~ Rapport de ZHPDiag v2013.8.31.39 - Nicolas Coolman (31/08/2013) ~ Lancé par Angélique (31/08/2013 10:34:54) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Traduit par Nicolas Coolman ~ Etat de la version : Version à jour. ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Activate by user ---\\ Navigateurs Internet MSIE: Internet Explorer v10.0.9200.16660 (Defaut) ---\\ Informations sur les produits Windows ~ Langage: Français Windows 8 Home Premium Edition, 64-bit (Build 9200) Windows Server License Manager Script : OK ~ ion : Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : MY2MG Windows License : OK ~ Windows Remaining Initializations Number : 998 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection du système AVG 2013 v13.0.3222 Malwarebytes Anti-Malware version 1.75.0.1300 Norton Internet Security v20.4.0.40 Windows Defender W8 ---\\ Logiciels d'optimisation du système CCleaner v4.04 =>Piriform Ltd ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 11 Plugin Adobe Reader XI ---\\ Informations sur le système ~ Processor: AMD64 Family 21 Model 16 Stepping 1, AuthenticAMD ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 3479 MB (54% free) System Restore: Activé (Enable) System drive C: has 600 GB (65%) free of 913 GB ---\\ Mode de connexion au système ~ Computer Name: PC-HP-ANGELIQUE ~ User Name: Angélique ~ All Users Names: Angélique, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppData% : C:\Users\Angélique\AppData\Roaming\ ~ %Desktop% : C:\Users\Angélique\Desktop\ ~ %Favorites% : C:\Users\Angélique\Favorites\ ~ %LocalAppData% : C:\Users\Angélique\AppData\Local\ ~ %StartMenu% : C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C:\ Hard drive, Flash drive, Thumb drive (Free 600 Go of 913 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 17 Go) E:\ CD-ROM drive (Not Inserted) F:\ Floppy drive, Flash card reader, USB Key (Not Inserted) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 37 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.0E8E6463F81C80AFBED533E0F1F8895D] - (.Microsoft Corporation - Explorateur Windows.) (.01/06/2013 - 12:34:21.) -- C:\Windows\Explorer.exe [2391280] [MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608] [MD5.AC155DD9BD1E6D3B740826A4D1C68AAE] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/07/2013 - 06:13:37.) -- C:\Windows\System32\wininet.dll [2241024] [MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120] [MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408] [MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640] [MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840] [MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544] [MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080] [MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784] [MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.12/10/2012 - 02:42:21.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168] [MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640] [MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920] [MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688] [MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776] [MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544] [MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984] [MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928] [MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712] [MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248] [MD5.78A5BBA3819FFFC62FFEC3E2220D102D] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.01/06/2013 - 12:26:33.) -- C:\Windows\system32\Drivers\volsnap.sys [327936] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes musiques (My Musics) : 3/9 ~ Mes Favoris (My Favorites) : 1/107 ~ Mes Documents (My Documents) : 1/2172 ~ Mon Bureau (My Desktop) : 2/55969 ~ Menu demarrer (Programs) : 1/33 ~ Hidden Files: Scanned in 00mn 26s ---\\ Processus lancés au démarrage du système [MD5.BB4CEE22CFE1C259F5C4279349EB879C] - (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe [149824] [PID.1736] [MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.3932] [MD5.001D39ABE6B59F021B684CEA1A8266A4] - (...) -- C:\Program Files (x86)\4Free Video Converter\update.exe [36864] [PID.3956] [MD5.6528D7D23AB7EE8374791E9666976429] - (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe [884248] [PID.3980] [MD5.63A2D767B9261B4F33F97BF88F2FB197] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [276328] [PID.2116] [MD5.D658AB1B55127D18DCFBCAC8CAAEA522] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.3196] [MD5.9EDFB86FAA07BFED3C3D00211FAB6D82] - (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\dist\ST2.exe [13446464] [PID.2996] [MD5.2FB757B35C94B1C1C65BA35E4E7EC0F2] - (.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe [174952] [PID.3860] [MD5.724CB7A116F7E1A67009D751BCF86586] - (.CyberLink - CyberLink MediaLibray Service.) -- c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120] [PID.3516] [MD5.F01A418BDDFC14D60E463C50CABC7750] - (.Hewlett-Packard Co. - HP CUE Alert Popup Window Objects.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe [565096] [PID.3396] [MD5.B2F0B501A7C017F21C4B4417623895BD] - (.Hewlett-Packard - GPCore COM object.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe [367976] [PID.1620] [MD5.1BF9D6476061B31CD7FC2BF848529A56] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368] [PID.3640] [MD5.CF0B46A34780C3B4E3AF1297217A80BD] - (.Microsoft Corporation - Internet Low-Mic Utility Tool.) -- C:\Program Files (x86)\Internet Explorer\IELowutil.exe [222208] [PID.5176] [MD5.288D8A54FE326AE26AD43F348E646147] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411440] [PID.7100] [MD5.36142F4057158C4269A94594C68C9381] - (.AVG Technologies CZ, s.r.o. - AVG Configuration Management Application.) -- C:\Program Files (x86)\AVG\AVG2013\avgcfgex.exe [328752] [PID.6560] [MD5.E62B9C9E92ABE783DC442FA1CE3517DD] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7854080] [PID.7688] [MD5.7BA1862B8A5698DC5FCFDFF3BC359DE9] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\IEXPLORE.exe [770648] [PID.7800] [MD5.10B01048B1DA075CD1EE27E30B4CF342] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe [308816] [PID.8176] =>Toolbar.Google ~ Processes Running: Scanned in 00mn 01s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Preferences G2 - GCE: Preference [User Data\Default] [kidmhllhjmmmnpbiaihafgchacpmokof] L\x79\x72m\x69x v.1.131 (Activé) ~ Google Browser: 1 Scanned in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20513.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ~ Firefox Browser: 2 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16384 (win8_rtm.120725-1247)) -- C:\Windows\SysWOW64\ieframe.dll ~ IE Browser: 12 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Norton Identity Protection [64Bits] - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection [64Bits] - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (.Symantec Corporation - IPS Browser Helper DLL.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.dll O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll ~ BHO: 5 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Google Toolbar [64Bits] - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{D3028143-6145-4318-99D3-3EDCE54A95A9} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [BeatsOSDApp] . (.Hewlett-Packard - HP Beats.) -- C:\Program Files\IDT\WDM\beats64.exe O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe O4 - HKCU\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd or its subsidiaries - Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [qupdate] . (...) -- C:\Program Files (x86)\4Free Video Converter\update.exe O4 - HKCU\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe O4 - HKCU\..\Run: [NTRedirect] C:\Users\Angélique\AppData\Roaming\BabSolution\Shared\enhancedNT.dll (.not file.) =>Hijacker.BabSolution O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Wow6432Node\Run: [startertv_fr_8] Clé orpheline =>Adware.StarterTV O4 - HKLM\..\Wow6432Node\Run: [AVG_UI] . (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\AVG2013\avgui.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd or its subsidiaries - Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [qupdate] . (...) -- C:\Program Files (x86)\4Free Video Converter\update.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe O4 - HKUS\S-1-5-21-3460665520-1960831872-1863844556-1001\..\Run: [NTRedirect] C:\Users\Angélique\AppData\Roaming\BabSolution\Shared\enhancedNT.dll (.not file.) =>Hijacker.BabSolution ~ Application: Scanned in 00mn 01s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop: Assistance Livebox.lnk . (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe O4 - GS\Desktop: Documents - Raccourci.lnk . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms O4 - GS\Desktop: DVD Shrink 3.2 - Raccourci.lnk . (.DVD Shrink - DVD Shrink 3.2.) -- C:\Program Files (x86)\DVD Shrink\DVD Shrink 3.2.exe O4 - GS\Desktop: ezcddax - Raccourci.lnk . (.Jukka Poikolainen - Easy CD-DA Extractor.) -- C:\Program Files (x86)\Easy CD-DA Extractor 10\ezcddax.exe O4 - GS\Desktop: iexplore - Raccourci.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Desktop: Images - Raccourci.lnk . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Libraries\Pictures.library-ms O4 - GS\Desktop: Microsoft Office Excel 2007.lnk . (...) -- C:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\xlicons.exe O4 - GS\Desktop: Microsoft Office Word 2007.lnk . (...) -- C:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\wordicon.exe O4 - GS\Desktop: Musique - Raccourci.lnk . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Libraries\Music.library-ms O4 - GS\Desktop: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe O4 - GS\Desktop: Téléchargements.lnk . (...) -- C:\Users\Angélique\Downloads O4 - GS\Desktop: Vidéos - Raccourci.lnk . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Libraries\Videos.library-ms O4 - GS\Desktop: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O4 - GS\Desktop: Windows Update - Raccourci.lnk - Clé orpheline ~ Global Startup: Scanned in 00mn 02s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\windows\system32\napinsp.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\windows\system32\NLAapi.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\windows\system32\mswsock.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\windows\system32\winrnr.