: 18/08/2013 - 14:27:02 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\KodakCredentialStore O43 - CFD: 30/07/2013 - 18:46:44 - [0,056] ----D C:\Users\Angélique\AppData\Roaming\Macromedia O43 - CFD: 30/08/2013 - 21:51:36 - [0,016] ----D C:\Users\Angélique\AppData\Roaming\Malwarebytes O43 - CFD: 16/08/2013 - 22:33:23 - [5,187] -S--D C:\Users\Angélique\AppData\Roaming\Microsoft O43 - CFD: 11/08/2013 - 14:01:59 - [0] ----D C:\Users\Angélique\AppData\Roaming\MusicNet O43 - CFD: 02/08/2013 - 19:22:25 - [0,041] ----D C:\Users\Angélique\AppData\Roaming\Nero O43 - CFD: 30/08/2013 - 20:00:07 - [0] ----D C:\Users\Angélique\AppData\Roaming\Orange O43 - CFD: 04/08/2013 - 20:26:55 - [1,655] ----D C:\Users\Angélique\AppData\Roaming\Samsung O43 - CFD: 04/08/2013 - 09:10:11 - [0] ----D C:\Users\Angélique\AppData\Roaming\Skinux O43 - CFD: 02/08/2013 - 14:28:17 - [0,016] ----D C:\Users\Angélique\AppData\Roaming\SystemTools O43 - CFD: 31/08/2013 - 10:26:04 - [0] ----D C:\Users\Angélique\AppData\Roaming\TuneUp Software O43 - CFD: 16/08/2013 - 22:15:11 - [0,001] ----D C:\Users\Angélique\AppData\Roaming\Vso O43 - CFD: 30/07/2013 - 19:29:37 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\WebApp O43 - CFD: 30/07/2013 - 21:48:19 - [3,644] ----D C:\Users\Angélique\AppData\Roaming\WildTangent O43 - CFD: 24/08/2013 - 19:55:57 - [0] ----D C:\Users\Angélique\AppData\Roaming\WinBatch O43 - CFD: 29/08/2013 - 19:11:11 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\WinRAR O43 - CFD: 02/08/2013 - 16:42:00 - [11,882] ----D C:\Users\Angélique\AppData\Local\Adobe O43 - CFD: 29/08/2013 - 13:26:25 - [1,990] ----D C:\Users\Angélique\AppData\Local\Ahead O43 - CFD: 30/07/2013 - 12:52:20 - [0] ----D C:\Users\Angélique\AppData\Local\Application Data O43 - CFD: 30/07/2013 - 21:54:22 - [1,579] ----D C:\Users\Angélique\AppData\Local\Apps O43 - CFD: 04/08/2013 - 09:07:51 - [0] ----D C:\Users\Angélique\AppData\Local\ArcSoft O43 - CFD: 30/07/2013 - 12:53:21 - [6,234] ----D C:\Users\Angélique\AppData\Local\assembly O43 - CFD: 30/07/2013 - 12:56:11 - [0,087] ----D C:\Users\Angélique\AppData\Local\ATI O43 - CFD: 31/08/2013 - 10:26:32 - [0,608] ----D C:\Users\Angélique\AppData\Local\Avg2013 O43 - CFD: 30/08/2013 - 20:10:50 - [0,001] ----D C:\Users\Angélique\AppData\Local\avgchrome O43 - CFD: 30/07/2013 - 19:29:02 - [0,002] ----D C:\Users\Angélique\AppData\Local\Cyberlink O43 - CFD: 30/07/2013 - 21:54:33 - [0] ----D C:\Users\Angélique\AppData\Local\Deployment O43 - CFD: 30/07/2013 - 21:33:59 - [202,083] ----D C:\Users\Angélique\AppData\Local\Diagnostics O43 - CFD: 04/08/2013 - 20:31:22 - [88,617] ----D C:\Users\Angélique\AppData\Local\Downloaded Installations O43 - CFD: 26/08/2013 - 19:54:26 - [2,003] ----D C:\Users\Angélique\AppData\Local\ElevatedDiagnostics O43 - CFD: 03/08/2013 - 19:18:30 - [0,001] ----D C:\Users\Angélique\AppData\Local\Garmin O43 - CFD: 24/08/2013 - 12:43:20 - [0,166] ----D C:\Users\Angélique\AppData\Local\Google O43 - CFD: 30/07/2013 - 20:25:43 - [0,010] ----D C:\Users\Angélique\AppData\Local\Hewlett-Packard O43 - CFD: 30/07/2013 - 12:52:20 - [0] ----D C:\Users\Angélique\AppData\Local\Historique O43 - CFD: 05/08/2013 - 13:39:05 - [0,043] ----D C:\Users\Angélique\AppData\Local\HP O43 - CFD: 24/08/2013 - 19:58:26 - [0] ----D C:\Users\Angélique\AppData\Local\HP Quick Start O43 - CFD: 04/08/2013 - 09:10:27 - [0] ----D C:\Users\Angélique\AppData\Local\KodakGallery O43 - CFD: 31/08/2013 - 10:19:53 - [6,901] ----D C:\Users\Angélique\AppData\Local\MFAData O43 - CFD: 25/08/2013 - 15:40:00 - [346,073] ----D C:\Users\Angélique\AppData\Local\Microsoft O43 - CFD: 05/08/2013 - 17:54:39 - [0,194] ----D C:\Users\Angélique\AppData\Local\Microsoft Help O43 - CFD: 30/08/2013 - 20:03:46 - [0,000] ----D C:\Users\Angélique\AppData\Local\Orange O43 - CFD: 11/08/2013 - 09:39:02 - [314,914] ----D C:\Users\Angélique\AppData\Local\Packages O43 - CFD: 30/07/2013 - 12:53:11 - [0,039] ----D C:\Users\Angélique\AppData\Local\Power2Go8 O43 - CFD: 04/08/2013 - 19:04:59 - [0] ----D C:\Users\Angélique\AppData\Local\Programs O43 - CFD: 04/08/2013 - 20:26:54 - [0,017] ----D C:\Users\Angélique\AppData\Local\Samsung O43 - CFD: 31/08/2013 - 14:23:14 - [0,060] ----D C:\Users\Angélique\AppData\Local\Temp O43 - CFD: 30/07/2013 - 12:52:20 - [0] ----D C:\Users\Angélique\AppData\Local\Temporary Internet Files O43 - CFD: 28/08/2013 - 20:40:11 - [2,289] ----D C:\Users\Angélique\AppData\Local\VirtualStore O43 - CFD: 30/07/2013 - 12:58:06 - [62,207] ----D C:\Users\Angélique\AppData\Local\Wild Tangent O43 - CFD: 29/08/2013 - 20:19:16 - [0,039] ----D C:\Users\Angélique\AppData\Local\Windows Live O43 - CFD: 26/07/2012 - 10:13:00 - [0,004] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 26/07/2012 - 10:13:00 - [0,001] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 31/07/2013 - 07:34:27 - [0,000] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 10/08/2013 - 10:08:58 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BankPerfect O43 - CFD: 26/07/2012 - 10:13:00 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 29/08/2013 - 13:07:59 - [0] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Application O43 - CFD: 30/07/2013 - 22:49:33 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Orange O43 - CFD: 04/08/2013 - 19:56:28 - [0,004] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ski Challenge 13 (AT) O43 - CFD: 04/08/2013 - 21:33:01 - [0] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Softendo.com O43 - CFD: 11/08/2013 - 15:52:41 - [0,001] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 26/07/2012 - 10:13:00 - [0,005] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 29/08/2013 - 19:09:58 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ Program Folder: 191 Scanned in 00mn 01s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.9D59CE67208953DB0C142F57ED0C2522] - 31/08/2013 - 13:21:04 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.618F8992B879E5A1A7903ECB9BE89785] - 31/08/2013 - 13:17:18 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.89A0F87BF8E03C719E2E288AF6D25A9D] - 31/08/2013 - 11:55:47 ---A- . (...) -- C:\Windows\WindowsUpdate.log [33872] O44 - LFC:[MD5.0BB97D43299910CBFBA59C461B99B910] - 30/08/2013 - 20:51:23 RSHAD . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 27/08/2013 - 20:01:37 ---A- . (...) -- C:\Windows\SysNative\HP_ActiveX_Patch_NOT_DETECTED.txt [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 27/08/2013 - 20:01:37 RSHAD . (...) -- C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt [0] O44 - LFC:[MD5.9BE8DF2910CEC265FFBD6BA2C61D3784] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1797530] O44 - LFC:[MD5.89741FD208706704C41DCEBD96DF6A06] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [143646] O44 - LFC:[MD5.03D7EF77E2D5066715AC2B2056CD370B] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [170570] O44 - LFC:[MD5.59A6414C45A2C62F21772E9BC2314CBF] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [697824] O44 - LFC:[MD5.E94A50A75D71FCF5C6E4BE3CE53986D6] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [789076] O44 - LFC:[MD5.9BE8DF2910CEC265FFBD6BA2C61D3784] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1797530] O44 - LFC:[MD5.89741FD208706704C41DCEBD96DF6A06] - 26/08/2013 - 19:24:10 RSHAD . (...) -- C:\Windows\System32\perfc009.dat [143646] O44 - LFC:[MD5.03D7EF77E2D5066715AC2B2056CD370B] - 26/08/2013 - 19:24:10 RSHAD . (...) -- C:\Windows\System32\perfc00C.dat [170570] O44 - LFC:[MD5.59A6414C45A2C62F21772E9BC2314CBF] - 26/08/2013 - 19:24:10 RSHAD . (...) -- C:\Windows\System32\perfh009.dat [697824] O44 - LFC:[MD5.E94A50A75D71FCF5C6E4BE3CE53986D6] - 26/08/2013 - 19:24:10 RSHAD . (...) -- C:\Windows\System32\perfh00C.dat [789076] O44 - LFC:[MD5.38635D64FD72E553E0ACB119F6B15DFB] - 26/08/2013 - 19:01:13 ---A- . (...) -- C:\Windows\CDPLAYER.UNI [752] O44 - LFC:[MD5.D41B6A7D5AFD924BB0CBF422794D6E63] - 16/08/2013 - 21:19:27 ---A- . (...) -- C:\Windows\hpoins32.dat [201989] O44 - LFC:[MD5.C6ED3939B07D3C44B265E6C578339732] - 16/08/2013 - 21:16:45 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [336584] O44 - LFC:[MD5.C6ED3939B07D3C44B265E6C578339732] - 16/08/2013 - 21:16:45 RSHAD . (...) -- C:\Windows\System32\FNTCACHE.DAT [336584] O44 - LFC:[MD5.560A9357766AB0CDF38143EA3A66DA64] - 16/08/2013 - 20:50:18 ---A- . (.Microsoft Corporation - Contrôle d’édition de texte enrichi, v7.5.) -- C:\Windows\SysNative\msftedit.dll [2839552] O44 - LFC:[MD5.560A9357766AB0CDF38143EA3A66DA64] - 16/08/2013 - 20:50:18 ---A- . (.Microsoft Corporation - Contrôle d’édition de texte enrichi, v7.5.) -- C:\Windows\System32\msftedit.dll [2839552] O44 - LFC:[MD5.3884117CE4FEC35E4A1A7A62918B1F34] - 16/08/2013 - 20:50:18 ---A- . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\SysNative\IKEEXT.DLL [1156096] O44 - LFC:[MD5.3884117CE4FEC35E4A1A7A62918B1F34] - 16/08/2013 - 20:50:18 RSHAD . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1156096] O44 - LFC:[MD5.58B7BEACEB8B19A9698FE85B76C88ED9] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\SysNative\FWPUCLNT.DLL [381952] O44 - LFC:[MD5.58B7BEACEB8B19A9698FE85B76C88ED9] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\System32\FWPUCLNT.DLL [381952] O44 - LFC:[MD5.814F4A0774F08F580D71FA7E880CD454] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - DLL de spouleur local.) -- C:\Windows\SysNative\localspl.dll [1025024] O44 - LFC:[MD5.12DE753B04FE08427BC4BA3133BFB1DB] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\SysNative\wwanconn.dll [414208] O44 - LFC:[MD5.45A2DE308D27355F0F0D13499C8207DA] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\SysNative\gdi32.dll [1300480] O44 - LFC:[MD5.45A2DE308D27355F0F0D13499C8207DA] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [1300480] O44 - LFC:[MD5.73133A0C0CA63817BFF2CB9DE65B64E7] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\SysNative\BFE.DLL [723968] O44 - LFC:[MD5.7A102E79DD8F1032BCB76064E2E50C4A] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\SysNative\oleaut32.dll [778752] O44 - LFC:[MD5.7A102E79DD8F1032BCB76064E2E50C4A] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\oleaut32.dll [778752] O44 - LFC:[MD5.3CA8372E7D9C2EF8314C0C965F6B8427] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\SysNative\win32k.sys [4039680] O44 - LFC:[MD5.C89FAB42CD5FD672506031D941529A74] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\SysNative\WerFault.exe [439488] O44 - LFC:[MD5.C89FAB42CD5FD672506031D941529A74] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\System32\WerFault.exe [439488] O44 - LFC:[MD5.814F4A0774F08F580D71FA7E880CD454] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - DLL de spouleur local.) -- C:\Windows\System32\localspl.dll [1025024] O44 - LFC:[MD5.12DE753B04FE08427BC4BA3133BFB1DB] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\System32\wwanconn.dll [414208] O44 - LFC:[MD5.73133A0C0CA63817BFF2CB9DE65B64E7] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\BFE.DLL [723968] O44 - LFC:[MD5.3CA8372E7D9C2EF8314C0C965F6B8427] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [4039680] O44 - LFC:[MD5.09039F3D5A23483010AA6F5FE388F3C4] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [327512] O44 - LFC:[MD5.8E5271A1AC463276023B39BC846F299C] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - API Microsoft Smart Card.) -- C:\Windows\SysNative\WinSCard.dll [230912] O44 - LFC:[MD5.8E5271A1AC463276023B39BC846F299C] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - API Microsoft Smart Card.) -- C:\Windows\System32\WinSCard.dll [230912] O44 - LFC:[MD5.9A218BB2D3EC7CAAC84351D59204013A] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Affiche les fichiers actuellement ouverts.) -- C:\Windows\SysNative\openfiles.exe [77312] O44 - LFC:[MD5.9A218BB2D3EC7CAAC84351D59204013A] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Affiche les fichiers actuellement ouverts.) -- C:\Windows\System32\openfiles.exe [77312] O44 - LFC:[MD5.B8BF7450DC17F940DD3B1A853F62724F] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Application d’assistance Netsh de la platef.) -- C:\Windows\SysNative\nshwfp.dll [888832] O44 - LFC:[MD5.B8BF7450DC17F940DD3B1A853F62724F] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Application d’assistance Netsh de la platef.) -- C:\Windows\System32\nshwfp.dll [888832] O44 - LFC:[MD5.0ABF97013CA7400213DCBDC7B499AF85] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Base Multimedia Extension API DLL.) -- C:\Windows\SysNative\winmmbase.dll [183808] O44 - LFC:[MD5.0ABF97013CA7400213DCBDC7B499AF85] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Base Multimedia Extension API DLL.) -- C:\Windows\System32\winmmbase.dll [183808] O44 - LFC:[MD5.827AE73CD7CB3A8292A50EF39169071F] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - DLL API MCI.) -- C:\Windows\SysNative\winmm.dll [115712] O44 - LFC:[MD5.827AE73CD7CB3A8292A50EF39169071F] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - DLL API MCI.) -- C:\Windows\System32\winmm.dll [115712] O44 - LFC:[MD5.AF1349386D4C6786EF4E34FACEF15042] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) -- C:\Windows\SysNative\wcmsvc.dll [263680] O44 - LFC:[MD5.FF2E7B5DEF4C46870E8D00B80BBDB1DC] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\SysNative\Wwanadvui.dll [370688] O44 - LFC:[MD5.93BBEFF2825AFD81651EA2D938AAFCCA] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Gestionnaire multimédia WWan.) -- C:\Windows\SysNative\wwanmm.dll [543744] O44 - LFC:[MD5.DB5C9AD31E50EDC86C6072EDE1E89692] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Microsoft Windows Location API.) -- C:\Windows\SysNative\LocationApi.dll [312832] O44 - LFC:[MD5.DB5C9AD31E50EDC86C6072EDE1E89692] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Microsoft Windows Location API.) -- C:\Windows\System32\LocationApi.dll [312832] O44 - LFC:[MD5.6D9E07436B6646EC8F7EFFD39B6BA288] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Service de configuration automatique WWAN.) -- C:\Windows\SysNative\wwansvc.dll [447488] O44 - LFC:[MD5.8C7D71CE2F03E8CD6F1045D9275E6E1D] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Windows Connection Service Provider DLL.) -- C:\Windows\SysNative\wcmcsp.dll [74240] O44 - LFC:[MD5.97D3B79F36CBD8B70F0D9BA6939D2462] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Windows.Networking.BackgroundTransfer DLL.) -- C:\Windows\SysNative\Windows.Networking.BackgroundTransfer.dll [391168] O44 - LFC:[MD5.97D3B79F36CBD8B70F0D9BA6939D2462] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Windows.Networking.BackgroundTransfer DLL.) -- C:\Windows\System32\Windows.Networking.BackgroundTransfer.dll [391168] O44 - LFC:[MD5.AF1349386D4C6786EF4E34FACEF15042] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) -- C:\Windows\System32\wcmsvc.dll [263680] O44 - LFC:[MD5.FF2E7B5DEF4C46870E8D00B80BBDB1DC] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\System32\Wwanadvui.dll [370688] O44 - LFC:[MD5.FC2B8B06BDBD3B6457F5A3DA9AD2410E] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\Windows\System32\Drivers\msgpioclx.sys [120144] O44 - LFC:[MD5.93BBEFF2825AFD81651EA2D938AAFCCA] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Gestionnaire multimédia WWan.) -- C:\Windows\System32\wwanmm.dll [543744] O44 - LFC:[MD5.630555943E5A3FE21010CE91EC7FC84F] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\HdAudio.sys [341504] O44 - LFC:[MD5.F58B030A0664385C707B8C1C63682041] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\Windows\System32\Drivers\sdbus.sys [195416] O44 - LFC:[MD5.DD7B107B2BB3EE845F57315EF4ECAC9A] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\Windows\System32\Drivers\dumpsd.sys [125784] O44 - LFC:[MD5.6D9E07436B6646EC8F7EFFD39B6BA288] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Service de configuration automatique WWAN.) -- C:\Windows\System32\wwansvc.dll [447488] O44 - LFC:[MD5.25C50F4EDF70D0A831E0566BD181CCF2] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [321536] O44 - LFC:[MD5.BFC7FE4AAEB61317A921871B4085EF4B] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [119040] O44 - LFC:[MD5.3F1F31883EAC9DDDF836ACC6D1DAC36C] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwfs.sys [96512] O44 - LFC:[MD5.8C7D71CE2F03E8CD6F1045D9275E6E1D] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Windows Connection Service Provider DLL.) -- C:\Windows\System32\wcmcsp.dll [74240] O44 - LFC:[MD5.2CE63B3A60C54BF7421B090429C286B0] - 16/08/2013 - 20:50:15 ---A- . (...) -- C:\Windows\SysNative\ApnDatabase.xml [387583] O44 - LFC:[MD5.2CE63B3A60C54BF7421B090429C286B0] - 16/08/2013 - 20:50:15 RSHAD . (...) -- C:\Windows\System32\ApnDatabase.xml [387583] O44 - LFC:[MD5.19AEF9DE6A175C85DFF87C0ED0AB5386] - 16/08/2013 - 19:52:40 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\SysNative\MRT.exe [78161360] O44 - LFC:[MD5.19AEF9DE6A175C85DFF87C0ED0AB5386] - 16/08/2013 - 19:52:40 RSHAD . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [78161360] ~ Files: 76 Scanned in 00mn 05s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.403A0E83EA7AF4CCBC461ABD6E70DE81] - 02/08/2013 - 14:25:54 ---A- - C:\Windows\Prefetch\AIRAB31.EXE-C05756C1.pf O45 - LFCP:[MD5.6BCFE02497CC1C858C01969CE2040074] - 02/08/2013 - 14:25:54 ---A- - C:\Windows\Prefetch\AIRAB31.TMP-3CBDE53B.pf O45 - LFCP:[MD5.13BAC30B00ACE964BD368AF54408A5C4] - 02/08/2013 - 22:21:53 ---A- - C:\Windows\Prefetch\AgCx_SC4.db O45 - LFCP:[MD5.55700F87870D8F1849384188F5162E06] - 08/08/2013 - 19:33:13 ---A- - C:\Windows\Prefetch\AIR5DB0.TMP-143B6F73.pf O45 - LFCP:[MD5.372B4963529D0845B8105C34C65308CA] - 08/08/2013 - 19:33:17 ---A- - C:\Windows\Prefetch\AIR5DB0.EXE-90FB801D.pf O45 - LFCP:[MD5.83BFC50BA1F6D3FAA7110D5419473059] - 08/08/2013 - 19:49:37 ---A- - C:\Windows\Prefetch\AIR5736.TMP-6D6619CC.pf O45 - LFCP:[MD5.DDF78EC3BD0B67A61496D7F673243A47] - 08/08/2013 - 19:51:07 ---A- - C:\Windows\Prefetch\AIR5736.EXE-864EF6F7.pf O45 - LFCP:[MD5.CC94B644EC49C4116E97565CBD6C6A4E] - 08/08/2013 - 19:51:07 ---A- - C:\Windows\Prefetch\PCHEALTHKIT.EXE-FED975ED.pf O45 - LFCP:[MD5.32759ADE9F59EA340932446A90845DA3] - 10/08/2013 - 16:17:50 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.2F3901F35A2728B57349B33009593727] - 10/08/2013 - 16:18:51 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.EB60C1C0F59511C65E9C2CD240B0F3A4] - 11/08/2013 - 12:37:39 ---A- - C:\Windows\Prefetch\ATTRIB.EXE-3DAF7974.pf O45 - LFCP:[MD5.C5BA92B60E19428F41B41E1FA575D6CA] - 11/08/2013 - 18:40:55 ---A- - C:\Windows\Prefetch\AgCx_S4_S-1-5-21-3460665520-1960831872-1863844556-1001.snp.db O45 - LFCP:[MD5.F2D8B39E62063499E170B1C94A3583B4] - 14/08/2013 - 12:22:15 ---A- - C:\Windows\Prefetch\SNDVOL.EXE-276AC160.pf O45 - LFCP:[MD5.24EB8D089B94C0B22F5AC7C708203230] - 15/08/2013 - 18:50:49 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F7024BA3.pf O45 - LFCP:[MD5.5F0A0766F5BB04557F50DAB118A843B2] - 16/08/2013 - 20:48:42 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-4A7CF88B.pf O45 - LFCP:[MD5.8348AF76BC167C4B9B194AA92DB035DE] - 16/08/2013 - 21:08:42 ---A- - C:\Windows\Prefetch\BDEXTHOST.EXE-46A5DBB8.pf O45 - LFCP:[MD5.B4BC1B84C8ED7308993F48A8242F8607] - 16/08/2013 - 21:14:12 ---A- - C:\Windows\Prefetch\STARTER.EXE-F9419C8B.pf O45 - LFCP:[MD5.B5CB4DB3FA1559E4ABFDC8181A973209] - 16/08/2013 - 21:14:22 ---A- - C:\Windows\Prefetch\MANAGER.EXE-7E830819.pf O45 - LFCP:[MD5.2EC523CE80F7D414D6BE1C1B159CB2EC] - 18/08/2013 - 16:13:24 ---A- - C:\Windows\Prefetch\EASYSHARE.EXE-2EBF86BD.pf O45 - LFCP:[MD5.BC9A0716B3D2FA7B5242840FBB11170F] - 18/08/2013 - 20:08:55 ---A- - C:\Windows\Prefetch\MMC.EXE-17F9D1FC.pf O45 - LFCP:[MD5.5BD74CB47038CDBBA3D2F0C8E7D4BF75] - 22/08/2013 - 18:56:15 ---A- - C:\Windows\Prefetch\NERO.EXE-80632CC1.pf O45 - LFCP:[MD5.7E5C79741AF233C262323F8CF113CF3E] - 23/08/2013 - 11:17:05 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARMANAGER_80ACC8E3-6644A1C7.pf O45 - LFCP:[MD5.0D9502A61A0B9CCBAE92D27A905CE54D] - 24/08/2013 - 11:42:13 ---A- - C:\Windows\Prefetch\DRIVERSHQ.DRIVERDETECTIVE.CLI-95280BF7.pf O45 - LFCP:[MD5.1BF06CCC6C3CAC92FA947C92093F0FB8] - 24/08/2013 - 12:17:11 ---A- - C:\Windows\Prefetch\WSCRIPT.EXE-2D1A9206.pf O45 - LFCP:[MD5.979E0F117DF6AA998CEF34DA7F7E1F9A] - 25/08/2013 - 13:30:42 ---A- - C:\Windows\Prefetch\PS.EXE-1EE522C7.pf O45 - LFCP:[MD5.A411DAD60BC3EBD2F33367DC36C74C7E] - 25/08/2013 - 13:47:15 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-6AF5690B.pf O45 - LFCP:[MD5.61DD341431B7035C02523D27E8E17C3D] - 25/08/2013 - 13:58:43 ---A- - C:\Windows\Prefetch\ICREINSTALL_DVDSHRINK32SETUP.-275D1142.pf O45 - LFCP:[MD5.7E1A5B73679133707380C6145567225D] - 25/08/2013 - 14:16:48 ---A- - C:\Windows\Prefetch\DVD SHRINK 3.2.EXE-B26A01B9.pf O45 - LFCP:[MD5.A0B967E0A05DD7DB32E42F6A2CD42B04] - 25/08/2013 - 19:33:53 ---A- - C:\Windows\Prefetch\WINRAR.EXE-AA6602BC.pf O45 - LFCP:[MD5.29F5150FB702BF92CAB39206070AE110] - 25/08/2013 - 20:04:03 ---A- - C:\Windows\Prefetch\DRAGON BALL ARCADE.EXE-36C46DBE.pf O45 - LFCP:[MD5.CC91508601F5C49A8BD6182D7EC9DABE] - 26/08/2013 - 17:49:08 ---A- - C:\Windows\Prefetch\HPNETWORKCHECK.EXE-1B1BFCC5.pf O45 - LFCP:[MD5.6084B338961EC0C53A50FAEFEFC9BEFE] - 26/08/2013 - 17:54:05 ---A- - C:\Windows\Prefetch\HPSF.EXE-FF58409B.pf O45 - LFCP:[MD5.24DB9B352C209035E4268B34CD115469] - 26/08/2013 - 18:06:14 ---A- - C:\Windows\Prefetch\DSMUSERTASK.EXE-D4A83970.pf O45 - LFCP:[MD5.8223938D69E4417F368FF48E1824B17F] - 26/08/2013 - 18:53:40 ---A- - C:\Windows\Prefetch\MSDT.EXE-A16F1692.pf O45 - LFCP:[MD5.CEDF965FA1B3B38658D7BC8A13384E52] - 26/08/2013 - 19:00:28 ---A- - C:\Windows\Prefetch\EZCDDAX.EXE-E485AFCF.pf O45 - LFCP:[MD5.9A4C8CB5518A5B28448A812E98440FC9] - 26/08/2013 - 19:01:24 ---A- - C:\Windows\Prefetch\BURNRIGHTS.EXE-5D957F18.pf O45 - LFCP:[MD5.F4BC2CDA90CEB7A1C01D05C8393384D3] - 26/08/2013 - 19:34:09 ---A- - C:\Windows\Prefetch\BANKPERFECT.EXE-81023D72.pf O45 - LFCP:[MD5.28AFBCF777F0E9E1553921A117A3C23B] - 27/08/2013 - 20:01:37 ---A- - C:\Windows\Prefetch\LOWDISKSPACEDETECTION.EXE-7B96660D.pf O45 - LFCP:[MD5.A2B46EA723FA66597B37072BAF8AAA59] - 27/08/2013 - 20:04:14 ---A- - C:\Windows\Prefetch\WINRAR.EXE-C8414C16.pf O45 - LFCP:[MD5.901B64A156C7077D7BE1D02481C2265F] - 27/08/2013 - 20:05:38 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-952446E1.pf O45 - LFCP:[MD5.FD0F12736CE3182CD80A8B38B6879AA7] - 27/08/2013 - 20:12:37 ---A- - C:\Windows\Prefetch\WINRAR.EXE-C2533A12.pf O45 - LFCP:[MD5.11C7AF7414255B5A054057C343339466] - 27/08/2013 - 20:29:27 ---A- - C:\Windows\Prefetch\UPDATER.EXE-02930A67.pf O45 - LFCP:[MD5.B8B921C04B5D19BB84B3F70A66F11881] - 27/08/2013 - 20:29:45 ---A- - C:\Windows\Prefetch\GAME.EXE-F60C39E0.pf O45 - LFCP:[MD5.634C38537E2AE7ABD9E8589C548FCE4B] - 27/08/2013 - 20:41:57 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-BD46E54B.pf O45 - LFCP:[MD5.218C73CEA2348127847EF43DC8611070] - 27/08/2013 - 20:43:26 ---A- - C:\Windows\Prefetch\SYSTEMSETTINGS.EXE-D8CC3B5E.pf O45 - LFCP:[MD5.FEAEAA8A4AADEC4DACAA20EB957A5C33] - 27/08/2013 - 20:43:46 ---A- - C:\Windows\Prefetch\PICKERHOST.EXE-03F09186.pf O45 - LFCP:[MD5.9CFFAB3C57E0F50820BE6CA737723428] - 28/08/2013 - 19:33:12 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-5F7F692E.pf O45 - LFCP:[MD5.05C9E101AEC213FBA5694FF9F0FB68A9] - 28/08/2013 - 19:33:53 ---A- - C:\Windows\Prefetch\UNWISE.EXE-340888CD.pf O45 - LFCP:[MD5.C61B3AFBDF1A789F6894113FCB336581] - 28/08/2013 - 19:44:07 ---A- - C:\Windows\Prefetch\ZY-IGGLEPOP.EXE-C01DFD15.pf O45 - LFCP:[MD5.69F586334FC06D904C911E18825D0776] - 28/08/2013 - 19:46:45 ---A- - C:\Windows\Prefetch\GAMEINSTALLER.EXE-8132F8D2.pf O45 - LFCP:[MD5.DA9E81EE4B54CE51CA42480D674C0B2D] - 29/08/2013 - 12:21:13 ---A- - C:\Windows\Prefetch\NEROCMD.EXE-A520A419.pf O45 - LFCP:[MD5.BD39F4C2FBF4411FCF32121C7D6CD699] - 29/08/2013 - 16:26:09 ---A- - C:\Windows\Prefetch\SETUPXU.EXE-AA58688E.pf O45 - LFCP:[MD5.202F37ECBF314BE55866298BD2210107] - 29/08/2013 - 16:32:51 ---A- - C:\Windows\Prefetch\NEDWFILEHELPER.EXE-C1CDA3FA.pf O45 - LFCP:[MD5.0DDA926A608D65B15DD58861A210010C] - 29/08/2013 - 16:33:42 ---A- - C:\Windows\Prefetch\NEROCMD.EXE-B7FAEA9C.pf O45 - LFCP:[MD5.FC70E2C3ECB4E1336B79C5921AF236EB] - 29/08/2013 - 16:45:07 ---A- - C:\Windows\Prefetch\SETUPX.EXE-6DE449C5.pf O45 - LFCP:[MD5.56270BF515E93EA0856486FC280BA734] - 29/08/2013 - 17:05:40 ---A- - C:\Windows\Prefetch\NERO 7.8.5.0 FR.EXE-CC4D981A.pf O45 - LFCP:[MD5.EAF6201EC2E90CEA71D9274AEE52662B] - 29/08/2013 - 17:06:06 ---A- - C:\Windows\Prefetch\NEROBAR.EXE-C4050CB9.pf O45 - LFCP:[MD5.C4AF1165E949F4108683DFC4135FDAAC] - 29/08/2013 - 17:06:22 ---A- - C:\Windows\Prefetch\SETUPX.EXE-B6B18729.pf O45 - LFCP:[MD5.121A020F461D24C7CBB41DB2DA31D815] - 29/08/2013 - 17:34:04 ---A- - C:\Windows\Prefetch\NEROVISION.EXE-ED90061E.pf O45 - LFCP:[MD5.7C2E7CE7FFE785012EFE8F3256CABDFD] - 29/08/2013 - 17:35:59 ---A- - C:\Windows\Prefetch\WINRAR FR PATCH.EXE-FE501063.pf O45 - LFCP:[MD5.511E0BDE3DFBD0D66205CADDFFA5FE5C] - 29/08/2013 - 17:36:13 ---A- - C:\Windows\Prefetch\WRAR37B6.EXE-C910F362.pf O45 - LFCP:[MD5.2B2957AEE64FDB94C9D59CB6787B79C7] - 29/08/2013 - 17:39:20 ---A- - C:\Windows\Prefetch\WINRAR.EXE-72513729.pf O45 - LFCP:[MD5.BB4280FEB5B795AEFA402F4BE38A206A] - 29/08/2013 - 17:45:43 ---A- - C:\Windows\Prefetch\HH.EXE-603A5034.pf O45 - LFCP:[MD5.B234A5CAC1F4BACADB1CD21358C6685E] - 29/08/2013 - 18:00:07 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-F1EB78CC.pf O45 - LFCP:[MD5.EBCA40BDD9A1F10C79D0E8BD267119DF] - 29/08/2013 - 18:09:43 ---A- - C:\Windows\Prefetch\WINRAR-X64-420FR.EXE-00D345BA.pf O45 - LFCP:[MD5.06A1C7C3BF9745EA4406321ADCC993C1] - 29/08/2013 - 18:09:49 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-463F1B21.pf O45 - LFCP:[MD5.264D4A0510F3A36E98C7FD38C0893DD5] - 29/08/2013 - 18:11:21 ---A- - C:\Windows\Prefetch\WINRAR.EXE-E031DE56.pf O45 - LFCP:[MD5.CA1E8CC647075408E89D168BC063B732] - 29/08/2013 - 19:19:17 ---A- - C:\Windows\Prefetch\WLXPHOTOGALLERY.EXE-55FF63A1.pf O45 - LFCP:[MD5.2FE5E66F6626859E8660ED11A66E95FA] - 29/08/2013 - 19:48:27 ---A- - C:\Windows\Prefetch\HPCONNECTEDREMOTEWMPMONITOR.E-268AFC29.pf O45 - LFCP:[MD5.91A21D1A7EEFAC566789539CCE5525EF] - 30/08/2013 - 11:37:05 ---A- - C:\Windows\Prefetch\NGENTASK.EXE-4DB88ADA.pf O45 - LFCP:[MD5.D331A0476BA270115B99E562C894AE95] - 30/08/2013 - 11:41:18 ---A- - C:\Windows\Prefetch\NEROSTARTSMART.EXE-07BBB0D8.pf O45 - LFCP:[MD5.8CFF963CF700D171020204ED9BF7B787] - 30/08/2013 - 11:41:29 ---A- - C:\Windows\Prefetch\NERO.EXE-AC008767.pf O45 - LFCP:[MD5.DE0D44EBFCF5ED43098C3DC1D6126E5F] - 30/08/2013 - 11:59:25 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-00AE2311.pf O45 - LFCP:[MD5.3D2E260FEB5F596EBC1F91054933E5B2] - 30/08/2013 - 12:00:04 ---A- - C:\Windows\Prefetch\IMGBURN.EXE-DEA1071B.pf O45 - LFCP:[MD5.F2448D0C4EB698BB3B4A25D7391BD652] - 30/08/2013 - 12:01:41 ---A- - C:\Windows\Prefetch\CLUPDATER.EXE-64D36E25.pf O45 - LFCP:[MD5.392641BBE73B6139EA4AF9EC1A6F317C] - 30/08/2013 - 12:01:50 ---A- - C:\Windows\Prefetch\POWERDVD10.EXE-6CD2ECA6.pf O45 - LFCP:[MD5.060DC32E22C9FA2A7960F09F6CFC68CD] - 30/08/2013 - 12:06:40 ---A- - C:\Windows\Prefetch\DVD SHRINK 3.2.EXE-4B11A4AC.pf O45 - LFCP:[MD5.1CC65835E28E7DB3707DD7FAEDE54602] - 30/08/2013 - 12:09:32 ---A- - C:\Windows\Prefetch\EXCEL.EXE-A8B924E9.pf O45 - LFCP:[MD5.0B3086FE91B11BC53018EEE360D5DEA4] - 30/08/2013 - 12:23:37 ---A- - C:\Windows\Prefetch\NGENTASK.EXE-CD4E002C.pf O45 - LFCP:[MD5.FDF5DA5EA4842D0A6EB686DC28C8FA17] - 30/08/2013 - 12:36:09 ---A- - C:\Windows\Prefetch\VC.EXE-52A6D61E.pf O45 - LFCP:[MD5.C679E92CAAAFD9F717AD473344B2C1D8] - 30/08/2013 - 14:38:17 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-9178D9A9.pf O45 - LFCP:[MD5.6CAA9C3A99B0EA4D60C938EAA9B27FBD] - 30/08/2013 - 14:42:40 ---A- - C:\Windows\Prefetch\CREDENTIALUIBROKER.EXE-E9F92FD0.pf O45 - LFCP:[MD5.3AB4F3A9281EA441CBE99BF8B6FFAA42] - 30/08/2013 - 14:43:04 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-6C28DB75.pf O45 - LFCP:[MD5.06134086321209B80D042533031F7963] - 30/08/2013 - 14:43:04 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-6C28DB76.pf O45 - LFCP:[MD5.45F5A88F532E83C8B1DE68B143DEC951] - 30/08/2013 - 16:55:52 ---A- - C:\Windows\Prefetch\KIESPDLR.EXE-994AB17E.pf O45 - LFCP:[MD5.E378E93CC514B0169B69A2751EDA52EB] - 30/08/2013 - 17:07:35 ---A- - C:\Windows\Prefetch\ORANGETOOLBAR.EXE-ACDD610E.pf O45 - LFCP:[MD5.EC3CFEF0EF49718B38745482F287A386] - 30/08/2013 - 17:41:09 ---A- - C:\Windows\Prefetch\EZCDDAX.EXE-AD91FF32.pf O45 - LFCP:[MD5.39317939C68CF7950A7E4184D8CA418B] - 30/08/2013 - 17:49:41 ---A- - C:\Windows\Prefetch\CLASSICEXPLORERSETTINGS.EXE-6B18E136.pf O45 - LFCP:[MD5.6061A8480EF1C1F97D29C15C0CCCCA79] - 30/08/2013 - 18:02:58 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-B0AD61F0.pf O45 - LFCP:[MD5.F98417074070984ECBC032E94CAA5B9C] - 30/08/2013 - 18:05:03 ---A- - C:\Windows\Prefetch\HELPPANE.EXE-5A92E3D5.pf O45 - LFCP:[MD5.BCD7B0FBF6F50C4590D4EE6F72BB92BF] - 30/08/2013 - 18:59:16 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F47DFAB6.pf