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll ~ Winsock: 7 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{870C322F-686D-485B-B7FD-A97C039F54FF}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{993CF809-537F-4F29-8B14-6A4AFC9D0528}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{D4BBF431-BD44-4D52-871B-8580313EB529}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{870C322F-686D-485B-B7FD-A97C039F54FF}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{993CF809-537F-4F29-8B14-6A4AFC9D0528}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{D4BBF431-BD44-4D52-871B-8580313EB529}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Titr_HJT34=Protocole additionnel (O18) O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) - C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) - C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe O23 - Service: Bonjour Service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Dedicarz Service (Dedicarz Service) . (.Pas de propriétaire - DedicarzService.) - C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\DedicarzService.exe O23 - Service: Garmin Core Update Service (Garmin Core Update Service) . (.Garmin Ltd or its subsidiaries - Garmin Core Update Service.) - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Connected Remote Service (HPConnectedRemote) . (.Hewlett-Packard - HPConnectedRemoteService.) - c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe O23 - Service: Orange update Core Service (Orange update Core Service) . (.France Telecom SA - Orange Upd@te.) - C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O23 - Service: C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\STacSV64.exe ~ Services: 13 Scanned in 00mn 13s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job [940] =>PUP.DealPly O39 - APT:Automatic Planified Task - C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job [944] =>PUP.DealPly O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1102] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1106] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForAngélique.job [380] [MD5.00000000000000000000000000000000] [APT] [4800] (...) -- C:\Users\Angélique\AppData\Local\Temp\launchie.vbs \\B (.not file.) [0] [MD5.BB4CEE22CFE1C259F5C4279349EB879C] [APT] [AssistanceLivebox] (.Orange.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe [149824] [MD5.E62ED5A7A2F21C5F377F924A33E12792] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3643160] =>Piriform Ltd [MD5.724CB7A116F7E1A67009D751BCF86586] [APT] [CLMLSvc_P2G8] (.CyberLink.) -- c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120] [MD5.CF7927AE082B578E38B82AE6D95B5F90] [APT] [CLVDLauncher] (.CyberLink Corp..) -- c:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [338544] [MD5.00000000000000000000000000000000] [APT] [Dealply] (...) -- C:\Users\Angélique\AppData\Roaming\Dealply\UPDATE~1\UPDATE~1.exe (.not file.) [0] =>PUP.DealPly [MD5.00000000000000000000000000000000] [APT] [DealPlyLiveUpdateTaskMachineCore] (...) -- C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe (.not file.) [0] =>PUP.DealPly [MD5.00000000000000000000000000000000] [APT] [DealPlyLiveUpdateTaskMachineUA] (...) -- C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe (.not file.) [0] =>PUP.DealPly [MD5.00000000000000000000000000000000] [APT] [EPUpdater] (...) -- C:\Users\Angélique\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe (.not file.) [0] =>Hijacker.BabSolution [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForAng‚lique] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [91704] [MD5.C66557728011B83C4FFAE7DD022F99DA] [APT] [Norton WSC Integration] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\WSCStub.exe [163944] [MD5.00000000000000000000000000000000] [APT] [{03B223CC-6C75-415A-A228-FD3CC84E00C8}] (...) -- C:\Program Files (x86)\DIFX\84B2E36983483FEB\DPInst.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{5BCB0E86-D399-4A2E-99F7-2CF4E998EC21}] (...) -- C:\Program Files (x86)\DealPly\uninst.exe (.not file.) [0] =>PUP.DealPly [MD5.00000000000000000000000000000000] [APT] [{6177BAFB-3114-41D8-98DD-A335A84122CA}] (...) -- C:\Games\Iggle Pop!\ZY-IgglePop.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C142BBAB-9CFC-454C-8166-81BE38EE00FC}] (...) -- C:\Users\Angélique\AppData\Roaming\0C1I1L1R1J0M1P0I1G\VuuPC Packages\uninstaller.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C19E9783-013C-4849-AF35-817F8A488A28}] (...) -- C:\Users\Angélique\Desktop\Easy CD-DA Extractor 10\ezcddax.exe (.not file.) [0] [MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [525728] [MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [525728] [MD5.DDFD05786536EF7AA540CC490A9DE3CE] [APT] [Update Check] (.Hewlett-Packard Company.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [592288] [MD5.A6578474FB7265891B76A4A3B0BCC4E9] [APT] [WarrantyChecker] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1553112] [MD5.A6578474FB7265891B76A4A3B0BCC4E9] [APT] [WarrantyChecker_DeviceScan] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1553112] [MD5.7720251986778B402978761589434491] [APT] [Norton Error Analyzer] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [54096] [MD5.7720251986778B402978761589434491] [APT] [Norton Error Processor] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [54096] ~ Scheduled Task: 32 Scanned in 00mn 09s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll ~ Active Setup: 9 Scanned in 00mn 01s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (AVGIDSDriver) . (.AVG Technologies CZ, s.r.o. - IDS Application Activity Monitor Driver..) - C:\Windows\System32\DRIVERS\avgidsdrivera.sys O41 - Driver: (Avgldx64) . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) - C:\Windows\System32\DRIVERS\avgldx64.sys O41 - Driver: (Avgwfpa) . (.AVG Technologies CZ, s.r.o. - AVG Firewall driver.) - C:\Windows\system32\DRIVERS\avgwfpa.sys O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys O41 - Driver: (BHDrvx64) . (.Symantec Corporation - BASH Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\BASHDefs\20130715.001\BHDrvx64.sys O41 - Driver: (ccSet_NIS) . (.Symantec Corporation - Common Client Settings Driver.) - C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: (CLVirtualDrive) . (.CyberLink - It is a virtual device driver which could c.) - C:\Windows\system32\DRIVERS\CLVirtualDrive.sys O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (eeCtrl) . (.Symantec Corporation - Symantec Eraser Control Driver.) - C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys O41 - Driver: (IDSVia64) . (.Symantec Corporation - IDS Core Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\IPSDefs\20130830.001\IDSvia64.sys O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: (SRTSP) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\Drivers\NISx64\1404000.028\SRTSP64.sys O41 - Driver: (SRTSPX) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.sys O41 - Driver: (SymIRON) . (.Symantec Corporation - Iron Driver.) - C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.sys O41 - Driver: (SymNetS) . (.Symantec Corporation - Network Security Driver.) - C:\Windows\system32\Drivers\NISx64\1404000.028\SYMNETS.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys ~ Drivers: 56 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: 4Free Video Converter 3 - (.4Free Studio.) [HKLM][64Bits] -- {7061301A-0D44-432F-859D-AF705DA2C81F}_is1 O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854} O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {081E1427-66E4-4CEE-ED01-736966CBD54D} O42 - Logiciel: AVG 2013 - (.AVG Technologies.) [HKLM][64Bits] -- AVG O42 - Logiciel: AVG 2013 - (.AVG Technologies.) [HKLM][64Bits] -- {4FF9E8AA-D554-4CE7-89F9-B69DAA5A1E98} O42 - Logiciel: AVG 2013 - (.AVG Technologies.) [HKLM][64Bits] -- {6B02D047-A56D-4994-B1F1-53DA6B9885AB} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0A5B39D2-7ED6-4779-BCC9-37F381139DB3} O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader XI (11.0.03) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-572ff7f2-4c68-46f7-a10e-fcff19c6baa3 O42 - Logiciel: Assistance Livebox - (.Orange.) [HKLM][64Bits] -- Assistance Livebox O42 - Logiciel: BankPerfect 7.50 - (.Fabio Chelly.) [HKLM][64Bits] -- BankPerfect O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-175a1c47-c644-458b-840d-ae49669c115a O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: Build-a-lot 4 - Power Source - (.WildTangent.) [HKLM][64Bits] -- WTA-7c71af0c-ff09-45b7-8bc9-f49e1d6e3b19 O42 - Logiciel: CCScore - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {B4B44FE7-41FF-4DAD-8C0A-E406DDA72992} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>Piriform Ltd O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7474548C-E456-4818-8ED0-4A1F00EF77A1} O42 - Logiciel: Connected Music powered by Universal Music Group version 1.0 - (.Snowite.) [HKLM][64Bits] -- {46037DC7-F927-46DF-935F-D6F122BDD34B}_is1 O42 - Logiciel: Cradle of Rome 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-cf862b50-bb57-40e4-aa62-ad0d243cd5b3 O42 - Logiciel: Crazy Chicken Soccer - (.WildTangent.) [HKLM][64Bits] -- WTA-b20352c3-93ef-4897-ad55-6a5a8796e322 O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A} O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {4862344A-A39C-4897-ACD4-A1BED5163C5A} O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Dragon Ball Arcade - (...) [HKLM][64Bits] -- Dragon Ball Arcade O42 - Logiciel: ESSBrwr - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {643EAE81-920C-4931-9F0B-4B343B225CA6} O42 - Logiciel: ESSCDBK - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD} O42 - Logiciel: ESSPCD - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {14D4ED84-6A9A-45A0-96F6-1753768C3CB5} O42 - Logiciel: ESSPDock - (.Nom de votre société.) [HKLM][64Bits] -- {FCDB1C92-03C6-4C76-8625-371224256091} O42 - Logiciel: ESSTOOLS - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {8A502E38-29C9-49FA-BCFA-D727CA062589} O42 - Logiciel: ESScore - (.Nom de votre société.) [HKLM][64Bits] -- {42938595-0D83-404D-9F73-F8177FDD531A} O42 - Logiciel: ESSgui - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {91517631-A9F3-4B7C-B482-43E0068FD55A} O42 - Logiciel: ESSini - (.Nom de votre société.) [HKLM][64Bits] -- {8E92D746-CD9F-4B90-9668-42B74C14F765} O42 - Logiciel: Elevated Installer - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {D785E51B-6BE3-4747-A77E-EF28081FFEAD} O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WTA-343cf0ce-c563-4d18-913b-d64cb8ccacad O42 - Logiciel: Final Drive Fury - (.WildTangent.) [HKLM][64Bits] -- WTA-6528762b-10ca-4107-84a7-a3ba607ab0c4 O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090} O42 - Logiciel: Gardenscapes: Mansion Makeover - (.WildTangent.) [HKLM][64Bits] -- WTA-ce39a07a-0def-4996-8109-9a014d011b66 O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {01748EE1-FD8D-4708-B0D2-65709A2DE0BD} O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {bd9bc494-8cd2-4ae2-92fe-6a3dda9c3ee9} O42 - Logiciel: Garmin Express Tray - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {0B17B1DA-76AB-4D07-B8E8-FD6061E6BCA5} O42 - Logiciel: Garmin Update Service - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {6B6B527F-72AC-426D-821F-39E261CC6297} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} =>Toolbar.Google O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-3a064d19-be21-47b7-b59d-67954b680a86 O42 - Logiciel: HP Connected Music (Meridian - installer) - (.Meridian Audio Ltd.) [HKLM][64Bits] -- StartHPConnectedMusic O42 - Logiciel: HP Connected Remote - (.Hewlett-Packard.) [HKLM][64Bits] -- {F243A34B-AB7F-4065-B770-B85B767C247C} O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} O42 - Logiciel: HP Customer Participation Program 14.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall O42 - Logiciel: HP Imaging Device Functions 14.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions O42 - Logiciel: HP Photosmart C5300 All-In-One Driver Software 14.0 Rel. 6 - (.HP.) [HKLM][64Bits] -- {12440487-BEA5-48CF-A36C-C86F5D350999} O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD} O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {C2E428EB-116E-41C0-9E84-B22DE9CCA42F} O42 - Logiciel: HP Solution Center 14.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE} O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE} O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM][64Bits] -- ImgBurn O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-57e2679c-3836-4680-beb7-c9a2504283cd O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WTA-ac5d8928-63d0-405c-90ae-3fe5ad79c034 O42 - Logiciel: Logiciel Kodak EasyShare - (.Eastman Kodak Company.) [HKLM][64Bits] -- {D32470A1-B10C-4059-BA53-CF0486F68EBC} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} O42 - Logiciel: Mahjongg Artifacts - (.WildTangent.) [HKLM][64Bits] -- WTA-f69c8153-5057-42f2-8d6e-a84135bad88a O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Mystery of Mortlake Mansion - (.WildTangent.) [HKLM][64Bits] -- WTA-743461a0-1e43-4477-9425-e0e229102ef4 O42 - Logiciel: Nero 7 Premium - (.Nero AG.) [HKLM][64Bits] -- {43FFE159-3199-4188-A1CD-629166AD1036} O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM][64Bits] -- NIS O42 - Logiciel: Notification Mail - (.Orange.) [HKLM][64Bits] -- MailNotifier O42 - Logiciel: OfotoXMI - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {B162D0A6-9A1D-4B7C-91A5-88FB48113C45} O42 - Logiciel: Orange update - (.Orange.) [HKLM][64Bits] -- OrangeUpdateManager O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-0aa8df5d-b57f-4830-ae5e-fb63d1d2bef6 O42 - Logiciel: Ranch Rush 2 - Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-c2dc9053-3fb8-456c-aafd-4f7a36da5ba8 O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} O42 - Logiciel: Royal Envoy 2 Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-67b92396-022f-43b7-9a84-0b0636dd7d98 O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} O42 - Logiciel: SFR - (.Eastman Kodak Company.) [HKLM][64Bits] -- {DB02F716-6275-42E9-B8D2-83BA2BF5100B} O42 - Logiciel: SHASTA - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {605A4E39-613C-4A12-B56F-DEFBE6757237} O42 - Logiciel: SKINXSDK - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Ski Challenge 13 (AT) - (...) [HKCU][64Bits] -- sc13-AT_MAIN O42 - Logiciel: TmNationsForever - (.Nadeo.) [HKLM][64Bits] -- TmNationsForever_is1 O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-253138d8-4694-4a9f-a945-eefab5f8c0b9 O42 - Logiciel: VPRINTOL - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {999D43F4-9709-4887-9B1A-83EBB15A8370} O42 - Logiciel: Visual Studio 2010 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {21B133D6-5979-47F0-BE1C-F6A6B304693F} O42 - Logiciel: WIRELESS - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {F9593CFB-D836-49BC-BFF1-0E669A411D9F} O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WTA-dac326c9-a4cb-4adc-9c5d-db6e8d5d4683 O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst O42 - Logiciel: WinRAR 4.20 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Youda Jewel Shop - (.WildTangent.) [HKLM][64Bits] -- WTA-08e75b4b-713b-4255-8593-09b98ca96941 O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-a24172ee-bc94-446a-b1ed-2bf823ca8ce9 O42 - Logiciel: essvatgt - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F} O42 - Logiciel: fflink - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {608D2A3C-6889-4C11-9B54-A42F45ACBFDB} O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} O42 - Logiciel: netbrdg - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {4537EA4B-F603-4181-89FB-2953FC695AB1} O42 - Logiciel: skin0001 - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {5316DFC9-CE99-4458-9AB3-E8726EDE0210} O42 - Logiciel: staticcr - (.EASTMAN KODAK Company.) [HKLM][64Bits] -- {8943CE61-53BD-475E-90E1-A580869E98A2} ~ Logic: 201 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\4Free] [HKCU\Software\7-Zip] [HKCU\Software\ATI] [HKCU\Software\Adkins Resource] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Lyrics_Fan] =>Adware.AddLyrics [HKCU\Software\AppDataLow\Software\MarkAny] [HKCU\Software\AppDataLow\Software\Orange] [HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\ArcSoft] [HKCU\Software\Aurigma] [HKCU\Software\Avg] [HKCU\Software\BankPerfect] [HKCU\Software\Classes] [HKCU\Software\CyberLink] [HKCU\Software\DVD Shrink] [HKCU\Software\DealPlyLive] =>PUP.DealPly [HKCU\Software\Distromatic] [HKCU\Software\Duuqu] =>Toolbar.DeltaSearch [HKCU\Software\FreewareFiles] [HKCU\Software\Gabest] [HKCU\Software\GameHouse] [HKCU\Software\Garmin] [HKCU\Software\Google] [HKCU\Software\Greentube] [HKCU\Software\HP] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IGA] [HKCU\Software\ImgBurn] [HKCU\Software\IvoSoft] [HKCU\Software\JavaSoft] [HKCU\Software\Kodak] [HKCU\Software\Lake] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Macromedia] [HKCU\Software\Macrovision] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MultiStageTrayAgent] [HKCU\Software\Nero] [HKCU\Software\Netscape] [HKCU\Software\Norton] [HKCU\Software\ODBC] [HKCU\Software\Opendisc] [HKCU\Software\Piriform] [HKCU\Software\Poikosoft] [HKCU\Software\Policies] [HKCU\Software\PopCap] =>Adware.PopCap [HKCU\Software\RegisteredApplications] [HKCU\Software\Samsung] [HKCU\Software\Software] [HKCU\Software\Symantec] [HKCU\Software\SystemTools] [HKCU\Software\TeleCharger_v2] [HKCU\Software\Trolltech] [HKCU\Software\VSO] [HKCU\Software\WildTangent] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Wow6432Node] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\ahead] [HKCU\Software\kde.org] [HKCU\Software\mozilla] [HKCU\Software\yahooinstall] =>Toolbar.Yahoo [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\Apple Inc.] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\EnigmaSoftwareGroup] [HKLM\Software\Hewlett-Packard] [HKLM\Software\IDT] [HKLM\Software\Intel] [HKLM\Software\Khronos] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Norton] [HKLM\Software\ODBC] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\RegisteredApplications] [HKLM\Software\SAMSUNG] [HKLM\Software\SoundResearch] [HKLM\Software\Symantec] [HKLM\Software\WinRAR] [HKLM\Software\Wow6432Node\ATI Technologies] [HKLM\Software\Wow6432Node\ATI] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\Ahead] [HKLM\Software\Wow6432Node\AppDataLow] [HKLM\Software\Wow6432Node\Apple Inc.] [HKLM\Software\Wow6432Node\AskTBar] [HKLM\Software\Wow6432Node\Audible] [HKLM\Software\Wow6432Node\Avg] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\CyberLink] [HKLM\Software\Wow6432Node\DealPlyLive] =>PUP.DealPly [HKLM\Software\Wow6432Node\Duuqu] =>Toolbar.DeltaSearch [HKLM\Software\Wow6432Node\Exent] [HKLM\Software\Wow6432Node\Garmin] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\IDT] [HKLM\Software\Wow6432Node\InstallShield] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\Khronos] [HKLM\Software\Wow6432Node\Kodak] [HKLM\Software\Wow6432Node\Lake] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\Nero] [HKLM\Software\Wow6432Node\Norton] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Orange] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Sagem] [HKLM\Software\Wow6432Node\SoftVTU] [HKLM\Software\Wow6432Node\Software] [HKLM\Software\Wow6432Node\Symantec] [HKLM\Software\Wow6432Node\Trad-FR] [HKLM\Software\Wow6432Node\Trymedia Systems] =>Adware.Trymedia [HKLM\Software\Wow6432Node\VSO] [HKLM\Software\Wow6432Node\Vittalia] [HKLM\Software\Wow6432Node\WildTangent] [HKLM\Software\Wow6432Node\WinPcap] [HKLM\Software\Wow6432Node\Wow6432Node] [HKLM\Software\Wow6432Node] ~ Key Software: 224 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 28/08/2013 - 21:05:21 - [113,247] ----D C:\Program Files (x86)\4Free Video Converter O43 - CFD: 01/08/2013 - 07:22:32 - [120,568] ----D C:\Program Files (x86)\Adobe O43 - CFD: 24/05/2013 - 00:38:52 - [2,145] ----D C:\Program Files (x86)\AMD APP O43 - CFD: 24/05/2013 - 00:38:48 - [58,908] ----D C:\Program Files (x86)\ATI Technologies O43 - CFD: 31/08/2013 - 10:25:36 - [117,960] ----D C:\Program Files (x86)\AVG O43 - CFD: 04/08/2013 - 09:24:41 - [0,602] ----D C:\Program Files (x86)\Bonjour O43 - CFD: 29/08/2013 - 17:38:26 - [494,587] ----D C:\Program Files (x86)\Common Files O43 - CFD: 24/05/2013 - 00:45:58 - [2,557] ----D C:\Program Files (x86)\Connected Music powered by Universal Music Group O43 - CFD: 24/05/2013 - 00:54:04 - [-1582,072] ----D C:\Program Files (x86)\CyberLink O43 - CFD: 25/08/2013 - 15:07:21 - [0,934] ----D C:\Program Files (x86)\DVD Shrink O43 - CFD: 26/08/2013 - 20:00:09 - [12,750] ----D C:\Program Files (x86)\Easy CD-DA Extractor 10 O43 - CFD: 03/08/2013 - 19:18:24 - [15,020] ----D C:\Program Files (x86)\Garmin O43 - CFD: 30/07/2013 - 21:54:58 - [25,253] ----D C:\Program Files (x86)\Google O43 - CFD: 30/07/2013 - 20:37:37 - [206,080] ----D C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 05/08/2013 - 17:58:23 - [120,970] ----D C:\Program Files (x86)\HP O43 - CFD: 24/05/2013 - 00:56:53 - [1818,294] ----D C:\Program Files (x86)\HP Games O43 - CFD: 24/05/2013 - 00:44:29 - [0,720] ----D C:\Program Files (x86)\HPConnectedMusic O43 - CFD: 11/08/2013 - 16:27:18 - [3,211] ----D C:\Program Files (x86)\ImgBurn O43 - CFD: 04/08/2013 - 20:45:23 - [166,244] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 16/08/2013 - 20:57:16 - [4,623] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 04/08/2013 - 09:32:33 - [1255,994] ----D C:\Program Files (x86)\Kodak