O45 - LFCP:[MD5.9D4B5BA119440B4ED9BFA7204DFA46EC] - 30/08/2013 - 18:59:29 ---A- - C:\Windows\Prefetch\UNINST.EXE-2D3BAAEF.pf O45 - LFCP:[MD5.6E5D3726B5CF79E3E6E8A7C6F32262B0] - 30/08/2013 - 19:07:54 ---A- - C:\Windows\Prefetch\VUUPC_SETUP.EXE-A26CAA50.pf O45 - LFCP:[MD5.8F66FDAFBC0823A7788870325FAA62B3] - 30/08/2013 - 19:08:10 ---A- - C:\Windows\Prefetch\SETUP.EXE-BA344D32.pf O45 - LFCP:[MD5.AECD0DDC4D9E56B7B36882E65744CAE3] - 30/08/2013 - 19:08:19 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-FF1F87FB.pf O45 - LFCP:[MD5.2F526E08A9211A120A765188C880EA35] - 30/08/2013 - 19:08:25 ---A- - C:\Windows\Prefetch\CCP.EXE-58E6BCE0.pf O45 - LFCP:[MD5.FF546AD70F6558CDC3EE94D0E745760F] - 30/08/2013 - 19:09:14 ---A- - C:\Windows\Prefetch\NSSEE0B.TMP.EXE-BE4BEF6D.pf O45 - LFCP:[MD5.DB3031E0DC23BC3466949DBF30C19C0F] - 30/08/2013 - 19:09:51 ---A- - C:\Windows\Prefetch\VUUPCLICENSE.EXE-ABF6C6E0.pf O45 - LFCP:[MD5.64D60C1EAEF515D0449175B89E8ADA53] - 30/08/2013 - 19:10:59 ---A- - C:\Windows\Prefetch\LYMXUD.EXE-AAD7BA9B.pf O45 - LFCP:[MD5.68C4535CA40490417A8535753691D488] - 30/08/2013 - 19:11:12 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-94CE7668.pf O45 - LFCP:[MD5.B039C54CEB6BBB01EE359185D019CB7A] - 30/08/2013 - 19:11:13 ---A- - C:\Windows\Prefetch\CONVERTAD.EXE-915D77FC.pf O45 - LFCP:[MD5.BCFDC0CED146A220A40972E08401846D] - 30/08/2013 - 19:32:51 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-546C7D12.pf O45 - LFCP:[MD5.B2AF97A524E7B575B464EFFF4217F99B] - 30/08/2013 - 19:34:14 ---A- - C:\Windows\Prefetch\Op-EXPLORER.EXE-03C49D11-000000F5.pf O45 - LFCP:[MD5.8F45F32998A1085502740AAD1C6174F9] - 30/08/2013 - 19:34:46 ---A- - C:\Windows\Prefetch\AU_.EXE-86008386.pf O45 - LFCP:[MD5.625113CAA923EFE2FF0E61A3A0352144] - 30/08/2013 - 19:34:59 ---A- - C:\Windows\Prefetch\UNINSTALLER.EXE-6E444AB0.pf O45 - LFCP:[MD5.4F2F3972E968C24E7AD2FBD5FA6881EA] - 30/08/2013 - 19:35:05 ---A- - C:\Windows\Prefetch\UNINSTALLER.EXE-63645CB9.pf O45 - LFCP:[MD5.5864F2A8118CFADC1B74B1773D5B533D] - 30/08/2013 - 19:36:09 ---A- - C:\Windows\Prefetch\ADW CLEANER.EXE-666ED0C2.pf O45 - LFCP:[MD5.770A77175E37AFA9C4C2D6B98C8E9AEB] - 30/08/2013 - 20:18:39 ---A- - C:\Windows\Prefetch\OPENWITH.EXE-BA0DC300.pf O45 - LFCP:[MD5.4251D23B1798A96F27403CA47DBBD090] - 30/08/2013 - 20:28:10 ---A- - C:\Windows\Prefetch\EXPRESS.EXE-11BE41F1.pf O45 - LFCP:[MD5.A6FF580D98B7FEE1DF74E199CDB2A0F6] - 30/08/2013 - 20:28:34 ---A- - C:\Windows\Prefetch\ZUMA.EXE-46A499B7.pf O45 - LFCP:[MD5.91B1D3D2B2046342620CBFE45DE55FFE] - 30/08/2013 - 20:31:46 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-99964DCC.pf O45 - LFCP:[MD5.4A7FF08B4584AE5C2867BD132D41E377] - 30/08/2013 - 20:37:36 ---A- - C:\Windows\Prefetch\TASKMGR.EXE-39AABA37.pf O45 - LFCP:[MD5.274A8C5CA87778393F1A066A56F1394C] - 30/08/2013 - 20:51:13 ---A- - C:\Windows\Prefetch\MBAM-SETUP-1.75.0.1300.TMP-C5A8D8CF.pf O45 - LFCP:[MD5.DE96545D3E4F804B98C0AA3A8D8DE612] - 31/08/2013 - 08:32:57 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-03C49D11.pf O45 - LFCP:[MD5.AC5139E19615FADCF549BF0A683EE019] - 31/08/2013 - 08:33:16 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-FCA76D39.pf O45 - LFCP:[MD5.7F1431BCC1337FA1BCA2C3EFA3338CF1] - 31/08/2013 - 08:33:59 ---A- - C:\Windows\Prefetch\AgCx_SC5.db O45 - LFCP:[MD5.6F87E96B67697958B7843AB3A40E6D64] - 31/08/2013 - 09:19:53 ---A- - C:\Windows\Prefetch\AVG_AVCT_STB_ALL_2013_3392_CM-A6290D01.pf O45 - LFCP:[MD5.ED3DB3698251CD078982DF338B312F5A] - 31/08/2013 - 09:25:32 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-BAE57A74.pf O45 - LFCP:[MD5.2C308B44C865C9AACFDC0F8B67F23A68] - 31/08/2013 - 09:26:37 ---A- - C:\Windows\Prefetch\AVGMFAPX.EXE-09C9F1FE.pf O45 - LFCP:[MD5.2762A930DE1C8A510AACA28B093D35CC] - 31/08/2013 - 09:33:23 ---A- - C:\Windows\Prefetch\ZHPDIAG2 (2).TMP-FC6FF960.pf O45 - LFCP:[MD5.032D8D7DD94DEA0A3E61268381421ED7] - 31/08/2013 - 09:33:28 ---A- - C:\Windows\Prefetch\ZHPDIAG2 (2).TMP-86714A33.pf O45 - LFCP:[MD5.4120C5A32A3A0713DB6414A7095608EB] - 31/08/2013 - 09:52:14 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-4E288B88.pf O45 - LFCP:[MD5.44951585B10A41FAD869272A5C49F119] - 31/08/2013 - 10:09:56 ---A- - C:\Windows\Prefetch\WINWORD.EXE-4C6BDD9E.pf O45 - LFCP:[MD5.FD78EE1963E61E55C6B08DB4D7A8C54F] - 31/08/2013 - 10:09:58 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-853292E2.pf O45 - LFCP:[MD5.DE723E6FC148A3507AB24420D62C6F19] - 31/08/2013 - 10:17:04 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.77672CE3740511AD53216BD0A617B0FF] - 31/08/2013 - 10:47:26 ---A- - C:\Windows\Prefetch\dynreservedpri.db O45 - LFCP:[MD5.9F4FEC84E7DB53D0F640C3BB5F543E7F] - 31/08/2013 - 10:47:33 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-D687BE54.pf O45 - LFCP:[MD5.FAC398F0001B20DFB3CB439C98432E83] - 31/08/2013 - 11:05:28 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-2B5EB372.pf O45 - LFCP:[MD5.948E4C01BBE4984CC6F74B1142CACE67] - 31/08/2013 - 11:05:28 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-B691425A.pf O45 - LFCP:[MD5.5982D6AD5632E58B4F7234C58691DDEB] - 31/08/2013 - 11:12:28 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3460665520-1960831872-1863844556-1001.db O45 - LFCP:[MD5.C21D3EF865C64A9B8DCD13B4F731EA52] - 31/08/2013 - 11:12:28 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3460665520-1960831872-1863844556-1001.db O45 - LFCP:[MD5.A3604211454DB466F1ADDE3AC5AD7287] - 31/08/2013 - 11:13:30 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-F68363C4.pf O45 - LFCP:[MD5.324C39B04B8F500D613C92E5CA34FCBE] - 31/08/2013 - 11:26:11 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-8162C2FA.pf O45 - LFCP:[MD5.EAE0A5FBCC3C24796699A02BFDF283BD] - 31/08/2013 - 11:26:21 ---A- - C:\Windows\Prefetch\ZHPFIX.EXE-AFDB3DAC.pf O45 - LFCP:[MD5.9A315621A621D4E3D8A2FAF946D92861] - 31/08/2013 - 11:27:39 ---A- - C:\Windows\Prefetch\CMD.EXE-CD245F9E.pf O45 - LFCP:[MD5.B8FAA8131C8787C77EDB7931C3D5445C] - 31/08/2013 - 11:27:40 ---A- - C:\Windows\Prefetch\REG.EXE-CC1AF0A4.pf O45 - LFCP:[MD5.906460540837AAE56614CA0A015CFA6E] - 31/08/2013 - 11:30:49 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E6E6216F.pf O45 - LFCP:[MD5.42374DE7DB42624BD2FA5A0CF49DFC18] - 31/08/2013 - 11:43:18 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-534DDDA0.pf O45 - LFCP:[MD5.5BE0EA30EC91BA7FA0531E849CDE6C17] - 31/08/2013 - 11:43:18 ---A- - C:\Windows\Prefetch\TASKHOSTEX.EXE-7356AAC0.pf O45 - LFCP:[MD5.16A271BAE5F85E5A09CC61338C54FE1C] - 31/08/2013 - 11:43:52 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-3290E8FC.pf O45 - LFCP:[MD5.D93ABFBE5EAFE4AC927CD8AD98FE61C5] - 31/08/2013 - 11:44:02 ---A- - C:\Windows\Prefetch\MBAM.EXE-125A28F9.pf O45 - LFCP:[MD5.0F1C182C626AE80AE90DD61A9DFBF38E] - 31/08/2013 - 11:44:05 ---A- - C:\Windows\Prefetch\AVGMFAPX.EXE-482B91AB.pf O45 - LFCP:[MD5.E91C14B568494556C519F76263E7D5C9] - 31/08/2013 - 11:54:11 ---A- - C:\Windows\Prefetch\MYSTIFY.SCR-E0B333A9.pf O45 - LFCP:[MD5.39499EA4DB1E114428653A073C6C6EA1] - 31/08/2013 - 11:55:26 ---A- - C:\Windows\Prefetch\TIWORKER.EXE-3391C7C7.pf O45 - LFCP:[MD5.119B3557AAFF7AB891A423EFCC48FFBC] - 31/08/2013 - 11:55:26 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-B018CCBF.pf O45 - LFCP:[MD5.A48809CEC7980134AD930DD7606E7AFE] - 31/08/2013 - 12:12:20 ---A- - C:\Windows\Prefetch\RUNTIMEBROKER.EXE-17E2786F.pf O45 - LFCP:[MD5.0F7ACEE86463F7130DBD12C7F8E87066] - 31/08/2013 - 12:32:11 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.F4E20BD424428C487D2508E0806E2FEB] - 31/08/2013 - 12:32:12 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.FCAD50EA5B00B8C70DDEB69392AF5B67] - 31/08/2013 - 12:32:13 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.F2DBE9368E4AD6A54F7619EC473F6C0B] - 31/08/2013 - 12:32:15 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.A469AD4FFD99DF38E61F93A56BA1C3F9] - 31/08/2013 - 12:36:15 ---A- - C:\Windows\Prefetch\THUMBNAILEXTRACTIONHOST.EXE-C3FB8861.pf O45 - LFCP:[MD5.65557EAA51D33956EC0DE3E09C9F262E] - 31/08/2013 - 12:51:23 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-29D61DAB.pf O45 - LFCP:[MD5.31E108A0F43CEC0705BB4BEA52B2E218] - 31/08/2013 - 12:59:10 ---A- - C:\Windows\Prefetch\TASKENG.EXE-23205583.pf O45 - LFCP:[MD5.E4AF19E238414B7FF173C5F498082F7C] - 31/08/2013 - 12:59:57 ---A- - C:\Windows\Prefetch\SYMERR.EXE-E8E6C194.pf O45 - LFCP:[MD5.B9F681DFD30DB37DF2CAE73899A08D17] - 31/08/2013 - 13:00:12 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-985C34E6.pf O45 - LFCP:[MD5.0C3E4D5E6979F05DDBDE35940B3E57B2] - 31/08/2013 - 13:12:37 ---A- - C:\Windows\Prefetch\REGEDIT.EXE-FA6F6DA2.pf O45 - LFCP:[MD5.24116F5FDC0F116C00FA310FC59E1A67] - 31/08/2013 - 13:12:50 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-7D20CFB0.pf O45 - LFCP:[MD5.E0042AF09E652CEBB8A55800A5B03F94] - 31/08/2013 - 13:14:03 ---A- - C:\Windows\Prefetch\CLI.EXE-278FDBBC.pf O45 - LFCP:[MD5.A69FBDF369BD056BE4D2D2B403AB33A0] - 31/08/2013 - 13:14:04 ---A- - C:\Windows\Prefetch\AVGUI.EXE-4AC784F5.pf O45 - LFCP:[MD5.F49B0FF09C4B4B48CF04FCA4E8FCD2DA] - 31/08/2013 - 13:14:05 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-E35F76FB.pf O45 - LFCP:[MD5.47A264171C6DF703AE8A45CAA1D9A7AF] - 31/08/2013 - 13:14:16 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.9B55979E61310C4303FB4988CCC7BF78] - 31/08/2013 - 13:16:10 ---A- - C:\Windows\Prefetch\CONHOST.EXE-F98A1078.pf O45 - LFCP:[MD5.48918584BB419CC2A047475EE6C876E6] - 31/08/2013 - 13:16:10 ---A- - C:\Windows\Prefetch\OUCORE.EXE-698BDEB8.pf O45 - LFCP:[MD5.CF14F748FB89E5E03DA2FCC36431BE51] - 31/08/2013 - 13:16:10 ---A- - C:\Windows\Prefetch\OUINDICATOR.EXE-F9467004.pf O45 - LFCP:[MD5.DB773EF4E955B0C371D6A1069DA19C43] - 31/08/2013 - 13:16:10 ---A- - C:\Windows\Prefetch\OUSOFTWAREMANAGER.EXE-CC5E0AE9.pf O45 - LFCP:[MD5.AA3060F07640CEEAF619AAF4B19AF262] - 31/08/2013 - 13:16:10 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-CA550BAC.pf O45 - LFCP:[MD5.8071092A4DC4474DD4716B0EAFB150F6] - 31/08/2013 - 13:16:10 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-D5072757.pf O45 - LFCP:[MD5.5839C3A232D1E4D9658525DB9FEB9C6D] - 31/08/2013 - 13:16:24 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-7A9337F2.pf O45 - LFCP:[MD5.65840C3B664C3C5827108E17D7CA3F9D] - 31/08/2013 - 13:16:27 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARUSER_32.EXE-992C17DF.pf O45 - LFCP:[MD5.673DCF3001895DCBCE6A78F8369B828C] - 31/08/2013 - 13:16:27 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-F4FB5D2F.pf O45 - LFCP:[MD5.6B3900EF18C196F16A58621FB479B730] - 31/08/2013 - 13:16:33 ---A- - C:\Windows\Prefetch\FLASHUTIL_ACTIVEX.EXE-4E6AE223.pf O45 - LFCP:[MD5.73EEB6EA75383E518B28877523D36A30] - 31/08/2013 - 13:16:59 ---A- - C:\Windows\Prefetch\MOM.EXE-AF39B199.pf O45 - LFCP:[MD5.01DB5E8A683129FDA2944557996071E2] - 31/08/2013 - 13:17:03 ---A- - C:\Windows\Prefetch\CCC.EXE-22878179.pf O45 - LFCP:[MD5.7F732CBE88B0C5EFF74200B44DDA98D4] - 31/08/2013 - 13:17:03 ---A- - C:\Windows\Prefetch\MMLOADDRV.EXE-778A3492.pf O45 - LFCP:[MD5.FD584A1E54DCDF2DEDCD485681AA8F08] - 31/08/2013 - 13:17:25 ---A- - C:\Windows\Prefetch\FIXCFG.EXE-E385ABCC.pf O45 - LFCP:[MD5.409D27F1F64DA41EF68F67ADED5C0DB2] - 31/08/2013 - 13:17:31 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-62E5E10F.pf O45 - LFCP:[MD5.B4FAECB7C43F9B47D4ADA85E9F5970A0] - 31/08/2013 - 13:17:36 ---A- - C:\Windows\Prefetch\NETSH.EXE-355423B0.pf O45 - LFCP:[MD5.B0864DAE663A74A4277B4728CCCB09B8] - 31/08/2013 - 13:17:41 ---A- - C:\Windows\Prefetch\HPSA_SERVICE.EXE-1776F51A.pf O45 - LFCP:[MD5.BCA2FA6A696442CB094DD552B7707FE7] - 31/08/2013 - 13:17:44 ---A- - C:\Windows\Prefetch\CCSVCHST.EXE-DFB7FC90.pf O45 - LFCP:[MD5.921BFBC08B87DB54EEC7F2E025C7485E] - 31/08/2013 - 13:17:44 ---A- - C:\Windows\Prefetch\HPCONNECTEDREMOTESERVICE.EXE-0486968A.pf O45 - LFCP:[MD5.E99B8B5FC459C89419FE495811670DD4] - 31/08/2013 - 13:17:46 ---A- - C:\Windows\Prefetch\SYMSILENTBOOTSTRAP.EXE-2F1083F1.pf O45 - LFCP:[MD5.6C99CA45D8A6E67695EC6AD64FD2C7AE] - 31/08/2013 - 13:17:50 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-6520183E.pf O45 - LFCP:[MD5.215BD1595E12387FB8795DAC8CA79C1D] - 31/08/2013 - 13:18:01 ---A- - C:\Windows\Prefetch\CCSVCHST.EXE-DFB7FC8F.pf O45 - LFCP:[MD5.03C44361057EBFC4466C064A772044A9] - 31/08/2013 - 13:18:12 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-5A956D1E.pf O45 - LFCP:[MD5.FB08B980AB3AB61BCA16FB5B5884B296] - 31/08/2013 - 13:18:39 ---A- - C:\Windows\Prefetch\HPCONNECTEDREMOTEUSER.EXE-1F44B348.pf O45 - LFCP:[MD5.01C4BB4D104AD2549398807B012CBFF4] - 31/08/2013 - 13:19:30 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-7D63BB4C.pf O45 - LFCP:[MD5.26C56550BA55D67E159462D24A38EA21] - 31/08/2013 - 13:19:58 ---A- - C:\Windows\Prefetch\LADS.EXE-BC89FD22.pf O45 - LFCP:[MD5.21B095175E7EEB118DE631A6A7A00F3C] - 31/08/2013 - 13:20:25 ---A- - C:\Windows\Prefetch\AVGDIAGEX.EXE-63572971.pf O45 - LFCP:[MD5.C47129E2DC5AD0701CE98FAF73DB4ED0] - 31/08/2013 - 13:20:50 ---A- - C:\Windows\Prefetch\NSLOOKUP.EXE-EB35EDAD.pf O45 - LFCP:[MD5.39FCBBD1D0AFA1F109E1A8CEF093F3F2] - 31/08/2013 - 13:21:04 ---A- - C:\Windows\Prefetch\MBRCHECK.EXE-52282269.pf O45 - LFCP:[MD5.DC132DF812DA1233CFC4A7340D88C215] - 31/08/2013 - 13:21:40 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-F0516D55.pf O45 - LFCP:[MD5.D47BECBDA7AEFF37251EB398C5600A2D] - 31/08/2013 - 13:21:40 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-10E4267C.pf O45 - LFCP:[MD5.AA5CDCE36366D29173368785E1D034ED] - 31/08/2013 - 13:21:40 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-C6CFE2A8.pf O45 - LFCP:[MD5.6BC2B2CB7DA6BB89200A6978888A137B] - 31/08/2013 - 13:22:53 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-B28CC291.pf O45 - LFCP:[MD5.9A1C4647EA7D45ACC8E2C9481B237B60] - 31/08/2013 - 13:22:55 ---A- - C:\Windows\Prefetch\CLTLMH.EXE-810A302E.pf O45 - LFCP:[MD5.6C68855D2E31D005711ADBA2E5C1D2AA] - 31/08/2013 - 13:22:59 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-BB49B536.pf O45 - LFCP:[MD5.211BCE8366EB46D018BD40DDAC00E3FF] - 31/08/2013 - 13:23:42 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-CE99ACA7.pf O45 - LFCP:[MD5.9EBB8350EE53DD993B362518EFD92E67] - 31/08/2013 - 13:23:53 ---A- - C:\Windows\Prefetch\CONSENT.EXE-2D674CE4.pf O45 - LFCP:[MD5.5BA68DF6C6D4462ACE2AC342902B7941] - 31/08/2013 - 13:23:53 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-5F2753B1.pf O45 - LFCP:[MD5.76043806C580E3C83425CD465A0349B1] - 31/08/2013 - 13:23:58 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E6B64B6C.pf O45 - LFCP:[MD5.ACAE3CA6525B508D3E827CF4867B54AB] - 31/08/2013 - 13:24:03 ---A- - C:\Windows\Prefetch\CMD.EXE-2EB3E6E2.pf O45 - LFCP:[MD5.1942CDF4B6D9ECD25073F931339ABC62] - 31/08/2013 - 13:24:03 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-E9FF6526.pf O45 - LFCP:[MD5.2BE2E66B54771CB757EF17195BA6515E] - 31/08/2013 - 13:24:03 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-C7289479.pf O45 - LFCP:[MD5.BC58C069002D36ECBB2DA27DE956C2F8] - 31/08/2013 - 13:24:09 ---A- - C:\Windows\Prefetch\PV.EXE-D9D90B9C.pf O45 - LFCP:[MD5.8A3388E6A4AFF2EFCDE7095571FEC338] - 31/08/2013 - 13:24:10 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-D08B2113.pf O45 - LFCP:[MD5.1C9E796EBAAD359FAA956A485FB22A7D] - 31/08/2013 - 13:24:11 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-7B160CA5.pf O45 - LFCP:[MD5.32419AD928FF1FB4A46FEE870D14F655] - 31/08/2013 - 13:24:11 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-0C8A533A.pf O45 - LFCP:[MD5.1EC6C6E60F93CA02DBB35D96902B6EC5] - 31/08/2013 - 13:24:17 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-0AD36442.pf ~ Prefetcher: 208 Scanned in 00mn 01s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Live Security Package.) -- C:\Windows\System32\livessp.dll ~ LSA: 9 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 17 Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 17 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 ~ MWPE Keys: 3 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736] ~ Drivers: 17 Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\bk.html [92] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\bk.js [708] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\cs.js [2657] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\icon128.png [11230] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\icon16.png [586] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\icon48.png [2929] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\manifest.json [526] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\entries [801] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\format [2] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\prop-base\icon.png.svn-base [53] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\prop-base\icon128.png.svn-base [53] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\prop-base\icon48.png.svn-base [53] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\text-base\background.html.svn-base [532] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\text-base\icon.png.svn-base [3577] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\text-base\icon128.png.svn-base [23546] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\text-base\icon48.png.svn-base [7257] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\background.html [532] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\icon.png [3577] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\icon128.png [23546] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\icon48.png [7257] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\manifest.json [664] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\plugin\.svn\entries [255] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\plugin\.svn\format [2] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (.Nosibay.) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\plugin\npSurfMatch.dll [57344] O61 - LFC: 28/08/2013 - 18:51:06 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Adobe\AIR\Updater\lastUpdateCheck [35] O61 - LFC: 28/08/2013 - 19:13:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\AD2F1837.GettingStartedwithWindows8_v10z8vjag6ke6\Settings\settings.dat [262144] O61 - LFC: 28/08/2013 - 19:13:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingNews_8wekyb3d8bbwe\Settings\settings.dat [262144] O61 - LFC: 28/08/2013 - 19:13:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\Settings\settings.dat [262144] O61 - LFC: 28/08/2013 - 19:15:02 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.PerfTrack\e5c4656ff7ce2ea48e31d19fe9f1e8f2\Microsoft.PerfTrack.ni.dll [26624] O61 - LFC: 28/08/2013 - 19:15:02 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.PerfTrack\e5c4656ff7ce2ea48e31d19fe9f1e8f2\Microsoft.PerfTrack.ni.dll.aux [1264] O61 - LFC: 28/08/2013 - 19:15:02 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Platform\a04c8473b982cecb54b593881e6f9849\Platform.ni.dll.aux [7468] O61 - LFC: 28/08/2013 - 19:15:02 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Platform\a04c8473b982cecb54b593881e6f9849\Platform.ni.dll [6905856] O61 - LFC: 28/08/2013 - 19:15:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Trave4979206f#\e7ee8fefba704352a1594f42c2a787dd\AppEx.Travel.Services.ni.dll.aux [8012] O61 - LFC: 28/08/2013 - 19:15:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Travee71ecb87#\992e8a58b108d4c078b180bb1a557b3f\AppEx.Travel.Utilities.ni.dll.aux [2580] O61 - LFC: 28/08/2013 - 19:15:12 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Trave4979206f#\e7ee8fefba704352a1594f42c2a787dd\AppEx.Travel.Services.ni.dll [6963712] O61 - LFC: 28/08/2013 - 19:15:12 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Travee71ecb87#\992e8a58b108d4c078b180bb1a557b3f\AppEx.Travel.Utilities.ni.dll [53760] O61 - LFC: 28/08/2013 - 19:15:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Commo2e34e0d9#\3830fd34adeb5f54ba44cf8fafca9c35\AppEx.Common.EntityCollection.ni.dll.aux [1812] O61 - LFC: 28/08/2013 - 19:15:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Common\8a0db5b7229ce49dd845eac9dcf98e8c\AppEx.Common.ni.dll.aux [4420] O61 - LFC: 28/08/2013 - 19:15:14 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Commo2e34e0d9#\3830fd34adeb5f54ba44cf8fafca9c35\AppEx.Common.EntityCollection.ni.dll [187392] O61 - LFC: 28/08/2013 - 19:15:14 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Common\8a0db5b7229ce49dd845eac9dcf98e8c\AppEx.Common.ni.dll [1055744] O61 - LFC: 28/08/2013 - 19:15:16 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.W64cef312#\42949796c73e54f690519bc67b4c460d\Microsoft.WindowsAzure.Messaging.Managed.ni.dll [1037824] O61 - LFC: 28/08/2013 - 19:15:16 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.W64cef312#\42949796c73e54f690519bc67b4c460d\Microsoft.WindowsAzure.Messaging.Managed.ni.dll.aux [6928] O61 - LFC: 28/08/2013 - 19:33:07 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [340] O61 - LFC: 28/08/2013 - 19:33:07 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 [326] O61 - LFC: 28/08/2013 - 19:33:37 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] O61 - LFC: 28/08/2013 - 19:33:37 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] O61 - LFC: 28/08/2013 - 19:44:49 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\Content\7D1F03728133589A90656A87E482B21F [38443] O61 - LFC: 28/08/2013 - 19:44:49 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\7D1F03728133589A90656A87E482B21F [256] O61 - LFC: 28/08/2013 - 20:05:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\4Free\Video Converter 3\index\indexversion.dat [24] O61 - LFC: 28/08/2013 - 20:20:18 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 [290] O61 - LFC: 28/08/2013 - 20:20:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\featuresc359114f-6b8c-499f-a2f3-920532e9cf8c[1].json [13041] O61 - LFC: 28/08/2013 - 20:20:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\6795803a-8517-45a2-8956-028a74549d33[1].png [7768] O61 - LFC: 28/08/2013 - 20:20:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\cc950027-7a41-4d11-bd9d-6f39c1081067[1].png [78718] O61 - LFC: 28/08/2013 - 20:20:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.197821[2].png [10361] O61 - LFC: 28/08/2013 - 20:20:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\b453fe27-a771-4bf3-99dd-c97d4d6d6237[1].png [62992] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\ac4e6560-ff09-4974-96fa-b08655bc39a9[1].png [12077] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\5f3d8352-9fe4-4db7-a969-4219cc802256[1].png [106110] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\d7589c62-10b7-4dbb-af94-2e72f9ef2aba[1].png [112468] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\e8403fe4-3a66-4db3-b368-c4ee03e30c33[1].png [108913] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\eba0cc57-0c68-432d-bce7-055677956cba[1].png [47101] O61 - LFC: 28/08/2013 - 20:20:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\30aa86bf-cedc-4503-8e72-014c52351947[1].png [19496] O61 - LFC: 28/08/2013 - 20:20:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\9a9fd586-6efb-4768-a0a4-7a656ca1a1da[1].png [24199] O61 - LFC: 28/08/2013 - 20:20:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\a3fd444b-d243-4c50-a71f-7f205c875ed6[1].png [51423] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\89cb5a1e-b4bd-4736-b2df-cff6c63ffb3a[1].png [239546] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\0083b07b-d9b3-4d4b-838a-20a702c4f693[1].png [26348] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\4e3f7bdb-e2d3-4dba-a3e2-a807e2b75557[1].png [37085] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\613199ae-d287-4360-96a1-7dc4210010d3[1].png [81125] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\8d240384-f583-4a44-9add-94cd5c39927a[1].png [11481] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\7bfda8b0-7b15-4b90-a899-cec7e2189963[1].png [11428] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\8c6f05a6-895b-4628-9090-d829ac3b8487[1].png [240446] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\4d0d3916-2ab6-4a4e-92d0-a1e0eff1288d[1].png [11684] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\0d0e1342-163f-45eb-8bb4-d115265e2b77[1].png [30320] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\2fc01e4b-0665-4fdb-a210-d72474983b5d[1].png [11581] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\4c1b6862-22c6-4029-8f65-b806b1a2bba9[1].png [53331] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\5a9d2eae-d779-4bae-8675-a6beb2c9045f[1].png [121935] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\8a73937e-a9e1-4ca0-b5de-87a10b699870[1].png [22158] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\4b643f1a-381b-497f-9607-279de3b8b4d4[1].png [12990] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\d66bdb29-0a8c-4abd-b254-f4681f053823[1].png [14572] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\27171256-a42f-41a3-9af0-b8d1cf1bfc07[1].png [315758] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\43ffbaab-03ec-40df-933c-56add8fa8d84[1].png [21226] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\9f7e4c5d-d11d-4050-84ab-4190f2c028aa[1].png [15877] O61 - LFC: 28/08/2013 - 20:20:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\871aaca7-1dbb-43c4-b64e-e4a7ce09f120[1].png [35933] O61 - LFC: 28/08/2013 - 20:20:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\3bfbfcc2-bfbf-443c-8f43-4891245e3bc8[1].png [477298] O61 - LFC: 28/08/2013 - 20:20:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\3c19a863-fed7-47a9-999d-bdd6fb6d29e6[1].png [49120] O61 - LFC: 28/08/2013 - 20:20:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\82bbc4b1-eb8d-45b1-b522-04479342b033[1].png [481668] O61 - LFC: 28/08/2013 - 20:20:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\c9469f10-e45b-4369-a3ee-a1cad0441479[1].png [233395] O61 - LFC: 28/08/2013 - 20:20:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.3838[1].png [1044] O61 - LFC: 28/08/2013 - 20:20:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\5\5-https???wscont.apps.microsoft.com?winstore?6.2?667?WW?fr-fr?0?12?Updates.htm.dat [632] O61 - LFC: 28/08/2013 - 20:20:55 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.220[1].png [1249] O61 - LFC: 28/08/2013 - 20:20:55 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.421[1].png [509] O61 - LFC: 28/08/2013 - 20:21:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\5\5-https???wscont.apps.microsoft.com?winstore?6.2?667?WW?fr-fr?0?12?Installs.htm.dat [798] O61 - LFC: 28/08/2013 - 20:21:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\LocalState\LiveComm.etl [131072] O61 - LFC: 28/08/2013 - 20:21:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\LocalState\LiveComm\nouser\120712-0049\DBStore\livecomm.edb [6307840] O61 - LFC: 28/08/2013 - 20:21:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\LocalState\Microsoft.WindowsLive.ModernPhotos.etl [1048576] O61 - LFC: 28/08/2013 - 20:21:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\LocalState\ModernPhoto.edb [54558720] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.24304[1].png [2160] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.65723[1].png [1443] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.62528[1].png [721] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.77234[1].png [1593] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.31234[1].png [3763] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.69207[1].png [2857] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.8779[1].png [1857] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.100387[1].png [3209] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.133471[1].png [5178] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.25964[1].png [2105] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.26307[1].png [217] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.33823[1].png [4425] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.60019[1].png [918] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.81725[1].png [6178] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.88398[1].png [3512] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.90296[1].png [2803] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.159562[1].png [1471] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.179685[1].png [3284] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.192573[1].png [3233] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.217849[1].png [1124] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.222202[1].png [6869] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.31332[1].png [371] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.40563[1].png [1353] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.53497[1].png [333] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.96908[1].png [3871] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.143019[1].png [4148] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.161432[1].png [2162] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.179790[1].png [3639] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.180181[1].png [5631] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.221119[1].png [5986] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.33611[1].png [4603] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.83456[1].png [480] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.8977[1].png [1857] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.125796[1].png [908] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.153623[1].png [5254] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.18912[1].png [6887] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.208828[1].png [4207] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.35115[1].png [8256] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.53748[1].png [856] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.83826[1].png [724] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.85716[1].png [1461] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.119694[1].png [4930] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.120846[1].png [4394] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.15932[1].png [3977] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.164495[1].png [1885] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.173084[1].png [1789] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.184255[1].png [3036] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.199588[1].png [4625] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.205187[1].png [1598] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.23748[1].png [3036] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.64267[1].png [3305] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.81244[1].png [3265] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.86219[1].png [3649] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.9043[1].png [2343] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.114175[1].png [3077] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.119599[1].png [4188] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.169500[1].png [1671] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.189602[1].png [1740] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.203632[1].png [4131] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.49738[1].png [567] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.55971[1].png [2774] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.61136[1].png [5455] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.79916[1].png [855] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.93372[1].png [1810] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.95244[1].png [5060] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.96575[1].png [4401] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.97142[1].png [6714] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.149379[1].png [1268] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.188333[1].png [9375] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.202051[1].png [5945] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.226469[1].png [783] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.22828[1].png [723] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.35560[1].png [3614] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.36078[1].png [1630] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.39406[1].png [5734] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.44944[1].png [4174] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.48820[1].png [4045] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.49725[1].png [1043] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.49731[1].png [1043] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.55779[1].png [353] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.92740[1].png [1658] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.106644[1].png [900] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.113138[1].png [22366] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.127476[1].png [4643] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.145015[1].png [1644] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.209605[1].png [1363] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.24491[1].png [326] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.4335[1].png [1179] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.47673[1].png [4106] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.58626[1].png [6796] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.61569[1].png [7594] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.86924[1].png [2500] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.93034[1].png [5060] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.97264[1].png [1546] O61 - LFC: 28/08/2013 - 20:23:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.76915[1].png [2237] O61 - LFC: 28/08/2013 - 20:25:18 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheConfigurationCache\19ae72c1-13b5-4274-a586-9c3dd2a184f3 [49812] O61 - LFC: 28/08/2013 - 20:25:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheAlertsCache\6ab6074d-5ee5-4f53-9889-21c6c40f3ffa [153] O61 - LFC: 28/08/2013 - 20:25:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheCurrentConditionsAndForecastCache\25ddcdc0-6882-4e15-8021-c47c93f7ab78 [16330] O61 - LFC: 28/08/2013 - 20:25:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheHistoricalWeatherCache\b02cfa38-3bdd-46cd-b39c-11793e08f0c0 [5558] O61 - LFC: 28/08/2013 - 20:25:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheWeatherInteractiveMapsClusterCache\a0f8e03a-30c8-4cbf-ac95-1cfa25249804 [2466] O61 - LFC: 28/08/2013 - 20:25:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\fb7dc987-d6c0-4864-8de9-8820cf2de992 [127159] O61 - LFC: 28/08/2013 - 20:25:24 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [302] O61 - LFC: 28/08/2013 - 20:25:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheHourlyForecastWeatherCache\078abc6e-b7f1-433e-9bb6-facc1ffdac50 [28747] O61 - LFC: 28/08/2013 - 20:25:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\2d40a9e5-0c81-4fe6-9841-99598afb52af [135126] O61 - LFC: 28/08/2013 - 20:25:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\4bfe6eb6-13f9-452e-9553-e90117afc181 [113419] O61 - LFC: 28/08/2013 - 20:25:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\eb171de2-476b-4c50-b153-a871b6d985d3 [19259] O61 - LFC: 28/08/2013 - 20:25:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\INetCache\POU4AFVC\adsadclient31[2].htm [0] O61 - LFC: 28/08/2013 - 20:25:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\INetCookies\Z2D3ANBH.txt [101] O61 - LFC: 28/08/2013 - 20:25:54 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] O61 - LFC: 28/08/2013 - 20:25:54 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheAlertsCache\_CacheMetadata.bin [759] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheConfigurationCache\_CacheMetadata.bin [344] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheCurrentConditionsAndForecastCache\_CacheMetadata.bin [2904] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheGetStartedCache\_CacheMetadata.bin [506] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheHistoricalWeatherCache\_CacheMetadata.bin [1611] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheHourlyForecastWeatherCache\_CacheMetadata.bin [2304] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\_CacheMetadata.bin [13605] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheNearbyResortsByLatLongCache\_CacheMetadata.bin [1019] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheNextStepsCache\_CacheMetadata.bin [502] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheStaticMapsImageCache\_CacheMetadata.bin [8655] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheTileCache\_CacheMetadata.bin [1477] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheTodayAdFeedCache\_CacheMetadata.bin [539] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheVirtualEarthSearchByNameCache\_CacheMetadata.bin [684] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheWeatherInteractiveMapsClusterCache\_CacheMetadata.bin [1167] O61 - LFC: 28/08/2013 - 20:27:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\InstrumentationData.xml [226] O61 - LFC: 28/08/2013 - 20:28:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\LocalState\LiveComm.etl [131072] O61 - LFC: 28/08/2013 - 20:28:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\LocalState\LiveComm\nouser\120712-0049\DBStore\livecomm.edb [6307840] O61 - LFC: 28/08/2013 - 20:28:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat [8192] O61 - LFC: 29/08/2013 - 12:26:17 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\bl.db [5120] O61 - LFC: 29/08/2013 - 12:26:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero StartSmart\cache\flg.dat [4] O61 - LFC: 29/08/2013 - 12:27:02 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\Nero Burning ROM\UserImages.bmp [43062] O61 - LFC: 29/08/2013 - 16:44:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero StartSmart\cache\ext.dat [1132923] O61 - LFC: 29/08/2013 - 16:44:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero StartSmart\cache\nrm.dat [817674] O61 - LFC: 29/08/2013 - 17:34:04 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\NeroVision\NeroVisionLog.txt [375] O61 - LFC: 29/08/2013 - 17:34:04 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\NeroVision\nve-am.bin [96] O61 - LFC: 29/08/2013 - 17:34:04 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\NeroVision\nve-mtmpl.bin [12] O61 - LFC: 29/08/2013 - 17:34:04 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\NeroVision\nve-vobmap.bin [48] O61 - LFC: 29/08/2013 - 17:45:43 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\HTML Help\hh.dat [8854] O61 - LFC: 29/08/2013 - 18:11:11 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\WinRAR\version.dat [12] O61 - LFC: 29/08/2013 - 18:25:08 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Platform\c37edb77e02bfdeca95467376cde2c94\Platform.ni.dll.aux [7468] O61 - LFC: 29/08/2013 - 18:25:08 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Platform\c37edb77e02bfdeca95467376cde2c94\Platform.ni.dll [6905856] O61 - LFC: 29/08/2013 - 18:45:33 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF8FCC70BAF\Disc_00123601-0002-0010-D99D-AFF8FCC70BAF\Info\FRA\Disc_Info_User.xml [1859] O61 - LFC: 29/08/2013 - 18:46:02 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\LocalData\Disc_00123601-0002-0010-D99D-AFF8FCC70BAF\Chapter\Title00\Chapter_Info.xml [973] O61 - LFC: 29/08/2013 - 18:46:03 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\LocalData\Disc_00123601-0002-0010-D99D-AFF8FCC70BAF\Chapter\Title00\ch005.JPG [41714] O61 - LFC: 29/08/2013 - 18:46:08 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF8FCC70BAF\Disc_00123601-0002-0010-D99D-AFF8FCC70BAF\Info\thumbnail.JPG [54756] O61 - LFC: 29/08/2013 - 18:46:09 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF8FCC70BAF\Info\FilmWatch_Info_User.xml [444] O61 - LFC: 29/08/2013 - 19:14:04 -SHA- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\AppCache\4K5O2AJ1\container.dat [0] O61 - LFC: 29/08/2013 - 19:19:16 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Windows Live\uxcore_WLXPhotoGalleryRepair_00.etl [8192] O61 - LFC: 29/08/2013 - 19:19:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Windows Live\uxcore_WLXPhotoGallery_00.etl [8192] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\background.html [100] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\background.js [1236] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\contentscript.js [2579] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\icon128.png [21925] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\icon16.png [764] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\icon48.png [4143] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\manifest.json [1086] O61 - LFC: 30/08/2013 - 11:37:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\Settings\settings.dat [262144] O61 - LFC: 30/08/2013 - 11:44:31 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\SID.db [2810] O61 - LFC: 30/08/2013 - 11:44:31 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\SII.db [98] O61 - LFC: 30/08/2013 - 11:44:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\idx\_22.cfs [50713] O61 - LFC: 30/08/2013 - 11:44:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\idx\deletable [4] O61 - LFC: 30/08/2013 - 11:44:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\idx\segments [28] O61 - LFC: 30/08/2013 - 11:44:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\is2.db [73728] O61 - LFC: 30/08/2013 - 11:59:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\crawlercfg.dat [3074] O61 - LFC: 30/08/2013 - 12:01:29 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\ImgBurn\Graph Data Files\hp_DVD-RAM_GH82N_R204_VENDREDI-30-AOÛT-2013_13-00_TDK601saku.ibg [11502] O61 - LFC: 30/08/2013 - 12:01:41 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\CyberLink\PowerDVD10\Remix\Circle.png [424] O61 - LFC: 30/08/2013 - 12:01:41 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\CyberLink\PowerDVD10\Remix\LineGreen.png [144] O61 - LFC: 30/08/2013 - 12:01:41 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\CyberLink\PowerDVD10\Remix\TextAnimation.png [1754] O61 - LFC: 30/08/2013 - 12:01:47 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF5FCC70BAA\Disc_00123601-0002-0010-D99D-AFF5FCC70BAA\Info\FRA\Disc_Info_User.xml [1859] O61 - LFC: 30/08/2013 - 12:02:20 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\LocalData\Disc_00123601-0002-0010-D99D-AFF5FCC70BAA\Chapter\Title00\Chapter_Info.xml [973] O61 - LFC: 30/08/2013 - 12:03:06 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Misc\Resuming_Info.bin [3584] O61 - LFC: 30/08/2013 - 12:03:06 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Misc\Resuming_Info.map [525] O61 - LFC: 30/08/2013 - 12:03:06 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF5FCC70BAA\Disc_00123601-0002-0010-D99D-AFF5FCC70BAA\Info\thumbnail.JPG [45491] O61 - LFC: 30/08/2013 - 12:03:07 