O43 - CFD: 30/08/2013 - 21:51:25 - [13,336] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 07/08/2013 - 20:28:04 - [365,704] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 07/08/2013 - 20:33:07 - [40,851] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 24/05/2013 - 00:58:08 - [5,306] ----D C:\Program Files (x86)\Microsoft SkyDrive O43 - CFD: 24/05/2013 - 00:58:39 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 04/08/2013 - 22:41:06 - [3,554] ----D C:\Program Files (x86)\Microsoft Works O43 - CFD: 31/07/2013 - 20:11:40 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 30/08/2013 - 20:08:27 - [0] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 10/08/2012 - 17:09:11 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 29/08/2013 - 18:08:51 - [375,613] ----D C:\Program Files (x86)\Nero O43 - CFD: 24/05/2013 - 00:59:37 - [368,968] ----D C:\Program Files (x86)\Norton Internet Security O43 - CFD: 24/05/2013 - 00:59:17 - [20,860] ----D C:\Program Files (x86)\NortonInstaller O43 - CFD: 30/07/2013 - 12:54:37 - [1,563] R---D C:\Program Files (x86)\Online Services O43 - CFD: 30/08/2013 - 19:59:53 - [167,684] ----D C:\Program Files (x86)\Orange O43 - CFD: 10/08/2012 - 17:09:11 - [36,536] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 04/08/2013 - 20:45:24 - [258,091] ----D C:\Program Files (x86)\Samsung O43 - CFD: 24/05/2013 - 01:00:14 - [2,444] ----D C:\Program Files (x86)\SymSilent O43 - CFD: 24/05/2013 - 00:56:49 - [66,181] ----D C:\Program Files (x86)\WildGames O43 - CFD: 16/08/2013 - 20:57:24 - [1,038] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 15/08/2013 - 18:16:26 - [86,829] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 02/08/2013 - 23:17:46 - [5,466] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 02/08/2013 - 23:17:46 - [3,494] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 26/07/2012 - 10:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 26/07/2012 - 10:12:59 - [7,243] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 02/08/2013 - 23:17:46 - [5,226] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 26/07/2012 - 10:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 26/07/2012 - 10:12:59 - [0] -SH-D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 31/08/2013 - 10:35:29 - [16,497] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 01/08/2013 - 07:22:34 - [6,289] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 30/07/2013 - 22:49:17 - [45,858] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 29/08/2013 - 18:09:12 - [106,072] ----D C:\Program Files (x86)\Common Files\Ahead O43 - CFD: 04/08/2013 - 09:22:30 - [0,000] ----D C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 24/05/2013 - 00:45:30 - [0,091] ----D C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 31/07/2013 - 20:11:46 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 05/08/2013 - 13:35:13 - [2,453] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 05/08/2013 - 13:35:21 - [1,348] ----D C:\Program Files (x86)\Common Files\HP O43 - CFD: 04/08/2013 - 09:08:54 - [3,363] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 04/08/2013 - 09:32:27 - [3,422] ----D C:\Program Files (x86)\Common Files\Kodak O43 - CFD: 04/08/2013 - 22:41:11 - [237,314] ----D C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 04/08/2013 - 09:31:45 - [0,622] ----D C:\Program Files (x86)\Common Files\MSSoap O43 - CFD: 24/05/2013 - 00:44:25 - [1,416] ----D C:\Program Files (x86)\Common Files\Nikon O43 - CFD: 26/07/2012 - 10:13:01 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 30/07/2013 - 19:02:58 - [0,596] ----D C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 02/08/2013 - 23:17:44 - [41,845] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 24/05/2013 - 00:57:55 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 01/08/2013 - 19:24:59 - [43,806] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 08/08/2013 - 20:48:56 - [150,251] ----D C:\ProgramData\Adobe O43 - CFD: 24/05/2013 - 00:44:36 - [2,558] ----D C:\ProgramData\Apple O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Application Data O43 - CFD: 04/08/2013 - 09:08:01 - [0,011] ----D C:\ProgramData\ArcSoft O43 - CFD: 24/05/2013 - 00:39:54 - [0,000] ----D C:\ProgramData\ATI O43 - CFD: 31/08/2013 - 10:26:21 - [197,428] ----D C:\ProgramData\AVG2013 O43 - CFD: 30/07/2013 - 12:45:17 - [0] --H-D C:\ProgramData\Bureau O43 - CFD: 31/08/2013 - 10:19:53 - [0,000] --H-D C:\ProgramData\Common Files O43 - CFD: 30/07/2013 - 21:31:20 - [0,323] ----D C:\ProgramData\CyberLink O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Desktop O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Documents O43 - CFD: 18/08/2013 - 19:31:02 - [0,000] ----D C:\ProgramData\DriverGenius O43 - CFD: 25/08/2013 - 15:09:30 - [0,077] ----D C:\ProgramData\DVD Shrink O43 - CFD: 03/08/2013 - 19:18:20 - [611,118] ----D C:\ProgramData\Garmin O43 - CFD: 30/07/2013 - 21:54:51 - [0,012] ----D C:\ProgramData\Google O43 - CFD: 30/07/2013 - 12:50:31 - [6,723] ----D C:\ProgramData\Hewlett-Packard O43 - CFD: 05/08/2013 - 13:39:25 - [26,280] ----D C:\ProgramData\HP O43 - CFD: 05/08/2013 - 13:36:24 - [0,009] ----D C:\ProgramData\HP Product Assistant O43 - CFD: 24/05/2013 - 00:53:39 - [0,108] ----D C:\ProgramData\install_clap O43 - CFD: 04/08/2013 - 09:27:54 - [83,648] ----D C:\ProgramData\Kodak O43 - CFD: 30/08/2013 - 21:51:23 - [6,454] ----D C:\ProgramData\Malwarebytes O43 - CFD: 30/07/2013 - 12:45:17 - [0] --H-D C:\ProgramData\Menu Démarrer O43 - CFD: 31/08/2013 - 10:30:56 - [9,061] ----D C:\ProgramData\MFAData O43 - CFD: 05/08/2013 - 18:11:57 - [-1811,999] -S--D C:\ProgramData\Microsoft O43 - CFD: 16/08/2013 - 20:55:06 - [0,055] ----D C:\ProgramData\Microsoft Help O43 - CFD: 24/05/2013 - 00:58:02 - [0] ----D C:\ProgramData\Microsoft SkyDrive O43 - CFD: 30/07/2013 - 12:45:17 - [0] --H-D C:\ProgramData\Modèles O43 - CFD: 29/08/2013 - 18:08:51 - [4,830] ----D C:\ProgramData\Nero O43 - CFD: 30/07/2013 - 13:18:54 - [429,776] ----D C:\ProgramData\Norton O43 - CFD: 24/05/2013 - 00:59:17 - [1,343] ----D C:\ProgramData\NortonInstaller O43 - CFD: 30/07/2013 - 22:53:55 - [0,051] ----D C:\ProgramData\Orange O43 - CFD: 03/08/2013 - 19:18:14 - [14,181] ----D C:\ProgramData\Package Cache O43 - CFD: 31/07/2013 - 07:34:23 - [0,127] ----D C:\ProgramData\PRICache O43 - CFD: 31/07/2013 - 18:26:04 - [0,136] ----D C:\ProgramData\Recovery O43 - CFD: 26/07/2012 - 11:45:49 - [0,001] ----D C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 04/08/2013 - 20:25:30 - [11,112] ----D C:\ProgramData\Samsung O43 - CFD: 04/08/2013 - 22:37:44 - [0,017] ----D C:\ProgramData\SoundResearch O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Start Menu O43 - CFD: 24/05/2013 - 00:54:04 - [2,129] ----D C:\ProgramData\Temp O43 - CFD: 26/07/2012 - 09:22:08 - [0] --H-D C:\ProgramData\Templates O43 - CFD: 04/08/2013 - 22:15:23 - [0,007] ----D C:\ProgramData\TrackMania O43 - CFD: 05/08/2013 - 13:39:13 - [0,000] ----D C:\ProgramData\WEBREG O43 - CFD: 30/07/2013 - 12:56:30 - [-46,523] ----D C:\ProgramData\WildTangent O43 - CFD: 24/05/2013 - 00:39:08 - [39,643] ----D C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF} O43 - CFD: 28/08/2013 - 21:05:34 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\4Free O43 - CFD: 02/08/2013 - 16:42:00 - [12,529] ----D C:\Users\Angélique\AppData\Roaming\Adobe O43 - CFD: 29/08/2013 - 13:27:02 - [0,062] ----D C:\Users\Angélique\AppData\Roaming\Ahead O43 - CFD: 04/08/2013 - 09:07:51 - [0,002] ----D C:\Users\Angélique\AppData\Roaming\Arcsoft O43 - CFD: 30/07/2013 - 12:56:11 - [0] ----D C:\Users\Angélique\AppData\Roaming\ATI O43 - CFD: 31/08/2013 - 10:26:41 - [0,013] ----D C:\Users\Angélique\AppData\Roaming\AVG2013 O43 - CFD: 26/08/2013 - 20:35:32 - [0,107] ----D C:\Users\Angélique\AppData\Roaming\BankPerfect O43 - CFD: 03/08/2013 - 17:46:38 - [3,826] ----D C:\Users\Angélique\AppData\Roaming\CyberLink O43 - CFD: 30/07/2013 - 22:50:54 - [0,009] ----D C:\Users\Angélique\AppData\Roaming\fr.orange.assistancelivebox O43 - CFD: 03/08/2013 - 22:50:48 - [0] ----D C:\Users\Angélique\AppData\Roaming\Garmin O43 - CFD: 31/07/2013 - 07:41:28 - [0] ----D C:\Users\Angélique\AppData\Roaming\Google O43 - CFD: 30/07/2013 - 13:00:49 - [1,423] ----D C:\Users\Angélique\AppData\Roaming\Hewlett-Packard O43 - CFD: 05/08/2013 - 13:40:23 - [0,134] ----D C:\Users\Angélique\AppData\Roaming\HP O43 - CFD: 27/08/2013 - 21:00:10 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\HP Support Assistant O43 - CFD: 02/08/2013 - 19:05:23 - [0] ----D C:\Users\Angélique\AppData\Roaming\hpqlog O43 - CFD: 27/08/2013 - 21:00:07 - [0,002] ----D C:\Users\Angélique\AppData\Roaming\HpUpdate O43 - CFD: 30/07/2013 - 19:14:28 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\IDT O43 - CFD: 11/08/2013 - 16:47:04 - [1,993] ----D C:\Users\Angélique\AppData\Roaming\ImgBurn O43 - CFD: 18/08/2013 - 14:27:02 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\KodakCredentialStore O43 - CFD: 30/07/2013 - 18:46:44 - [0,055] ----D C:\Users\Angélique\AppData\Roaming\Macromedia O43 - CFD: 30/08/2013 - 21:51:36 - [33,845] ----D C:\Users\Angélique\AppData\Roaming\Malwarebytes O43 - CFD: 16/08/2013 - 22:33:23 - [5,158] -S--D C:\Users\Angélique\AppData\Roaming\Microsoft O43 - CFD: 11/08/2013 - 14:01:59 - [0] ----D C:\Users\Angélique\AppData\Roaming\MusicNet O43 - CFD: 02/08/2013 - 19:22:25 - [0,041] ----D C:\Users\Angélique\AppData\Roaming\Nero O43 - CFD: 30/08/2013 - 20:00:07 - [0] ----D C:\Users\Angélique\AppData\Roaming\Orange O43 - CFD: 04/08/2013 - 20:26:55 - [1,655] ----D C:\Users\Angélique\AppData\Roaming\Samsung O43 - CFD: 04/08/2013 - 09:10:11 - [0] ----D C:\Users\Angélique\AppData\Roaming\Skinux O43 - CFD: 02/08/2013 - 14:28:17 - [0,016] ----D C:\Users\Angélique\AppData\Roaming\SystemTools O43 - CFD: 31/08/2013 - 10:26:04 - [0] ----D C:\Users\Angélique\AppData\Roaming\TuneUp Software O43 - CFD: 16/08/2013 - 22:15:11 - [0,001] ----D C:\Users\Angélique\AppData\Roaming\Vso O43 - CFD: 30/07/2013 - 19:29:37 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\WebApp O43 - CFD: 30/07/2013 - 21:48:19 - [3,644] ----D C:\Users\Angélique\AppData\Roaming\WildTangent O43 - CFD: 24/08/2013 - 19:55:57 - [0] ----D C:\Users\Angélique\AppData\Roaming\WinBatch O43 - CFD: 29/08/2013 - 19:11:11 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\WinRAR O43 - CFD: 02/08/2013 - 16:42:00 - [0,253] ----D C:\Users\Angélique\AppData\Local\Adobe O43 - CFD: 29/08/2013 - 13:26:25 - [1,990] ----D C:\Users\Angélique\AppData\Local\Ahead O43 - CFD: 30/07/2013 - 12:52:20 - [0] ----D C:\Users\Angélique\AppData\Local\Application Data O43 - CFD: 30/07/2013 - 21:54:22 - [1,579] ----D C:\Users\Angélique\AppData\Local\Apps O43 - CFD: 