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF5FCC70BAA\Info\FilmWatch_Info_User.xml [444] O61 - LFC: 30/08/2013 - 12:03:10 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\PowerDVD10\JumpList\JumpList.xml [172] O61 - LFC: 30/08/2013 - 12:06:24 ---A- . (...) -- C:\Users\Angélique\AppData\default.pls [42] O61 - LFC: 30/08/2013 - 12:10:52 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Excel12.pip [1544] O61 - LFC: 30/08/2013 - 12:36:00 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\4Free\Video Converter 3\action_new.js [289] O61 - LFC: 30/08/2013 - 14:38:22 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [302] O61 - LFC: 30/08/2013 - 14:38:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\features25ec7526-bd61-4d98-afe1-e0e03835f365[1].json [13048] O61 - LFC: 30/08/2013 - 14:38:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-Featured-https???next-services.apps.microsoft.com?browse?6.2.9200-1?667?c?FR?Featured?10810363.dat [7512] O61 - LFC: 30/08/2013 - 14:38:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-HomePageData-https???next-services.apps.microsoft.com?browse?6.2.9200-1?667?fr-FR_fr-FR?c?FR?cp?10011709?HomePageData?pt?x64?lf?1?os?edition?type.dat [2604] O61 - LFC: 30/08/2013 - 14:38:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\c646e50b-19b8-498e-aace-14894d499c4d[1].png [9851] O61 - LFC: 30/08/2013 - 14:38:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-Topic-https???next-services.apps.microsoft.com?browse?6.2.9200-1?667?fr-FR_fr-FR?c?FR?Topic?10788021.dat [26292] O61 - LFC: 30/08/2013 - 14:38:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\52bb6939-95fc-4420-bddd-1e9e9b07b6c0[1].png [59275] O61 - LFC: 30/08/2013 - 14:38:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\5b3e5e9f-4c47-4031-a41c-0a6ea150647d[1].png [69589] O61 - LFC: 30/08/2013 - 14:38:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\c8291738-8d74-43a7-a578-3ad3422e2cf7[1].png [103645] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.5410[2].png [2182] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\6ecc9322-f0e1-4fed-b5ea-de2577630813[1].png [10644] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\bda43080-d4a3-43eb-8ad4-431905d9d384[1].png [238975] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\3e2a2a5e-e73d-489f-9518-192240ed2bbc[1].png [104997] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\afd4e7cd-d9c0-4419-a91c-6ae41abba94a[1].png [18410] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\ef9ca4bf-49e7-4174-8a62-4dc66e5b9dab[1].png [95864] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\9b4ac61e-fffc-43fd-b915-1ab1281d8887[1].png [6868] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\c6c4942b-9515-4c0a-8f2c-bc4ec60e8936[1].png [32524] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\fa373634-3305-4627-bb37-16ec19b90fd0[1].png [28826] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\084944b0-bb5b-41a0-b764-ba5c3ff9e7af[1].png [348995] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\4cf6207c-39cc-48ea-9e8b-fffc8859dcb8[1].png [14763] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\65ec3112-c90a-488f-a367-4453f38d985f[1].png [35467] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\11ad9b83-0b12-461a-bca0-9e571a279407[1].png [112484] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\4ab968b7-1e60-4b6b-a36b-f9b0b3143eea[1].png [46992] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\58de5df5-6b01-47af-a624-cb2a95c07df3[1].png [36930] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\5db57a4c-447d-47fb-9026-3f957efdc5a5[1].png [10353] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\b39f286b-20ca-49e8-b178-0009e593de39[1].png [9347] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\69631937-6980-4157-be44-4572f7542968[1].png [9136] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\019cfe70-1dcd-4ae0-8563-ce0df60e2fff[1].png [8719] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\3a26f5e7-4e0c-4841-a7c1-48bcce891157[1].png [126004] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\681f5256-69d3-4bf2-b0c0-3f8bf082d26e[1].png [43104] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\cb48a29d-5b05-4ff7-8970-062f39c34077[1].png [22686] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\d56c97d7-aefb-4db5-9a51-335bef474244[1].png [17537] O61 - LFC: 30/08/2013 - 14:38:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\1bd1ce17-8417-4f8e-aefe-0173e41b3a8e[1].png [183262] O61 - LFC: 30/08/2013 - 14:38:30 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\92aaf530-5f84-4d93-893e-3174130db403[1].png [372705] O61 - LFC: 30/08/2013 - 14:38:30 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\5013c294-1616-4428-be48-8611bf2697a2[1].png [615158] O61 - LFC: 30/08/2013 - 14:38:36 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-ReviewList-https???next-services.apps.microsoft.com?4R?6.2.9200-1?667?fr-FR?m?FR?Apps?a665892e-2670-4120-a088-c5ab2e23e4a9?Reviews?all?s?date?1?pn?1.dat [8144] O61 - LFC: 30/08/2013 - 14:38:37 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.221547[1].png [4165] O61 - LFC: 30/08/2013 - 14:38:52 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] O61 - LFC: 30/08/2013 - 14:38:52 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] O61 - LFC: 30/08/2013 - 14:39:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.3940[1].png [853] O61 - LFC: 30/08/2013 - 14:39:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.4069[1].png [388] O61 - LFC: 30/08/2013 - 14:39:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.4250[1].png [836] O61 - LFC: 30/08/2013 - 14:39:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.4043[1].png [265] O61 - LFC: 30/08/2013 - 14:40:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\5\5-https???wscont.apps.microsoft.com?winstore?6.2?667?WW?fr-fr?0?12?Topic.htm.dat [802] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.139531[1].png [1298] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.175126[1].png [429] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.102667[1].png [6136] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.127924[1].png [4687] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.178206[1].png [1319] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.32547[1].png [6078] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.64010[1].png [3105] O61 - LFC: 30/08/2013 - 14:40:55 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\2\2-GetUpdateList.dat [0] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.197935[1].png [3816] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.201568[1].png [996] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.45587[1].png [910] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.31359[1].png [1803] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.184277[1].png [5055] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.56267[1].png [2889] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.132657[1].png [876] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.79567[1].png [4946] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.14806[1].png [5906] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.30554[1].png [6250] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.48945[1].png [8355] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.64579[1].png [5005] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.85988[1].png [2167] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.21060[1].png [2048] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.50274[1].png [938] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.157156[1].png [6706] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.159630[1].png [4665] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.64167[1].png [9246] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.19068[1].png [339] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.220640[1].png [5415] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.744[1].png [1493] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.79455[1].png [4855] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.110261[1].png [2474] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.124088[1].png [1282] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.5209[1].png [2772] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.6543[1].png [1139] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.125969[1].png [6414] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.25739[1].png [3759] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.338[1].png [1698] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.169087[1].png [1765] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.2019[1].png [5355] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.212150[1].png [9988] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.215110[1].png [5273] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.216808[1].png [1908] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.65901[1].png [7302] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.711[1].png [2593] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.77947[1].png [7526] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.102051[1].png [1795] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.185543[1].png [4559] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.56443[1].png [1639] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.56689[1].png [5783] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.5834[1].png [3009] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.8769[1].png [6307] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.9208[1].png [1405] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.220639[1].png [5000] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.220641[1].png [6027] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.2361[1].png [3866] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.44377[1].png [2288] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.7400[1].png [6873] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.761[1].png [7986] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.9005[1].png [1245] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.117800[1].png [3391] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.121411[1].png [3060] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.125944[1].png [6959] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.173132[1].png [2143] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.17800[1].png [3295] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.17852[1].png [3135] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.19054[1].png [3222] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.31763[1].png [1903] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.102000[1].png [7116] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.107842[1].png [5961] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.152424[1].png [6331] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.190228[1].png [6011] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.212267[1].png [2028] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.214356[1].png [2516] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.21506[1].png [3172] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.47712[1].png [3777] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.5167[1].png [7455] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.73253[1].png [937] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.85275[1].png [5767] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.92133[1].png [8498] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.100837[1].png [2182] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.12214[1].png [8806] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.166223[1].png [5837] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.197334[1].png [5338] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.221916[1].png [10038] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.33760[1].png [2201] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.78469[1].png [2202] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.9635[1].png [3633] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.99950[1].png [8106] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.142589[1].png [8876] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.20291[1].png [5802] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.2596[1].png [4014] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.37033[1].png [1703] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.46028[1].png [8679] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.46257[1].png [8440] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.48343[1].png [2025] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.5932[1].png [4304] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.70889[1].png [2860] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.85076[1].png [7031] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.109571[1].png [4345] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.120214[1].png [3038] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.1774[1].png [3717] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.19061[1].png [10339] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.220638[1].png [6161] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.220643[1].png [8014] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.46647[1].png [10071] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.60008[1].png [10188] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.66599[1].png [6335] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.752[1].png [1192] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.96413[1].png [7504] O61 - LFC: 30/08/2013 - 14:42:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-ReviewList-https???next-services.apps.microsoft.com?4R?6.2.9200-1?667?fr-FR?m?FR?Apps?8b86b19a-7c3d-4caa-a8f1-295a832c7423?Reviews?all?s?date?1?pn?1.dat [6190] O61 - LFC: 30/08/2013 - 14:42:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\PEGI_12[1].png [5147] O61 - LFC: 30/08/2013 - 14:42:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\PEGI_gambling[1].png [17957] O61 - LFC: 30/08/2013 - 14:42:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\1\1-StartService.dat [0] O61 - LFC: 