04/08/2013 - 09:07:51 - [0] ----D C:\Users\Angélique\AppData\Local\ArcSoft O43 - CFD: 30/07/2013 - 12:53:21 - [6,234] ----D C:\Users\Angélique\AppData\Local\assembly O43 - CFD: 30/07/2013 - 12:56:11 - [0,087] ----D C:\Users\Angélique\AppData\Local\ATI O43 - CFD: 31/08/2013 - 10:26:32 - [0,515] ----D C:\Users\Angélique\AppData\Local\Avg2013 O43 - CFD: 30/08/2013 - 20:10:50 - [0,001] ----D C:\Users\Angélique\AppData\Local\avgchrome O43 - CFD: 30/07/2013 - 19:29:02 - [0,002] ----D C:\Users\Angélique\AppData\Local\Cyberlink O43 - CFD: 30/07/2013 - 21:54:33 - [0] ----D C:\Users\Angélique\AppData\Local\Deployment O43 - CFD: 30/07/2013 - 21:33:59 - [202,083] ----D C:\Users\Angélique\AppData\Local\Diagnostics O43 - CFD: 04/08/2013 - 20:31:22 - [88,617] ----D C:\Users\Angélique\AppData\Local\Downloaded Installations O43 - CFD: 26/08/2013 - 19:54:26 - [2,003] ----D C:\Users\Angélique\AppData\Local\ElevatedDiagnostics O43 - CFD: 03/08/2013 - 19:18:30 - [0,001] ----D C:\Users\Angélique\AppData\Local\Garmin O43 - CFD: 24/08/2013 - 12:43:20 - [0,169] ----D C:\Users\Angélique\AppData\Local\Google O43 - CFD: 30/07/2013 - 20:25:43 - [0,010] ----D C:\Users\Angélique\AppData\Local\Hewlett-Packard O43 - CFD: 30/07/2013 - 12:52:20 - [0] ----D C:\Users\Angélique\AppData\Local\Historique O43 - CFD: 05/08/2013 - 13:39:05 - [0,043] ----D C:\Users\Angélique\AppData\Local\HP O43 - CFD: 24/08/2013 - 19:58:26 - [0] ----D C:\Users\Angélique\AppData\Local\HP Quick Start O43 - CFD: 04/08/2013 - 09:10:27 - [0] ----D C:\Users\Angélique\AppData\Local\KodakGallery O43 - CFD: 31/08/2013 - 10:19:53 - [6,901] ----D C:\Users\Angélique\AppData\Local\MFAData O43 - CFD: 25/08/2013 - 15:40:00 - [282,043] ----D C:\Users\Angélique\AppData\Local\Microsoft O43 - CFD: 05/08/2013 - 17:54:39 - [0,194] ----D C:\Users\Angélique\AppData\Local\Microsoft Help O43 - CFD: 30/08/2013 - 20:03:46 - [0,000] ----D C:\Users\Angélique\AppData\Local\Orange O43 - CFD: 11/08/2013 - 09:39:02 - [314,912] ----D C:\Users\Angélique\AppData\Local\Packages O43 - CFD: 30/07/2013 - 12:53:11 - [0,039] ----D C:\Users\Angélique\AppData\Local\Power2Go8 O43 - CFD: 04/08/2013 - 19:04:59 - [0] ----D C:\Users\Angélique\AppData\Local\Programs O43 - CFD: 04/08/2013 - 20:26:54 - [0,017] ----D C:\Users\Angélique\AppData\Local\Samsung O43 - CFD: 04/08/2013 - 19:02:49 - [0] ----D C:\Users\Angélique\AppData\Local\Software O43 - CFD: 31/08/2013 - 10:34:05 - [39,462] ----D C:\Users\Angélique\AppData\Local\Temp O43 - CFD: 30/07/2013 - 12:52:20 - [0] ----D C:\Users\Angélique\AppData\Local\Temporary Internet Files O43 - CFD: 28/08/2013 - 20:40:11 - [2,289] ----D C:\Users\Angélique\AppData\Local\VirtualStore O43 - CFD: 30/07/2013 - 12:58:06 - [62,207] ----D C:\Users\Angélique\AppData\Local\Wild Tangent O43 - CFD: 29/08/2013 - 20:19:16 - [0,039] ----D C:\Users\Angélique\AppData\Local\Windows Live O43 - CFD: 26/07/2012 - 10:13:00 - [0,004] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 26/07/2012 - 10:13:00 - [0,001] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 31/07/2013 - 07:34:27 - [0,000] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 10/08/2013 - 10:08:58 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BankPerfect O43 - CFD: 26/07/2012 - 10:13:00 - [0,000] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 29/08/2013 - 13:07:59 - [0] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Application O43 - CFD: 30/07/2013 - 22:49:33 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Orange O43 - CFD: 04/08/2013 - 19:56:28 - [0,004] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ski Challenge 13 (AT) O43 - CFD: 04/08/2013 - 21:33:01 - [0] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Softendo.com O43 - CFD: 11/08/2013 - 15:52:41 - [0,001] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 26/07/2012 - 10:13:00 - [0,005] R---D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 29/08/2013 - 19:09:58 - [0,003] ----D C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ Program Folder: 192 Scanned in 00mn 33s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.24987394ECE76199E70FF2C7449F278E] - 31/08/2013 - 08:40:52 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.B78CE3C5E428727CD1C78B5EDE7285B3] - 31/08/2013 - 08:38:19 ---A- . (...) -- C:\Windows\WindowsUpdate.log [22403] O44 - LFC:[MD5.0BB97D43299910CBFBA59C461B99B910] - 30/08/2013 - 20:51:23 RSHAD . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 27/08/2013 - 20:01:37 ---A- . (...) -- C:\Windows\SysNative\HP_ActiveX_Patch_NOT_DETECTED.txt [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 27/08/2013 - 20:01:37 RSHAD . (...) -- C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt [0] O44 - LFC:[MD5.9BE8DF2910CEC265FFBD6BA2C61D3784] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1797530] O44 - LFC:[MD5.89741FD208706704C41DCEBD96DF6A06] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [143646] O44 - LFC:[MD5.03D7EF77E2D5066715AC2B2056CD370B] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [170570] O44 - LFC:[MD5.59A6414C45A2C62F21772E9BC2314CBF] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [697824] O44 - LFC:[MD5.E94A50A75D71FCF5C6E4BE3CE53986D6] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [789076] O44 - LFC:[MD5.9BE8DF2910CEC265FFBD6BA2C61D3784] - 26/08/2013 - 19:24:10 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1797530] O44 - LFC:[MD5.89741FD208706704C41DCEBD96DF6A06] - 26/08/2013 - 19:24:10 RSHAD . (...) -- C:\Windows\System32\perfc009.dat [143646] O44 - LFC:[MD5.03D7EF77E2D5066715AC2B2056CD370B] - 26/08/2013 - 19:24:10 RSHAD . (...) -- C:\Windows\System32\perfc00C.dat [170570] O44 - LFC:[MD5.59A6414C45A2C62F21772E9BC2314CBF] - 26/08/2013 - 19:24:10 RSHAD . (...) -- C:\Windows\System32\perfh009.dat [697824] O44 - LFC:[MD5.E94A50A75D71FCF5C6E4BE3CE53986D6] - 26/08/2013 - 19:24:10 RSHAD . (...) -- C:\Windows\System32\perfh00C.dat [789076] O44 - LFC:[MD5.38635D64FD72E553E0ACB119F6B15DFB] - 26/08/2013 - 19:01:13 ---A- . (...) -- C:\Windows\CDPLAYER.UNI [752] O44 - LFC:[MD5.D41B6A7D5AFD924BB0CBF422794D6E63] - 16/08/2013 - 21:19:27 ---A- . (...) -- C:\Windows\hpoins32.dat [201989] O44 - LFC:[MD5.C6ED3939B07D3C44B265E6C578339732] - 16/08/2013 - 21:16:45 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [336584] O44 - LFC:[MD5.C6ED3939B07D3C44B265E6C578339732] - 16/08/2013 - 21:16:45 RSHAD . (...) -- C:\Windows\System32\FNTCACHE.DAT [336584] O44 - LFC:[MD5.560A9357766AB0CDF38143EA3A66DA64] - 16/08/2013 - 20:50:18 ---A- . (.Microsoft Corporation - Contrôle d’édition de texte enrichi, v7.5.) -- C:\Windows\SysNative\msftedit.dll [2839552] O44 - LFC:[MD5.560A9357766AB0CDF38143EA3A66DA64] - 16/08/2013 - 20:50:18 ---A- . (.Microsoft Corporation - Contrôle d’édition de texte enrichi, v7.5.) -- C:\Windows\System32\msftedit.dll [2839552] O44 - LFC:[MD5.3884117CE4FEC35E4A1A7A62918B1F34] - 16/08/2013 - 20:50:18 ---A- . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\SysNative\IKEEXT.DLL [1156096] O44 - LFC:[MD5.3884117CE4FEC35E4A1A7A62918B1F34] - 16/08/2013 - 20:50:18 RSHAD . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1156096] O44 - LFC:[MD5.58B7BEACEB8B19A9698FE85B76C88ED9] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\SysNative\FWPUCLNT.DLL [381952] O44 - LFC:[MD5.58B7BEACEB8B19A9698FE85B76C88ED9] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\System32\FWPUCLNT.DLL [381952] O44 - LFC:[MD5.814F4A0774F08F580D71FA7E880CD454] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - DLL de spouleur local.) -- C:\Windows\SysNative\localspl.dll [1025024] O44 - LFC:[MD5.12DE753B04FE08427BC4BA3133BFB1DB] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\SysNative\wwanconn.dll [414208] O44 - LFC:[MD5.45A2DE308D27355F0F0D13499C8207DA] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\SysNative\gdi32.dll [1300480] O44 - LFC:[MD5.45A2DE308D27355F0F0D13499C8207DA] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [1300480] O44 - LFC:[MD5.73133A0C0CA63817BFF2CB9DE65B64E7] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\SysNative\BFE.DLL [723968] O44 - LFC:[MD5.7A102E79DD8F1032BCB76064E2E50C4A] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\SysNative\oleaut32.dll [778752] O44 - LFC:[MD5.7A102E79DD8F1032BCB76064E2E50C4A] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\oleaut32.dll [778752] O44 - LFC:[MD5.3CA8372E7D9C2EF8314C0C965F6B8427] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\SysNative\win32k.sys [4039680] O44 - LFC:[MD5.C89FAB42CD5FD672506031D941529A74] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\SysNative\WerFault.exe [439488] O44 - LFC:[MD5.C89FAB42CD5FD672506031D941529A74] - 16/08/2013 - 20:50:17 ---A- . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\System32\WerFault.exe [439488] O44 - LFC:[MD5.814F4A0774F08F580D71FA7E880CD454] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - DLL de spouleur local.) -- C:\Windows\System32\localspl.dll [1025024] O44 - LFC:[MD5.12DE753B04FE08427BC4BA3133BFB1DB] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\System32\wwanconn.dll [414208] O44 - LFC:[MD5.73133A0C0CA63817BFF2CB9DE65B64E7] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\BFE.DLL [723968] O44 - LFC:[MD5.3CA8372E7D9C2EF8314C0C965F6B8427] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [4039680] O44 - LFC:[MD5.09039F3D5A23483010AA6F5FE388F3C4] - 16/08/2013 - 20:50:17 RSHAD . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [327512] O44 - LFC:[MD5.8E5271A1AC463276023B39BC846F299C] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - API Microsoft Smart Card.) -- C:\Windows\SysNative\WinSCard.dll [230912] O44 - LFC:[MD5.8E5271A1AC463276023B39BC846F299C] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - API Microsoft Smart Card.) -- C:\Windows\System32\WinSCard.dll [230912] O44 - LFC:[MD5.9A218BB2D3EC7CAAC84351D59204013A] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Affiche les fichiers actuellement ouverts.) -- C:\Windows\SysNative\openfiles.exe [77312] O44 - LFC:[MD5.9A218BB2D3EC7CAAC84351D59204013A] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Affiche les fichiers actuellement ouverts.) -- C:\Windows\System32\openfiles.exe [77312] O44 - LFC:[MD5.B8BF7450DC17F940DD3B1A853F62724F] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Application d’assistance Netsh de la platef.) -- C:\Windows\SysNative\nshwfp.dll [888832] O44 - LFC:[MD5.B8BF7450DC17F940DD3B1A853F62724F] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Application d’assistance Netsh de la platef.) -- C:\Windows\System32\nshwfp.dll [888832] O44 - LFC:[MD5.0ABF97013CA7400213DCBDC7B499AF85] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Base Multimedia Extension API DLL.) -- C:\Windows\SysNative\winmmbase.dll [183808] O44 - LFC:[MD5.0ABF97013CA7400213DCBDC7B499AF85] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Base Multimedia Extension API DLL.) -- C:\Windows\System32\winmmbase.dll [183808] O44 - LFC:[MD5.827AE73CD7CB3A8292A50EF39169071F] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - DLL API MCI.) -- C:\Windows\SysNative\winmm.dll [115712] O44 - LFC:[MD5.827AE73CD7CB3A8292A50EF39169071F] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - DLL API MCI.) -- C:\Windows\System32\winmm.dll [115712] O44 - LFC:[MD5.AF1349386D4C6786EF4E34FACEF15042] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) -- C:\Windows\SysNative\wcmsvc.dll [263680] O44 - LFC:[MD5.FF2E7B5DEF4C46870E8D00B80BBDB1DC] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\SysNative\Wwanadvui.dll [370688] O44 - LFC:[MD5.93BBEFF2825AFD81651EA2D938AAFCCA] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Gestionnaire multimédia WWan.) -- C:\Windows\SysNative\wwanmm.dll [543744] O44 - LFC:[MD5.DB5C9AD31E50EDC86C6072EDE1E89692] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Microsoft Windows Location API.) -- C:\Windows\SysNative\LocationApi.dll [312832] O44 - LFC:[MD5.DB5C9AD31E50EDC86C6072EDE1E89692] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Microsoft Windows Location API.) -- C:\Windows\System32\LocationApi.dll [312832] O44 - LFC:[MD5.6D9E07436B6646EC8F7EFFD39B6BA288] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Service de configuration automatique WWAN.) -- C:\Windows\SysNative\wwansvc.dll [447488] O44 - LFC:[MD5.8C7D71CE2F03E8CD6F1045D9275E6E1D] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Windows Connection Service Provider DLL.) -- C:\Windows\SysNative\wcmcsp.dll [74240] O44 - LFC:[MD5.97D3B79F36CBD8B70F0D9BA6939D2462] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Windows.Networking.BackgroundTransfer DLL.) -- C:\Windows\SysNative\Windows.Networking.BackgroundTransfer.dll [391168] O44 - LFC:[MD5.97D3B79F36CBD8B70F0D9BA6939D2462] - 16/08/2013 - 20:50:16 ---A- . (.Microsoft Corporation - Windows.Networking.BackgroundTransfer DLL.) -- C:\Windows\System32\Windows.Networking.BackgroundTransfer.dll [391168] O44 - LFC:[MD5.AF1349386D4C6786EF4E34FACEF15042] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) -- C:\Windows\System32\wcmsvc.dll [263680] O44 - LFC:[MD5.FF2E7B5DEF4C46870E8D00B80BBDB1DC] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\System32\Wwanadvui.dll [370688] O44 - LFC:[MD5.FC2B8B06BDBD3B6457F5A3DA9AD2410E] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\Windows\System32\Drivers\msgpioclx.sys [120144] O44 - LFC:[MD5.93BBEFF2825AFD81651EA2D938AAFCCA] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Gestionnaire multimédia WWan.) -- C:\Windows\System32\wwanmm.dll [543744] O44 - LFC:[MD5.630555943E5A3FE21010CE91EC7FC84F] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\HdAudio.sys [341504] O44 - LFC:[MD5.F58B030A0664385C707B8C1C63682041] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\Windows\System32\Drivers\sdbus.sys [195416] O44 - LFC:[MD5.DD7B107B2BB3EE845F57315EF4ECAC9A] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\Windows\System32\Drivers\dumpsd.sys [125784] O44 - LFC:[MD5.6D9E07436B6646EC8F7EFFD39B6BA288] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Service de configuration automatique WWAN.) -- C:\Windows\System32\wwansvc.dll [447488] O44 - LFC:[MD5.25C50F4EDF70D0A831E0566BD181CCF2] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [321536] O44 - LFC:[MD5.BFC7FE4AAEB61317A921871B4085EF4B] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [119040] O44 - LFC:[MD5.3F1F31883EAC9DDDF836ACC6D1DAC36C] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwfs.sys [96512] O44 - LFC:[MD5.8C7D71CE2F03E8CD6F1045D9275E6E1D] - 16/08/2013 - 20:50:16 RSHAD . (.Microsoft Corporation - Windows Connection Service Provider DLL.) -- C:\Windows\System32\wcmcsp.dll [74240] O44 - LFC:[MD5.2CE63B3A60C54BF7421B090429C286B0] - 16/08/2013 - 20:50:15 ---A- . (...) -- C:\Windows\SysNative\ApnDatabase.xml [387583] O44 - LFC:[MD5.2CE63B3A60C54BF7421B090429C286B0] - 16/08/2013 - 20:50:15 RSHAD . (...) -- C:\Windows\System32\ApnDatabase.xml [387583] O44 - LFC:[MD5.19AEF9DE6A175C85DFF87C0ED0AB5386] - 16/08/2013 - 19:52:40 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\SysNative\MRT.exe [78161360] O44 - LFC:[MD5.19AEF9DE6A175C85DFF87C0ED0AB5386] - 16/08/2013 - 19:52:40 RSHAD . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [78161360] ~ Files: 75 Scanned in 01mn 05s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.403A0E83EA7AF4CCBC461ABD6E70DE81] - 02/08/2013 - 14:25:54 ---A- - C:\Windows\Prefetch\AIRAB31.EXE-C05756C1.pf O45 - LFCP:[MD5.6BCFE02497CC1C858C01969CE2040074] - 02/08/2013 - 14:25:54 ---A- - C:\Windows\Prefetch\AIRAB31.TMP-3CBDE53B.pf O45 - LFCP:[MD5.13BAC30B00ACE964BD368AF54408A5C4] - 02/08/2013 - 22:21:53 ---A- - C:\Windows\Prefetch\AgCx_SC4.db O45 - LFCP:[MD5.5822A45F3EBD90A1DB05CF904669D4C4] - 03/08/2013 - 10:59:22 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-4A8148AA.pf O45 - LFCP:[MD5.758FE1EB47C362CC2B00B9A483761ABD] - 04/08/2013 - 08:08:41 ---A- - C:\Windows\Prefetch\IKERNEL.EXE-6FE519E2.pf O45 - LFCP:[MD5.FDAEE175B17363511356859137D4F298] - 04/08/2013 - 08:21:27 ---A- - C:\Windows\Prefetch\IKERNEL.EXE-A20794A6.pf O45 - LFCP:[MD5.3D82277F6BD8A1026749E990B02D01AA] - 05/08/2013 - 12:36:48 ---A- - C:\Windows\Prefetch\HPZSETUP.EXE-2B5A8004.pf O45 - LFCP:[MD5.51E0FEC110D502A07E6039F80AC9E121] - 05/08/2013 - 18:24:41 ---A- - C:\Windows\Prefetch\UPSTV_FR_8.EXE-5FDA6629.pf O45 - LFCP:[MD5.55700F87870D8F1849384188F5162E06] - 08/08/2013 - 19:33:13 ---A- - C:\Windows\Prefetch\AIR5DB0.TMP-143B6F73.pf O45 - LFCP:[MD5.372B4963529D0845B8105C34C65308CA] - 08/08/2013 - 19:33:17 ---A- - C:\Windows\Prefetch\AIR5DB0.EXE-90FB801D.pf O45 - LFCP:[MD5.83BFC50BA1F6D3FAA7110D5419473059] - 08/08/2013 - 19:49:37 ---A- - C:\Windows\Prefetch\AIR5736.TMP-6D6619CC.pf O45 - LFCP:[MD5.DDF78EC3BD0B67A61496D7F673243A47] - 08/08/2013 - 19:51:07 ---A- - C:\Windows\Prefetch\AIR5736.EXE-864EF6F7.pf O45 - LFCP:[MD5.CC94B644EC49C4116E97565CBD6C6A4E] - 08/08/2013 - 19:51:07 ---A- - C:\Windows\Prefetch\PCHEALTHKIT.EXE-FED975ED.pf O45 - LFCP:[MD5.32759ADE9F59EA340932446A90845DA3] - 10/08/2013 - 16:17:50 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.2F3901F35A2728B57349B33009593727] - 10/08/2013 - 16:18:51 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.EB60C1C0F59511C65E9C2CD240B0F3A4] - 11/08/2013 - 12:37:39 ---A- - C:\Windows\Prefetch\ATTRIB.EXE-3DAF7974.pf O45 - LFCP:[MD5.F04ECCCD738BD8C71BD5191E36A197B8] - 11/08/2013 - 14:52:36 ---A- - C:\Windows\Prefetch\CMD.EXE-CD245F9E.pf O45 - LFCP:[MD5.C5BA92B60E19428F41B41E1FA575D6CA] - 11/08/2013 - 18:40:55 ---A- - C:\Windows\Prefetch\AgCx_S4_S-1-5-21-3460665520-1960831872-1863844556-1001.snp.db O45 - LFCP:[MD5.AF85BD913F3E374245634B9660213A21] - 12/08/2013 - 17:37:51 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-B0AD61F1.pf O45 - LFCP:[MD5.BC7CED4A879851A2B83638A8B7BCAFE3] - 12/08/2013 - 18:33:03 ---A- - C:\Windows\Prefetch\BURNENGINE.EXE-F5DEA21B.pf O45 - LFCP:[MD5.F2D8B39E62063499E170B1C94A3583B4] - 14/08/2013 - 12:22:15 ---A- - C:\Windows\Prefetch\SNDVOL.EXE-276AC160.pf O45 - LFCP:[MD5.24EB8D089B94C0B22F5AC7C708203230] - 15/08/2013 - 18:50:49 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F7024BA3.pf O45 - LFCP:[MD5.5F0A0766F5BB04557F50DAB118A843B2] - 16/08/2013 - 20:48:42 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-4A7CF88B.pf O45 - LFCP:[MD5.8348AF76BC167C4B9B194AA92DB035DE] - 16/08/2013 - 21:08:42 ---A- - C:\Windows\Prefetch\BDEXTHOST.EXE-46A5DBB8.pf O45 - LFCP:[MD5.B4BC1B84C8ED7308993F48A8242F8607] - 16/08/2013 - 21:14:12 ---A- - C:\Windows\Prefetch\STARTER.EXE-F9419C8B.pf O45 - LFCP:[MD5.B5CB4DB3FA1559E4ABFDC8181A973209] - 16/08/2013 - 21:14:22 ---A- - C:\Windows\Prefetch\MANAGER.EXE-7E830819.pf O45 - LFCP:[MD5.41B1F34808C61A8F45B7C0CB8AF04F2A] - 16/08/2013 - 21:19:05 ---A- - C:\Windows\Prefetch\HPZSTUB.EXE-D8E6EE91.pf O45 - LFCP:[MD5.2EC523CE80F7D414D6BE1C1B159CB2EC] - 18/08/2013 - 16:13:24 ---A- - C:\Windows\Prefetch\EASYSHARE.EXE-2EBF86BD.pf O45 - LFCP:[MD5.BC9A0716B3D2FA7B5242840FBB11170F] - 18/08/2013 - 20:08:55 ---A- - C:\Windows\Prefetch\MMC.EXE-17F9D1FC.pf O45 - LFCP:[MD5.C34C15D983B9DD8BE7C96AEC791E1989] - 18/08/2013 - 20:15:14 ---A- - C:\Windows\Prefetch\DEVICEPAIRINGWIZARD.EXE-177F0FF1.pf O45 - LFCP:[MD5.C704939246DA33E4133E687F8284C057] - 20/08/2013 - 21:08:18 ---A- - C:\Windows\Prefetch\MMC.EXE-76AE3BBA.pf O45 - LFCP:[MD5.5BD74CB47038CDBBA3D2F0C8E7D4BF75] - 22/08/2013 - 18:56:15 ---A- - C:\Windows\Prefetch\NERO.EXE-80632CC1.pf O45 - LFCP:[MD5.7E5C79741AF233C262323F8CF113CF3E] - 23/08/2013 - 11:17:05 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARMANAGER_80ACC8E3-6644A1C7.pf O45 - LFCP:[MD5.0D9502A61A0B9CCBAE92D27A905CE54D] - 24/08/2013 - 11:42:13 ---A- - C:\Windows\Prefetch\DRIVERSHQ.DRIVERDETECTIVE.CLI-95280BF7.pf O45 - LFCP:[MD5.1BF06CCC6C3CAC92FA947C92093F0FB8] - 24/08/2013 - 12:17:11 ---A- - C:\Windows\Prefetch\WSCRIPT.EXE-2D1A9206.pf O45 - LFCP:[MD5.02DA4024DE432782E9480164F8C4511A] - 24/08/2013 - 16:35:45 ---A- - C:\Windows\Prefetch\ASSISTANCELIVEBOX.EXE-B79ACA79.pf O45 - LFCP:[MD5.298F457A8CBEA55D2867D1CFA39A1C59] - 24/08/2013 - 19:01:48 ---A- - C:\Windows\Prefetch\INSTALLUTIL.EXE-5AF84854.pf O45 - LFCP:[MD5.979E0F117DF6AA998CEF34DA7F7E1F9A] - 25/08/2013 - 13:30:42 ---A- - C:\Windows\Prefetch\PS.EXE-1EE522C7.pf O45 - LFCP:[MD5.A411DAD60BC3EBD2F33367DC36C74C7E] - 25/08/2013 - 13:47:15 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-6AF5690B.pf O45 - LFCP:[MD5.939961F487B30F94963965E6CC2EA064] - 25/08/2013 - 13:55:21 ---A- - C:\Windows\Prefetch\DVDSHRINK32SETUP.EXE-5F44FAE8.pf O45 - LFCP:[MD5.61DD341431B7035C02523D27E8E17C3D] - 25/08/2013 - 13:58:43 ---A- - C:\Windows\Prefetch\ICREINSTALL_DVDSHRINK32SETUP.-275D1142.pf O45 - LFCP:[MD5.7E1A5B73679133707380C6145567225D] - 25/08/2013 - 14:16:48 ---A- - C:\Windows\Prefetch\DVD SHRINK 3.2.EXE-B26A01B9.pf O45 - LFCP:[MD5.A0B967E0A05DD7DB32E42F6A2CD42B04] - 25/08/2013 - 19:33:53 ---A- - C:\Windows\Prefetch\WINRAR.EXE-AA6602BC.pf O45 - LFCP:[MD5.29F5150FB702BF92CAB39206070AE110] - 25/08/2013 - 20:04:03 ---A- - C:\Windows\Prefetch\DRAGON BALL ARCADE.EXE-36C46DBE.pf O45 - LFCP:[MD5.CC91508601F5C49A8BD6182D7EC9DABE] - 26/08/2013 - 17:49:08 ---A- - C:\Windows\Prefetch\HPNETWORKCHECK.EXE-1B1BFCC5.pf O45 - LFCP:[MD5.6084B338961EC0C53A50FAEFEFC9BEFE] - 26/08/2013 - 17:54:05 ---A- - C:\Windows\Prefetch\HPSF.EXE-FF58409B.pf O45 - LFCP:[MD5.24DB9B352C209035E4268B34CD115469] - 26/08/2013 - 18:06:14 ---A- - C:\Windows\Prefetch\DSMUSERTASK.EXE-D4A83970.pf O45 - LFCP:[MD5.3426328ACCDA80545D396FEA8A6BABFD] - 26/08/2013 - 18:48:15 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-05CD8EE3.pf O45 - LFCP:[MD5.8223938D69E4417F368FF48E1824B17F] - 26/08/2013 - 18:53:40 ---A- - C:\Windows\Prefetch\MSDT.EXE-A16F1692.pf O45 - LFCP:[MD5.CEDF965FA1B3B38658D7BC8A13384E52] - 26/08/2013 - 19:00:28 ---A- - C:\Windows\Prefetch\EZCDDAX.EXE-E485AFCF.pf O45 - LFCP:[MD5.9A4C8CB5518A5B28448A812E98440FC9] - 26/08/2013 - 19:01:24 ---A- - C:\Windows\Prefetch\BURNRIGHTS.EXE-5D957F18.pf O45 - LFCP:[MD5.607F53B666A5D520C85104190356F53A] - 26/08/2013 - 19:03:34 ---A- - C:\Windows\Prefetch\OPENDISC.EXE-683FF4B5.pf O45 - LFCP:[MD5.8EBD307510FF72B57DA7562421BB966D] - 26/08/2013 - 19:30:40 ---A- - C:\Windows\Prefetch\WINRAR.EXE-CE49D5BD.pf O45 - LFCP:[MD5.F4BC2CDA90CEB7A1C01D05C8393384D3] - 26/08/2013 - 19:34:09 ---A- - C:\Windows\Prefetch\BANKPERFECT.EXE-81023D72.pf O45 - LFCP:[MD5.76C20D01B4F8F7893D7607F6A7358F2D] - 26/08/2013 - 19:37:49 ---A- - C:\Windows\Prefetch\HPCONNECTEDREMOTEMGMTUI.EXE-520AFD24.pf O45 - LFCP:[MD5.AFAC529D61E5BFFBC841A6BAFAE645A0] - 27/08/2013 - 19:32:15 ---A- - C:\Windows\Prefetch\dynreservedpri.db O45 - LFCP:[MD5.CAC37941423C1A256FA3316761627CAD] - 27/08/2013 - 20:00:24 ---A- - C:\Windows\Prefetch\TASKKILL.EXE-ECD4FD3D.pf O45 - LFCP:[MD5.28AFBCF777F0E9E1553921A117A3C23B] - 27/08/2013 - 20:01:37 ---A- - C:\Windows\Prefetch\LOWDISKSPACEDETECTION.EXE-7B96660D.pf O45 - LFCP:[MD5.A2CE23E8EA1CDC4DAB31032AB8A3508C] - 27/08/2013 - 20:01:47 ---A- - C:\Windows\Prefetch\CLEANMGR.EXE-413FC387.pf O45 - LFCP:[MD5.A2B46EA723FA66597B37072BAF8AAA59] - 27/08/2013 - 20:04:14 ---A- - C:\Windows\Prefetch\WINRAR.EXE-C8414C16.pf O45 - LFCP:[MD5.E3AF3A760693C445F783C3999E02E8C8] - 27/08/2013 - 20:05:11 ---A- - C:\Windows\Prefetch\RAR.EXE-2E5F8DFB.pf O45 - LFCP:[MD5.901B64A156C7077D7BE1D02481C2265F] - 27/08/2013 - 20:05:38 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-952446E1.pf O45 - LFCP:[MD5.4FED211EBC8AC2EED6BCC2C3C592F038] - 27/08/2013 - 20:07:00 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-2AEE852F.pf O45 - LFCP:[MD5.782A9799D638839CE0D901182AFAD34F] - 27/08/2013 - 20:07:54 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-8FC0A1BD.pf O45 - LFCP:[MD5.FD0F12736CE3182CD80A8B38B6879AA7] - 27/08/2013 - 20:12:37 ---A- - C:\Windows\Prefetch\WINRAR.EXE-C2533A12.pf O45 - LFCP:[MD5.11C7AF7414255B5A054057C343339466] - 27/08/2013 - 20:29:27 ---A- - C:\Windows\Prefetch\UPDATER.EXE-02930A67.pf O45 - LFCP:[MD5.B8B921C04B5D19BB84B3F70A66F11881] - 27/08/2013 - 20:29:45 ---A- - C:\Windows\Prefetch\GAME.EXE-F60C39E0.pf O45 - LFCP:[MD5.634C38537E2AE7ABD9E8589C548FCE4B] - 27/08/2013 - 20:41:57 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-BD46E54B.pf O45 - LFCP:[MD5.218C73CEA2348127847EF43DC8611070] - 27/08/2013 - 20:43:26 ---A- - C:\Windows\Prefetch\SYSTEMSETTINGS.EXE-D8CC3B5E.pf O45 - LFCP:[MD5.FEAEAA8A4AADEC4DACAA20EB957A5C33] - 27/08/2013 - 20:43:46 ---A- - C:\Windows\Prefetch\PICKERHOST.EXE-03F09186.pf O45 - LFCP:[MD5.9CFFAB3C57E0F50820BE6CA737723428] - 28/08/2013 - 19:33:12 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-5F7F692E.pf O45 - LFCP:[MD5.05C9E101AEC213FBA5694FF9F0FB68A9] - 28/08/2013 - 19:33:53 ---A- - C:\Windows\Prefetch\UNWISE.EXE-340888CD.pf O45 - LFCP:[MD5.7172BBBF6398B2C73314B9A8F1ABADC5] - 28/08/2013 - 19:37:52 ---A- - C:\Windows\Prefetch\INSTALLER_IGGLEPOP_FR.EXE-9BE89C40.pf O45 - LFCP:[MD5.55BF2D069892FBC3A1D42DB1ACD13DE6] - 28/08/2013 - 19:37:54 ---A- - C:\Windows\Prefetch\GAMEINSTALLER.EXE-B6A37315.pf O45 - LFCP:[MD5.C61B3AFBDF1A789F6894113FCB336581] - 28/08/2013 - 19:44:07 ---A- - C:\Windows\Prefetch\ZY-IGGLEPOP.EXE-C01DFD15.pf O45 - LFCP:[MD5.69F586334FC06D904C911E18825D0776] - 28/08/2013 - 19:46:45 ---A- - C:\Windows\Prefetch\GAMEINSTALLER.EXE-8132F8D2.pf O45 - LFCP:[MD5.8E08BAA5F47D121E93D78FB664B2014E] - 28/08/2013 - 20:04:43 ---A- - C:\Windows\Prefetch\4FREE_VIDEO_CONVERTER.TMP-0A4A340E.pf O45 - LFCP:[MD5.443938413084C50FCE1F6CFE3BD9B9AC] - 28/08/2013 - 20:04:45 ---A- - C:\Windows\Prefetch\4FREE_VIDEO_CONVERTER.TMP-0113ED42.pf O45 - LFCP:[MD5.50F7A9C3FE74F6433EA7531D01F6A3DE] - 28/08/2013 - 20:25:27 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-B55C437D.pf O45 - LFCP:[MD5.DA9E81EE4B54CE51CA42480D674C0B2D] - 29/08/2013 - 12:21:13 ---A- - C:\Windows\Prefetch\NEROCMD.EXE-A520A419.pf O45 - LFCP:[MD5.BD39F4C2FBF4411FCF32121C7D6CD699] - 29/08/2013 - 16:26:09 ---A- - C:\Windows\Prefetch\SETUPXU.EXE-AA58688E.pf O45 - LFCP:[MD5.202F37ECBF314BE55866298BD2210107] - 29/08/2013 - 16:32:51 ---A- - C:\Windows\Prefetch\NEDWFILEHELPER.EXE-C1CDA3FA.pf O45 - LFCP:[MD5.0DDA926A608D65B15DD58861A210010C] - 29/08/2013 - 16:33:42 ---A- - C:\Windows\Prefetch\NEROCMD.EXE-B7FAEA9C.pf O45 - LFCP:[MD5.FC70E2C3ECB4E1336B79C5921AF236EB] - 29/08/2013 - 16:45:07 ---A- - C:\Windows\Prefetch\SETUPX.EXE-6DE449C5.pf O45 - LFCP:[MD5.56270BF515E93EA0856486FC280BA734] - 29/08/2013 - 17:05:40 ---A- - C:\Windows\Prefetch\NERO 7.8.5.0 FR.EXE-CC4D981A.pf O45 - LFCP:[MD5.EAF6201EC2E90CEA71D9274AEE52662B] - 29/08/2013 - 17:06:06 ---A- - C:\Windows\Prefetch\NEROBAR.EXE-C4050CB9.pf O45 - LFCP:[MD5.C4AF1165E949F4108683DFC4135FDAAC] - 29/08/2013 - 17:06:22 ---A- - C:\Windows\Prefetch\SETUPX.EXE-B6B18729.pf O45 - LFCP:[MD5.121A020F461D24C7CBB41DB2DA31D815] - 29/08/2013 - 17:34:04 ---A- - C:\Windows\Prefetch\NEROVISION.EXE-ED90061E.pf O45 - LFCP:[MD5.7C2E7CE7FFE785012EFE8F3256CABDFD] - 29/08/2013 - 17:35:59 ---A- - C:\Windows\Prefetch\WINRAR FR PATCH.EXE-FE501063.pf O45 - LFCP:[MD5.511E0BDE3DFBD0D66205CADDFFA5FE5C] - 29/08/2013 - 17:36:13 ---A- - C:\Windows\Prefetch\WRAR37B6.EXE-C910F362.pf O45 - LFCP:[MD5.2B2957AEE64FDB94C9D59CB6787B79C7] - 29/08/2013 - 17:39:20 ---A- - C:\Windows\Prefetch\WINRAR.EXE-72513729.pf O45 - LFCP:[MD5.BB4280FEB5B795AEFA402F4BE38A206A] - 29/08/2013 - 17:45:43 ---A- - C:\Windows\Prefetch\HH.EXE-603A5034.pf O45 - LFCP:[MD5.B234A5CAC1F4BACADB1CD21358C6685E] - 29/08/2013 - 18:00:07 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-F1EB78CC.pf O45 - LFCP:[MD5.EBCA40BDD9A1F10C79D0E8BD267119DF] - 29/08/2013 - 18:09:43 ---A- - C:\Windows\Prefetch\WINRAR-X64-420FR.EXE-00D345BA.pf O45 - LFCP:[MD5.06A1C7C3BF9745EA4406321ADCC993C1] - 29/08/2013 - 18:09:49 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-463F1B21.pf O45 - LFCP:[MD5.264D4A0510F3A36E98C7FD38C0893DD5] - 29/08/2013 - 18:11:21 ---A- - C:\Windows\Prefetch\WINRAR.EXE-E031DE56.pf O45 - LFCP:[MD5.CA1E8CC647075408E89D168BC063B732] - 29/08/2013 - 19:19:17 ---A- - C:\Windows\Prefetch\WLXPHOTOGALLERY.EXE-55FF63A1.pf O45 - LFCP:[MD5.2FE5E66F6626859E8660ED11A66E95FA] - 29/08/2013 - 19:48:27 ---A- - C:\Windows\Prefetch\HPCONNECTEDREMOTEWMPMONITOR.E-268AFC29.pf O45 - LFCP:[MD5.91A21D1A7EEFAC566789539CCE5525EF] - 30/08/2013 - 11:37:05 ---A- - C:\Windows\Prefetch\NGENTASK.EXE-4DB88ADA.pf O45 - LFCP:[MD5.D331A0476BA270115B99E562C894AE95] - 30/08/2013 - 11:41:18 ---A- - C:\Windows\Prefetch\NEROSTARTSMART.EXE-07BBB0D8.pf O45 - LFCP:[MD5.8CFF963CF700D171020204ED9BF7B787] - 30/08/2013 - 11:41:29 ---A- - C:\Windows\Prefetch\NERO.EXE-AC008767.pf O45 - LFCP:[MD5.DE0D44EBFCF5ED43098C3DC1D6126E5F] - 30/08/2013 - 11:59:25 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-00AE2311.pf O45 - LFCP:[MD5.3D2E260FEB5F596EBC1F91054933E5B2] - 30/08/2013 - 12:00:04 ---A- - C:\Windows\Prefetch\IMGBURN.EXE-DEA1071B.pf O45 - LFCP:[MD5.F2448D0C4EB698BB3B4A25D7391BD652] - 30/08/2013 - 12:01:41 ---A- - C:\Windows\Prefetch\CLUPDATER.EXE-64D36E25.pf O45 - LFCP:[MD5.392641BBE73B6139EA4AF9EC1A6F317C] - 30/08/2013 - 12:01:50 ---A- - C:\Windows\Prefetch\POWERDVD10.EXE-6CD2ECA6.pf O45 - LFCP:[MD5.060DC32E22C9FA2A7960F09F6CFC68CD] - 30/08/2013 - 12:06:40 ---A- - C:\Windows\Prefetch\DVD SHRINK 3.2.EXE-4B11A4AC.pf O45 - LFCP:[MD5.1CC65835E28E7DB3707DD7FAEDE54602] - 30/08/2013 - 12:09:32 ---A- - C:\Windows\Prefetch\EXCEL.EXE-A8B924E9.pf O45 - LFCP:[MD5.0B3086FE91B11BC53018EEE360D5DEA4] - 30/08/2013 - 12:23:37 ---A- - C:\Windows\Prefetch\NGENTASK.EXE-CD4E002C.pf O45 - LFCP:[MD5.FDF5DA5EA4842D0A6EB686DC28C8FA17] - 30/08/2013 - 12:36:09 ---A- - C:\Windows\Prefetch\VC.EXE-52A6D61E.pf O45 - LFCP:[MD5.5110A756A1AAAC67BA66CB7F781148EE] - 30/08/2013 - 12:37:43 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-4E288B88.pf O45 - LFCP:[MD5.C679E92CAAAFD9F717AD473344B2C1D8] - 30/08/2013 - 14:38:17 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-9178D9A9.pf O45 - LFCP:[MD5.6CAA9C3A99B0EA4D60C938EAA9B27FBD] - 30/08/2013 - 14:42:40 ---A- - C:\Windows\Prefetch\CREDENTIALUIBROKER.EXE-E9F92FD0.pf O45 - LFCP:[MD5.3AB4F3A9281EA441CBE99BF8B6FFAA42] - 30/08/2013 - 14:43:04 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-6C28DB75.pf O45 - LFCP:[MD5.06134086321209B80D042533031F7963] - 30/08/2013 - 14:43:04 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-6C28DB76.pf O45 - LFCP:[MD5.45F5A88F532E83C8B1DE68B143DEC951] - 30/08/2013 - 16:55:52 ---A- - C:\Windows\Prefetch\KIESPDLR.EXE-994AB17E.pf O45 - LFCP:[MD5.E378E93CC514B0169B69A2751EDA52EB] - 30/08/2013 - 17:07:35 ---A- - C:\Windows\Prefetch\ORANGETOOLBAR.EXE-ACDD610E.pf O45 - LFCP:[MD5.42F35A636C8BDFDDCEF9610DFA077E80] - 30/08/2013 - 17:35:00 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F592BF19.pf O45 - LFCP:[MD5.EC3CFEF0EF49718B38745482F287A386] - 30/08/2013 - 17:41:09 ---A- - C:\Windows\Prefetch\EZCDDAX.EXE-AD91FF32.pf O45 - LFCP:[MD5.39317939C68CF7950A7E4184D8CA418B] - 30/08/2013 - 17:49:41 ---A- - C:\Windows\Prefetch\CLASSICEXPLORERSETTINGS.EXE-6B18E136.pf O45 - LFCP:[MD5.75D104401ACC60963DDC671ACB651CC5] - 30/08/2013 - 17:50:03 ---A- - C:\Windows\Prefetch\WMPRPH.EXE-519B9BAE.pf O45 - LFCP:[MD5.6061A8480EF1C1F97D29C15C0CCCCA79] - 30/08/2013 - 18:02:58 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-B0AD61F0.pf O45 - LFCP:[MD5.F98417074070984ECBC032E94CAA5B9C] - 30/08/2013 - 18:05:03 ---A- - C:\Windows\Prefetch\HELPPANE.EXE-5A92E3D5.pf O45 - LFCP:[MD5.F7FC33C59F72F5089BF5E71273D069EB] - 30/08/2013 - 18:16:22 ---A- - C:\Windows\Prefetch\PREVHOST.EXE-AC9628F9.pf O45 - LFCP:[MD5.5AD7870DB0508BBC089067C9EC434A2A] - 30/08/2013 - 18:28:30 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-E7D0EC83.pf O45 - LFCP:[MD5.FA9299412CDC037CE12BDBD15E9E4EC1] - 30/08/2013 - 18:34:56 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-8C5E4517.pf O45 - LFCP:[MD5.72E1408C572A8BD7CE55D391A02B54D0] - 30/08/2013 - 18:45:57 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-43F2740F.pf O45 - LFCP:[MD5.6D7BE372A8801BD041457DCC76166FD6] - 30/08/2013 - 18:45:57 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-85CB0B2F.pf O45 - LFCP:[MD5.BCD7B0FBF6F50C4590D4EE6F72BB92BF] - 30/08/2013 - 18:59:16 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F47DFAB6.pf O45 - LFCP:[MD5.9D4B5BA119440B4ED9BFA7204DFA46EC] - 30/08/2013 - 18:59:29 ---A- - C:\Windows\Prefetch\UNINST.EXE-2D3BAAEF.pf