30/08/2013 - 14:42:55 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8 [1891] O61 - LFC: 30/08/2013 - 14:42:55 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [302] O61 - LFC: 30/08/2013 - 14:42:55 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 [290] O61 - LFC: 30/08/2013 - 14:42:56 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF [1582] O61 - LFC: 30/08/2013 - 14:42:58 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4 [1891] O61 - LFC: 30/08/2013 - 14:42:59 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_2FFE778CED2FD9BBAB74B5314F3440CA [1999] O61 - LFC: 30/08/2013 - 14:42:59 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F [21415] O61 - LFC: 30/08/2013 - 14:42:59 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092 [727] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_2FFE778CED2FD9BBAB74B5314F3440CA [414] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4 [426] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8 [430] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF [404] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.107869[1].png [7431] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.16781[1].png [8977] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.2207[1].png [2829] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.31040[1].png [3447] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.61711[1].png [2734] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.87960[1].png [10572] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.110994[1].png [3980] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.170653[1].png [9460] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.212273[1].png [7807] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.88789[1].png [7586] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.153289[1].png [8672] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.192860[1].png [2918] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.223854[1].png [9183] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.28826[1].png [7664] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.40240[1].png [4089] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.46083[1].png [10242] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.57142[1].png [10182] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.21499[1].png [2978] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.215730[1].png [4403] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.5065[1].png [5978] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.52008[1].png [6236] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.5875[1].png [2583] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.75629[1].png [1035] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.82970[1].png [870] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.94208[1].png [8961] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.156723[1].png [1182] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.182382[1].png [3485] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.25893[1].png [1513] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.40915[1].png [9992] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.100856[1].png [3477] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.150843[1].png [8477] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.64232[1].png [10423] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.81519[1].png [7222] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.91790[1].png [9589] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.92213[1].png [8265] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.102002[1].png [6108] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.18967[1].png [6737] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.225610[1].png [1797] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.60836[1].png [3462] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.81124[1].png [9125] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.101437[1].png [5696] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.151635[1].png [7945] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.187413[1].png [4216] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.73768[1].png [9332] O61 - LFC: 30/08/2013 - 14:43:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-ReviewList-https???next-services.apps.microsoft.com?4R?6.2.9200-1?667?fr-FR?m?FR?Apps?fcf02d0b-229a-4f8e-9d8e-59e1e44bdd81?Reviews?all?s?date?1?pn?1.dat [5454] O61 - LFC: 30/08/2013 - 14:44:30 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Data\history.dat [676] O61 - LFC: 30/08/2013 - 19:10:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\avgchrome\avgp [1531] O61 - LFC: 30/08/2013 - 19:36:51 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Preferences [1531] O61 - LFC: 30/08/2013 - 20:28:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Garmin\Express.exe_Url_44vgoklnmwzol3f5bx0zhrwgflwejvvx\2.2.17.0\user.config [1345] O61 - LFC: 30/08/2013 - 20:56:58 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-30 (21-53-19).txt [6296] O61 - LFC: 31/08/2013 - 08:39:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Toolbar Cache\7.5.4413.1752\fr\translate_element.js.content [2381] O61 - LFC: 31/08/2013 - 08:39:44 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Google\Local Search History\google%2Eweb.w [0] O61 - LFC: 31/08/2013 - 09:18:59 ---A- . (.AVG Technologies.) -- C:\Users\Angélique\Downloads\avg_avct_stb_all_2013_3392_cm10.exe [4491824] O61 - LFC: 31/08/2013 - 09:26:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgcfg.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgcore.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgupd.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:33 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\update\download\avg13infoavi.ctf [3401] O61 - LFC: 31/08/2013 - 09:26:33 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\update\download\avg13infowin.ctf [25228] O61 - LFC: 31/08/2013 - 09:26:39 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgupd.log.1 [262237] O61 - LFC: 31/08/2013 - 09:26:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\fixcfg.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:41 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\AVG2013\cfgall\fixcfg.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgdecider.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgmsgdisp.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgui.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\krnlapi.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\lng.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:51 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgual.log.lock [0] O61 - LFC: 31/08/2013 - 09:27:03 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgidpagentmonitor.log.lock [0] O61 - LFC: 31/08/2013 - 09:27:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgpostinst.log.lock [0] O61 - LFC: 31/08/2013 - 09:28:22 ---A- . (.Nicolas Coolman.) -- C:\Users\Angélique\Downloads\ZHPDiag2.exe [5074768] O61 - LFC: 31/08/2013 - 09:31:18 ---A- . (.Nicolas Coolman.) -- C:\Users\Angélique\Downloads\ZHPDiag2 (1).exe [5074768] O61 - LFC: 31/08/2013 - 09:31:51 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\AVG2013\cfgall\usergui.cfg [201] O61 - LFC: 31/08/2013 - 09:32:50 ---A- . (.Nicolas Coolman.) -- C:\Users\Angélique\Downloads\ZHPDiag2 (2).exe [5074768] O61 - LFC: 31/08/2013 - 09:58:09 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Word12.pip [1684] O61 - LFC: 31/08/2013 - 10:09:49 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\DOCUMENTS.LNK [931] O61 - LFC: 31/08/2013 - 10:09:49 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\ZHP http.LNK [1073] O61 - LFC: 31/08/2013 - 10:09:49 --H-- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Recent\index.dat [52] O61 - LFC: 31/08/2013 - 10:21:39 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\AVG2013\cfgall\userawacs.cfg [1058] O61 - LFC: 31/08/2013 - 11:44:20 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\AVG2013\cfgall\userguistate.cfg [13290] O61 - LFC: 31/08/2013 - 11:44:58 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-31 (12-44-50).txt [2112] O61 - LFC: 31/08/2013 - 12:51:16 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\Settings\settings.dat [262144] O61 - LFC: 31/08/2013 - 13:12:36 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5038539795.data [746] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-31 (12-45-36).txt [3308] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3658079246.data [717] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3658079246.quar [272] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5038539795.quar [218] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5883828453.data [745] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5883828453.quar [218] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6058261763.data [742] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6058261763.quar [302] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\9522302565.data [747] O61 - LFC: 31/08/2013 - 13:12:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\9522302565.quar [366] O61 - LFC: 31/08/2013 - 13:14:04 --HA- . (...) -- C:\Users\Angélique\AppData\Local\IconCache.db [212644] O61 - LFC: 31/08/2013 - 13:15:48 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\fr.orange.assistancelivebox\Local Store\ALB.db [9216] O61 - LFC: 31/08/2013 - 13:16:03 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\RedboxLog.txt [2806] O61 - LFC: 31/08/2013 - 13:16:55 ---A- . (...) -- C:\Users\Angélique\AppData\Local\ATI\ACE\Manifest.Bin [28165] O61 - LFC: 31/08/2013 - 13:16:55 ---A- . (...) -- C:\Users\Angélique\AppData\Local\ATI\ACE\Manifest.xml [20325] O61 - LFC: 31/08/2013 - 13:17:48 ---A- . (...) -- C:\Users\Angélique\AppData\Local\ATI\ACE\Profiles.xml [42756] O61 - LFC: 31/08/2013 - 13:18:43 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Hewlett-Packard\HP Connected Remote\data\WMC_module.sdf [1294336] O61 - LFC: 31/08/2013 - 13:18:43 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Hewlett-Packard\HP Connected Remote\data\WMP_module.sdf [98304] ~ 1 Fichiers temporaires (Temporary files) ~ Files: 544 Scanned in 00mn 17s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ ADS: Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ FASS Keys: 18 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: SearchScopes [HKCU] {1F5FCB9E-ADA9-1BD5-483B-01DE7B7C09D9} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://r.orange.fr ~ Keys: Scanned in 00mn 00s ---\\ Enumère les fichiers Crack & Keygen (CKF) (O82) C:\Users\Angélique\Desktop\DOCUMENTS\LOGICIELS\Acdsee 9\keygen.exe C:\Users\Angélique\Desktop\DOCUMENTS\LOGICIELS\Acdsee 9\keygen.exe ~ Files: Scanned in 00mn 24s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [190976] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [309248] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1366016] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1156096] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99840] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à distance.) -- C:\Windows\System32\rasmans.dll [358400] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [107520] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [62976] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [438784] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [305664] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [3241472] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [826368] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [565760] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [894464] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151552] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [105472] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1285632] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [219648] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [80896] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134144] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [291328] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [97792] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [190976] O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1964544] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [47104] O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [207872] O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Microsoft.) -- C:\Windows\System32\ncasvc.dll [161792] O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [180224] ~ Services: 34 Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.F7A7DA530618C3700A449FE7971DB924] [SPRF][12/08/2013] (.VSO Software - Helper driver to facilitate play of cd backups.) -- C:\Users\Angélique\AppData\Roaming\ezplay.sys [118400] [MD5.16E53BFC96CE14021C0E07EB1C198478] [SPRF][16/08/2013] (...) -- C:\Users\Angélique\AppData\Roaming\inst.exe [99384] [MD5.AF7CE12C4F3DC8CB2B07685C916BBCFE] [SPRF][16/08/2013] (.VSO Software - low level access layer for CD/DVD/BD devices.) -- C:\Users\Angélique\AppData\Roaming\pcouffin.sys [82816] [MD5.4C47469F47FD9F8437B62A86F6E0874F] [SPRF][06/08/2013] (...) -- C:\Users\Angélique\Desktop\adw cleaner.exe [666633] ~ Files: 4 Scanned in 00mn 00s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "vm-monitoring-rpc" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "vm-monitoring-dcom" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMP-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC-EPMapper" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Netlogon-TCP-RPC-In" | In - None - P6 - FALSE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\System32\lsass.exe O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "ProximityUxHost-Sharing-In-TCP-NoScope" | In - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe O87 - FAEL: "ProximityUxHost-Sharing-Out-TCP-NoScope" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-DAS-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnPHost-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-DAS-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-In-UDP-NoScope" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-UDP-LocalSubnetScope" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-Out-UDP-NoScope" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-Out-UDP-LocalSubnetScope" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-RTSP-NoScope" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-RTSP-LocalSubnetScope" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-RTSP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-SSDP-Discovery-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-QWave-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-QWave-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-QWave-In-TCP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-QWave-Out-TCP-PlayToScope" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TPMVSCMGR-Server-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe O87 - FAEL: "TPMVSCMGR-Server-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TPMVSCMGR-Server-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe O87 - FAEL: "TPMVSCMGR-Server-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-TERMSRV-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{D0EEDCE1-6C83-4E6F-B638-C85BEB4B07F2}" | Out - None - P6 - TRUE | .(.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe O87 - FAEL: "{8E69D0AE-9BC0-4FAD-BDE2-D20203C0ADC7}" | In - None - P6 - TRUE | .(.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe O87 - FAEL: "{81955369-CC12-4422-8606-2DF490DEC746}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{B454371A-BA66-4D57-BAAD-7CB781711119}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{FC45E6EF-FB98-436F-B097-5848614493CC}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{CC7C2CFD-804D-416D-AA14-F2CC775DE384}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{ACAFA6CD-09EB-4FC0-B868-26CA527B6EE6}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDirector 10.) -- c:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.exe O87 - FAEL: "{84EA5ECD-83C2-4E41-AFBC-B9A88FCC7F2F}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDVD 10.0.) -- c:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.exe O87 - FAEL: "{ABAD49F1-4903-43BF-A303-4353B3079C02}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{9C8468E8-3B35-4D4E-8213-329EC33C6AEB}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{5709C097-9E43-4A22-A3B1-CDB34E3FEDBF}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{ED219049-9F8B-40DF-8C13-3F10A00559B8}" | In - None - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{3ABB40F7-8B42-4D32-B156-7124108ACD41}" | In - None - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{4D8CC59A-4A31-4E35-ABE9-C54DBCDEC5AA}" | In - None - P6 - TRUE | .(.Pas de propriétaire - DedicarzService.) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\DedicarzService.exe O87 - FAEL: "{D6C15D61-926C-41DF-8673-099104E449E8}" | In - None - P17 - TRUE | .(.Pas de propriétaire - DedicarzService.) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\DedicarzService.exe O87 - FAEL: "{B9FA8142-B500-4AC0-8A47-475AF1B2261C}" | In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\LiveboxManager.exe O87 - FAEL: "{AD3D31EA-0E52-424B-A2A5-60ECB75B9750}" | In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\LiveboxManager.exe O87 - FAEL: "{9423C1B9-F57E-4DAF-9F77-C25544C80BBF}" | In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\PluginLivebox.exe O87 - FAEL: "{64FDBE31-6051-4749-A9FC-4C60CF512EF5}" | In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\PluginLivebox.exe O87 - FAEL: "{D4996458-157C-4E4A-96DD-43C53A39D465}" | In - Private - P6 - TRUE | .(.France Telecom SA - Orange Upd@te.) -- C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O87 - FAEL: "{2ED2139B-5397-407A-9AFB-1BC2180EFB1A}" | In - Private - P17 - TRUE | .(.France Telecom SA - Orange Upd@te.) -- C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O87 - FAEL: "{D3635B5F-820F-48C8-87F1-7C714DEA8D8B}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe O87 - FAEL: "{E1E9BEC5-045B-42F3-AFC0-97AB83814342}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe O87 - FAEL: "{059100E3-0710-4485-8B26-C39330ADD3D8}" | In - None - P17 - TRUE | .(.Hewlett-Packard - HP Update Client.) -- C:\Program Files (x86)\HP\hp software update\hpwucli.exe O87 - FAEL: "{301ABDDE-327E-4409-B1BE-E8DE3F033D86}" | In - None - P17 - TRUE | .(.Hewlett-Packard Company - HP Device Detection.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe O87 - FAEL: "{6A5BDA1C-5EF9-4C4E-8E3F-3A391AE38D14}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe O87 - FAEL: "{AB3D12D1-C83C-409A-89D1-8C560CE01A64}" | In - Private - P6 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe O87 - FAEL: "{5E06AC13-41B4-4E6B-8331-67EBC0697203}" | In - Private - P17 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe O87 - FAEL: "{7D63D2AA-FE0C-48CC-AF3B-134C94C07178}" | In - Private - P6 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Diagnostics.) -- C:\Program Files (x86)\AVG\AVG2013\avgdiagex.exe O87 - FAEL: "{50FE1AD7-7568-42AB-A5A2-FD12D39D083C}" | In - Private - P17 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Diagnostics.) -- C:\Program Files (x86)\AVG\AVG2013\avgdiagex.exe O87 - FAEL: "{3110491E-63E2-4281-A45B-57E4455917B7}" | In - Private - P6 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Installer Application.) -- C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe O87 - FAEL: "{834B9735-E7FA-4803-BD14-B9C34B3A9FF7}" | In - Private - P17 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Installer Application.) -- C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe O87 - FAEL: "{4D7A4382-54E4-4A1A-8346-4D45D795529B}" | In - Private - P6 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\AVG2013\avgemca.exe O87 - FAEL: "{5D8DA2C2-F3F8-463A-A96D-AB0A7A9DE6C6}" | In - Private - P17 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\AVG2013\avgemca.exe ~ Firewall: 222 Scanned in 00mn 00s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "00004159070000000000000000F01FEC" . (.Microsoft Office.) -- C:\windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe O90 - PUC: "0694AF70830BBE9498B1F95939A05A44" . (.HP Customer Experience Enhancements.) -- C:\windows\Installer\{07FA4960-B038-49EB-891B-9F95930AA544}\ARPPRODUCTICON.exe O90 - PUC: "0BF8916BEE36E17EE1BE08FF74CC79B2" . (.Catalyst Control Center Graphics Previews Common.) -- c:\windows\Installer\{B6198FB0-63EE-E71E-1EEB-80FF47CC972B}\ARPPRODUCTICON.exe O90 - PUC: "1038C85769625584FA5435B4210089A0" . (.Samsung Kies.) -- C:\windows\Installer\{758C8301-2696-4855-AF45-534B1200980A}\ARPPRODUCTICON.exe O90 - PUC: "114202EE62C28E947948B11CBD7FED69" . (.HP Support Assistant.) -- C:\windows\Installer\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}\ARPPRODUCTICON.exe O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon O90 - PUC: "1EE84710D8DF80740B2D5607A9D20EDB" . (.Garmin Express.) -- C:\windows\Installer\{01748EE1-FD8D-4708-B0D2-65709A2DE0BD}\Garmin.ico O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico O90 - PUC: "2D6F4B0BEA2FA1544969F6F2A698B723" . (.PowerDirector.) -- c:\windows\Installer\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\ARPPRODUCTICON.exe O90 - PUC: "42C6FBF1Df1C10144AB2C065F4E9E897" . (.Media Suite.) -- c:\windows\Installer\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.03) - Français.) -- C:\windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O90 - PUC: "6D00A044A005D5B90E3384948D371F85" . (.ccc-utility64.) -- c:\windows\Installer\{440A00D6-500A-9B5D-E033-4849D873F158}\ARPPRODUCTICON.exe O90 - PUC: "701043F6AA9F6C745BC43C1AF91155F3" . (.Hewlett-Packard ACLM.NET v1.2.1.1.) -- C:\windows\Installer\{6F340107-F9AA-47C6-B54C-C3A19F11553F}\ARPPRODUCTICON.exe O90 - PUC: "7241E1804E66EEC4DE10379666BC5DD4" . (.AMD Catalyst Install Manager.) -- c:\windows\Installer\{081E1427-66E4-4CEE-ED01-736966CBD54D}\ARPPRODUCTICON.exe O90 - PUC: "92568FD15CBBFF4571190D07298ADC1E" . (.AMD VISION Engine Control Center.) -- c:\windows\Installer\{1DF86529-BBC5-54FF-1791-D07092A8CDE1}\ARPPRODUCTICON.exe O90 - PUC: "951EFF34991388141ADC261966DA0163" . (.Nero 7 Premium.) -- C:\windows\Installer\{43FFE159-3199-4188-A1CD-629166AD1036}\ARPPRODUCTICON.exe O90 - PUC: "A4432684C93A7984CA4D1AEB5D61C3A5" . (.PhotoDirector.) -- c:\windows\Installer\{4862344A-A39C-4897-ACD4-A1BED5163C5A}\ARPPRODUCTICON.exe O90 - PUC: "AD1B71B0BA6770D48B8EDF06166ECB5A" . (.Garmin Express Tray.) -- C:\windows\Installer\{0B17B1DA-76AB-4D07-B8E8-FD6061E6BCA5}\express.ico O90 - PUC: "B15E587D3EB674747AE7FE8280F1EFDA" . (.Elevated Installer.) -- C:\windows\Installer\{D785E51B-6BE3-4747-A77E-EF28081FFEAD}\express.ico O90 - PUC: "B43A342FF7BA56047B078BB567C742C7" . (.HP Connected Remote.) -- c:\windows\Installer\{F243A34B-AB7F-4065-B770-B85B767C247C}\_853F67D554F05449430E7E.exe O90 - PUC: "BA0A2B44E214C8F40B851D8EEACCFD5F" . (.PowerRecover.) -- c:\windows\Installer\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}\ARPPRODUCTICON.exe O90 - PUC: "BE824E2CE6110C14E9482BD29ECC4AF2" . (.HP Registration Service.) -- c:\windows\Installer\{C2E428EB-116E-41C0-9E84-B22DE9CCA42F}\ARPPRODUCTICON.exe O90 - PUC: "C8454747654E8184E80DA4F100FE771A" . (.Catalyst Control Center - Branding.) -- c:\windows\Installer\{7474548C-E456-4818-8ED0-4A1F00EF77A1}\ARPPRODUCTICON.exe O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- c:\windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe O90 - PUC: "D1BF956E69AFBBDD1FB59EFE6F7194E8" . (.Catalyst Control Center Localization All.) -- c:\windows\Installer\{E659FB1D-FA96-DDBB-F15B-E9EFF617498E}\ARPPRODUCTICON.exe O90 - PUC: "D276F30548C6A844F8F8B43CA58C4314" . (.AMD APP SDK Runtime.) -- c:\windows\Installer\{503F672D-6C84-448A-8F8F-4BC35AC83441}\ARPPRODUCTICON.exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "D84D78A2FDF3df1479DC1A3E07FEFF2E" . (.Power2Go.) -- c:\windows\Installer\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\ARPPRODUCTICON.exe O90 - PUC: "DE532CED4A8571542A874CE1D8EABAB3" . (.PowerDVD.) -- c:\windows\Installer\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\ARPPRODUCTICON.exe O90 - PUC: "E8E7104CB7B833618BF4F535AAEE04AD" . (.Catalyst Control Center InstallProxy.) -- c:\windows\Installer\{C4017E8E-8B7B-1633-B84F-5F53AAEE40DA}\ARPPRODUCTICON.exe ~ Update Products: 148 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.9D1FC3737A86F6B516152DFF025F2FC7] [WIS][30/07/2013] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\266e1.msi [26112] [MD5.C133F19570415BEC44B8403A15BD4E9A] [WIS][29/04/2011] (.Builds the Destinations MSI - Builds the Destinations MSI.) -- C:\Windows\Installer\509b7.msi [523776] [MD5.28D9DD3E46DC577765A40C3EBF2B5927] [WIS][30/07/2013] (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Windows\Installer\836c01.msi [28672] =>Toolbar.Google [MD5.C8C7E6A37A3ED4E5D4492BD8B2C64CC5] [WIS][04/08/2013] (.Kodak EasyShare software - Kodak EasyShare software.) -- C:\Windows\Installer\c048c.msi [333312] ~ WIS: 150 Scanned in 00mn 05s ---\\ Etat général des services not Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 11/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 13/09/2012 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SR - | Auto 04/07/2013 4939312 | (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe SR - | Auto 23/07/2013 283136 | (avgwd) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SR - | Auto 10/06/2013 1966960 | (Dedicarz Service) . (...) - C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\DedicarzService.exe SR - | Auto 22/07/2013 219480 | (Garmin Core Update Service) . (.Garmin Ltd or its subsidiaries.) - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe SS - | Auto 30/07/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 30/07/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 30/07/2013 194032 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SR - | Auto 27/09/2012 86528 | (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe SR - | Auto 12/10/2012 35744 | (HPConnectedRemote) . (.Hewlett-Packard.) - c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe SR - | Demand 12/10/2012 29696 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll (hpqcxs08) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SR - | Auto 12/10/2012 29696 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll (hpqddsvc) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SS - | Demand 10/08/2012 1001376 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe SS - | Demand 14/03/2007 779824 | (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe SR - | Auto 12/10/2012 29696 | C:\Windows\System32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SR - | Auto 21/05/2013 144368 | (NIS) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe SS - | Demand 12/03/2007 271920 | (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe SS - | Auto 18/09/2012 1082016 | (Orange update Core Service) . (.France Telecom SA.) - C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe SR - | Auto 12/10/2012 29696 | C:\Windows\System32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SR - | Auto 06/06/2013 333824 | (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\STacSV64.exe SS - | Demand 00\00\0000 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe SS - | Demand 12/10/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 05s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by Angélique at 31/08/2013 14:25:23 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Angélique at 31/08/2013 14:25:25 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : v2.12869 - (31/08/2013) Clés trouvées (Keys found) : 3 Valeurs trouvées (Values found) : 1 Dossiers trouvés (Folders found) : 0 Fichiers trouvés (Files found) : 3 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4D91-8333-CF10577473F7}] =>Toolbar.Google^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] =>Toolbar.Google^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] =>Toolbar.Google^ [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^ C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google^ [HKCU\Software\yahooinstall] =>Toolbar.Yahoo^ C:\Windows\Installer\836c01.msi =>Toolbar.Google^ ~ Additionnel Scan: 305416 Items scanned in 00mn 20s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com32384220-toolbar-google =>Toolbar.Google ~ http://nicolascoolman.webs.com30268689-toolbar-yahoo =>Toolbar.Yahoo ~ MSI: 2 link(s) detected in 00mn 20s End of the scan (2229 lines in 01mn 46s)(2)