O45 - LFCP:[MD5.DFD96B1B1878624F06A40232F0AD1D26] - 30/08/2013 - 18:59:31 ---A- - C:\Windows\Prefetch\TOOLBARHELPER.EXE-E84E5E59.pf O45 - LFCP:[MD5.B505A0372406B16DB6E79A98F23CAFAB] - 30/08/2013 - 18:59:34 ---A- - C:\Windows\Prefetch\CLEANUNINST.EXE-4E049426.pf O45 - LFCP:[MD5.AED29919D024904F356561D0B54EB7B0] - 30/08/2013 - 18:59:51 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-8EF5B027.pf O45 - LFCP:[MD5.1C7CFCF0A292E7BC06CE6F3C6F826313] - 30/08/2013 - 18:59:53 ---A- - C:\Windows\Prefetch\TASKKILL.EXE-3D8A2F61.pf O45 - LFCP:[MD5.805BC25E47028182E001A68F1DAEE339] - 30/08/2013 - 19:00:02 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-73DCA84C.pf O45 - LFCP:[MD5.7897BB1F4ED28ACFFBC635BF0B9F97DB] - 30/08/2013 - 19:00:05 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-09879C2B.pf O45 - LFCP:[MD5.489838587FD0D30BF798C1D6AD836B86] - 30/08/2013 - 19:00:12 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-EFFCE0E6.pf O45 - LFCP:[MD5.35984EA6EDC6AF0183A94D247A166AC3] - 30/08/2013 - 19:01:39 ---A- - C:\Windows\Prefetch\CLASSICSTARTMENU.EXE-B2535E93.pf O45 - LFCP:[MD5.6D794287AA0B34B6A583F846A209398F] - 30/08/2013 - 19:01:39 ---A- - C:\Windows\Prefetch\MSIA5DF.TMP-560E68FE.pf O45 - LFCP:[MD5.6527C168641000FEADE3FA73356A2AE3] - 30/08/2013 - 19:01:46 ---A- - C:\Windows\Prefetch\SRTASKS.EXE-29C2E869.pf O45 - LFCP:[MD5.E1D7EB7433CF272E24E9C27F2FC99D2F] - 30/08/2013 - 19:01:49 ---A- - C:\Windows\Prefetch\MSID941.TMP-F0CBBC60.pf O45 - LFCP:[MD5.894625941C7A3C603894CC919A9AA9D3] - 30/08/2013 - 19:04:14 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-B018CCBF.pf O45 - LFCP:[MD5.B1C774B00BE5879CC71ECEEFDD5C6514] - 30/08/2013 - 19:04:15 ---A- - C:\Windows\Prefetch\TIWORKER.EXE-3391C7C7.pf O45 - LFCP:[MD5.487619D78C97EC687DA4F9C143FDF79D] - 30/08/2013 - 19:04:34 ---A- - C:\Windows\Prefetch\WINWORD.EXE-4C6BDD9E.pf O45 - LFCP:[MD5.1DB4FEB9E3E2F4AA203C42393B493402] - 30/08/2013 - 19:04:35 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-853292E2.pf O45 - LFCP:[MD5.821AFC2D60987A9C18DF260AD7205776] - 30/08/2013 - 19:04:42 ---A- - C:\Windows\Prefetch\PRINTISOLATIONHOST.EXE-9AE42873.pf O45 - LFCP:[MD5.7A2C8B7D8F785B4A1A2260C116091B39] - 30/08/2013 - 19:07:52 ---A- - C:\Windows\Prefetch\WAJAM_VALIDATE.EXE-7943D4B7.pf =>Toolbar.Wajam O45 - LFCP:[MD5.6E5D3726B5CF79E3E6E8A7C6F32262B0] - 30/08/2013 - 19:07:54 ---A- - C:\Windows\Prefetch\VUUPC_SETUP.EXE-A26CAA50.pf O45 - LFCP:[MD5.D0A1F36F52EF6D454A60E546C7CEFE1E] - 30/08/2013 - 19:08:01 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-628C3FD4.pf O45 - LFCP:[MD5.D6281DD151DED780A4F1F39629242916] - 30/08/2013 - 19:08:05 ---A- - C:\Windows\Prefetch\WEBCONNECT.EXE-494A84F3.pf O45 - LFCP:[MD5.7F3C9EED62A3231A02FF6D4AD35D9A46] - 30/08/2013 - 19:08:06 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-38396432.pf O45 - LFCP:[MD5.A7188D07BD808D9CD0BEDDF89FA47C41] - 30/08/2013 - 19:08:09 ---A- - C:\Windows\Prefetch\DELTATB.EXE-82BC991C.pf =>Toolbar.DeltaSearch O45 - LFCP:[MD5.8F66FDAFBC0823A7788870325FAA62B3] - 30/08/2013 - 19:08:10 ---A- - C:\Windows\Prefetch\SETUP.EXE-BA344D32.pf O45 - LFCP:[MD5.B486119C404C522CA0A581D7B0FEA784] - 30/08/2013 - 19:08:11 ---A- - C:\Windows\Prefetch\IELOWUTIL.EXE-4CD7A8CB.pf O45 - LFCP:[MD5.811DC72144311BC1BE855F44690B252C] - 30/08/2013 - 19:08:14 ---A- - C:\Windows\Prefetch\SC.EXE-443D0E78.pf O45 - LFCP:[MD5.72E6D409C14F94C581A35094FA2716A1] - 30/08/2013 - 19:08:14 ---A- - C:\Windows\Prefetch\WEBCONNECT_SETUP.EXE-5FA614FE.pf O45 - LFCP:[MD5.AC13D7E69948FCABB7C1FBB875EBE96C] - 30/08/2013 - 19:08:16 ---A- - C:\Windows\Prefetch\SETUP.EXE-771D0CAF.pf O45 - LFCP:[MD5.AECD0DDC4D9E56B7B36882E65744CAE3] - 30/08/2013 - 19:08:19 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-FF1F87FB.pf O45 - LFCP:[MD5.6BC7BAC686A4426F7725C1FA1FFD955C] - 30/08/2013 - 19:08:24 ---A- - C:\Windows\Prefetch\UPDATEWEBCONNECT.EXE-12604AEA.pf O45 - LFCP:[MD5.2F526E08A9211A120A765188C880EA35] - 30/08/2013 - 19:08:25 ---A- - C:\Windows\Prefetch\CCP.EXE-58E6BCE0.pf O45 - LFCP:[MD5.BB5DB4D5E49A5917D5DA1A60179E8413] - 30/08/2013 - 19:08:25 ---A- - C:\Windows\Prefetch\DSEARCHLINK.EXE-817892FA.pf O45 - LFCP:[MD5.E9732850B8287BA7422FB38D2BB04848] - 30/08/2013 - 19:08:30 ---A- - C:\Windows\Prefetch\DELTA4FFX.EXE-D6F0B387.pf O45 - LFCP:[MD5.00516071611C5AFBA8A983641B8CCAC8] - 30/08/2013 - 19:08:30 ---A- - C:\Windows\Prefetch\DELTA4IE.EXE-84DAB919.pf O45 - LFCP:[MD5.FB82FEF9AAEE5AC5DC0B596B949008E6] - 30/08/2013 - 19:08:33 ---A- - C:\Windows\Prefetch\BPROTECT.EXE-D1EE7D2B.pf O45 - LFCP:[MD5.2B29DD45EFBF61C690AA05F9142AB1F0] - 30/08/2013 - 19:08:34 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-D689A9D9.pf O45 - LFCP:[MD5.55FE01F38B81490B621AF62BAF4898E2] - 30/08/2013 - 19:08:36 ---A- - C:\Windows\Prefetch\MYDELTATB.EXE-2F40C208.pf =>Toolbar.DeltaSearch O45 - LFCP:[MD5.84E2846B8330BAEE4A96DCF5D969E2F1] - 30/08/2013 - 19:08:39 ---A- - C:\Windows\Prefetch\CLICKMEINSETUP.EXE-390B209D.pf O45 - LFCP:[MD5.A6C17A53CFFF353705CE3506D6ED3C89] - 30/08/2013 - 19:08:40 ---A- - C:\Windows\Prefetch\BABMAINT.EXE-7DDEAE89.pf =>Hijacker.BabSolution O45 - LFCP:[MD5.0EC1B1590B082C854E5EFDF09B45874E] - 30/08/2013 - 19:08:41 ---A- - C:\Windows\Prefetch\BROWSERDEFENDER.EXE-BA8CEBB9.pf =>Hijacker.Eazel O45 - LFCP:[MD5.945E468A14BCE8E9356BD7DEC9768FB5] - 30/08/2013 - 19:08:42 ---A- - C:\Windows\Prefetch\RUN.EXE-BAC22E6B.pf O45 - LFCP:[MD5.CFA31862D64DB64EED01FB2DC86ACE60] - 30/08/2013 - 19:08:53 ---A- - C:\Windows\Prefetch\CONNECTIVITY.EXE-D1F99EA5.pf O45 - LFCP:[MD5.1DAB763E5C5E36AAA03F72A77F4BAD4F] - 30/08/2013 - 19:08:57 ---A- - C:\Windows\Prefetch\REMOTEENGINE.EXE-1AA38D3C.pf O45 - LFCP:[MD5.E722CD33935EAC015BDE36F491051F78] - 30/08/2013 - 19:09:05 ---A- - C:\Windows\Prefetch\NSSDD46.TMP.EXE-719293C3.pf O45 - LFCP:[MD5.FF546AD70F6558CDC3EE94D0E745760F] - 30/08/2013 - 19:09:14 ---A- - C:\Windows\Prefetch\NSSEE0B.TMP.EXE-BE4BEF6D.pf O45 - LFCP:[MD5.A650B7E26056757BE806B3093768739D] - 30/08/2013 - 19:09:48 ---A- - C:\Windows\Prefetch\REMOTEENGINEHELPER.EXE-5C6799D4.pf O45 - LFCP:[MD5.DB3031E0DC23BC3466949DBF30C19C0F] - 30/08/2013 - 19:09:51 ---A- - C:\Windows\Prefetch\VUUPCLICENSE.EXE-ABF6C6E0.pf O45 - LFCP:[MD5.42419C1775514CAC27E85A99F6CE11DC] - 30/08/2013 - 19:10:39 ---A- - C:\Windows\Prefetch\NSN6C4F.TMP.EXE-01362CEF.pf O45 - LFCP:[MD5.4BFAB5B244AD023600E1BEF3B57AF4B1] - 30/08/2013 - 19:10:45 ---A- - C:\Windows\Prefetch\DPMNCTRLR.EXE-B7761183.pf O45 - LFCP:[MD5.3B4C71BA543642ED5D6ED5718E94A9B1] - 30/08/2013 - 19:10:49 ---A- - C:\Windows\Prefetch\DUUQUUPDATE.EXE-04FBEB94.pf =>Toolbar.DeltaSearch O45 - LFCP:[MD5.AB646B65D81A0793FD4DDA91B189FDC5] - 30/08/2013 - 19:10:49 ---A- - C:\Windows\Prefetch\DUUQUUPDATESETUP.EXE-D55031A7.pf =>Toolbar.DeltaSearch O45 - LFCP:[MD5.C1D3FA8A10104ECE5F843FB341FC75DE] - 30/08/2013 - 19:10:50 ---A- - C:\Windows\Prefetch\NSN7AA2.TMP.EXE-9FE57FA7.pf O45 - LFCP:[MD5.64D60C1EAEF515D0449175B89E8ADA53] - 30/08/2013 - 19:10:59 ---A- - C:\Windows\Prefetch\LYMXUD.EXE-AAD7BA9B.pf O45 - LFCP:[MD5.423D4765268F62D0588C91F7C77484D0] - 30/08/2013 - 19:11:03 ---A- - C:\Windows\Prefetch\NSNA4FD.TMP.EXE-022E1643.pf O45 - LFCP:[MD5.138E2ECC105CC43DC1BB33DFE0A84207] - 30/08/2013 - 19:11:06 ---A- - C:\Windows\Prefetch\NSSD7FF.TMP.EXE-58DD1A8C.pf O45 - LFCP:[MD5.7E0D314F4B7FC4C0BEB61732B623F077] - 30/08/2013 - 19:11:09 ---A- - C:\Windows\Prefetch\UNINSTALLER.EXE-92CC79DB.pf O45 - LFCP:[MD5.68C4535CA40490417A8535753691D488] - 30/08/2013 - 19:11:12 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-94CE7668.pf O45 - LFCP:[MD5.B039C54CEB6BBB01EE359185D019CB7A] - 30/08/2013 - 19:11:13 ---A- - C:\Windows\Prefetch\CONVERTAD.EXE-915D77FC.pf O45 - LFCP:[MD5.12B86BB475D9E0766AE464F2CDAF270F] - 30/08/2013 - 19:11:32 ---A- - C:\Windows\Prefetch\DUUQUUPDATE.EXE-23028BAD.pf =>Toolbar.DeltaSearch O45 - LFCP:[MD5.12C2389DD42FD5D9DF56F43D93D86696] - 30/08/2013 - 19:11:42 ---A- - C:\Windows\Prefetch\FRAMEFOX.EXE-15B148F5.pf O45 - LFCP:[MD5.DD9C69445AF9CA44FB6A58E25A1862F2] - 30/08/2013 - 19:12:58 ---A- - C:\Windows\Prefetch\DELTASRV.EXE-D6B916EB.pf O45 - LFCP:[MD5.647AE26E970635AF492787537E754550] - 30/08/2013 - 19:12:58 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-FBC89CAC.pf O45 - LFCP:[MD5.9DFFC4AA6280AF4E19521B109E5E9BB3] - 30/08/2013 - 19:13:30 ---A- - C:\Windows\Prefetch\PING.EXE-CF0A440C.pf O45 - LFCP:[MD5.1306F8F3B312EEF755FDD1F7D85D2E80] - 30/08/2013 - 19:16:12 ---A- - C:\Windows\Prefetch\OUINDICATOR.EXE-F9467004.pf O45 - LFCP:[MD5.4CF3D2D7A001B296B0DD2A0768BDD533] - 30/08/2013 - 19:24:37 ---A- - C:\Windows\Prefetch\DSEARCHLINK.EXE-D5CCC3E3.pf O45 - LFCP:[MD5.BCFDC0CED146A220A40972E08401846D] - 30/08/2013 - 19:32:51 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-546C7D12.pf O45 - LFCP:[MD5.B2AF97A524E7B575B464EFFF4217F99B] - 30/08/2013 - 19:34:14 ---A- - C:\Windows\Prefetch\Op-EXPLORER.EXE-03C49D11-000000F5.pf O45 - LFCP:[MD5.9827529AD26587522DDB7564EB997C58] - 30/08/2013 - 19:34:36 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-E6631E70.pf O45 - LFCP:[MD5.829E8BB1EE6A7481218DACDEA1BF312D] - 30/08/2013 - 19:34:45 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-084955AE.pf O45 - LFCP:[MD5.8F45F32998A1085502740AAD1C6174F9] - 30/08/2013 - 19:34:46 ---A- - C:\Windows\Prefetch\AU_.EXE-86008386.pf O45 - LFCP:[MD5.625113CAA923EFE2FF0E61A3A0352144] - 30/08/2013 - 19:34:59 ---A- - C:\Windows\Prefetch\UNINSTALLER.EXE-6E444AB0.pf O45 - LFCP:[MD5.47B0EFF29241C609CB566CA46E22994C] - 30/08/2013 - 19:35:02 ---A- - C:\Windows\Prefetch\UNINSTALLER.EXE-648D04B0.pf O45 - LFCP:[MD5.4F2F3972E968C24E7AD2FBD5FA6881EA] - 30/08/2013 - 19:35:05 ---A- - C:\Windows\Prefetch\UNINSTALLER.EXE-63645CB9.pf O45 - LFCP:[MD5.5864F2A8118CFADC1B74B1773D5B533D] - 30/08/2013 - 19:36:09 ---A- - C:\Windows\Prefetch\ADW CLEANER.EXE-666ED0C2.pf O45 - LFCP:[MD5.2E7AF8397E1A817A25EB2FCCFD125085] - 30/08/2013 - 19:38:31 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-EF8503D3.pf O45 - LFCP:[MD5.348ADBBD8C21D372CB86AEE73EE743FE] - 30/08/2013 - 19:55:43 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-22AD8A37.pf O45 - LFCP:[MD5.80CB91B4D45C246DE59078661C971109] - 30/08/2013 - 19:55:43 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.B3C66F28A48920B1B12EA4C89D3DFCDE] - 30/08/2013 - 19:55:49 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-F68363C4.pf O45 - LFCP:[MD5.3F6F291998AA477682D2B923673CA7A6] - 30/08/2013 - 19:56:45 ---A- - C:\Windows\Prefetch\MYSTIFY.SCR-E0B333A9.pf O45 - LFCP:[MD5.6CD871C35024B66964613D06988ECEFB] - 30/08/2013 - 20:07:53 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-D687BE54.pf O45 - LFCP:[MD5.37BA0DDEB99D6CA3F9F5EE65C0168D7C] - 30/08/2013 - 20:14:33 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-534DDDA0.pf O45 - LFCP:[MD5.770A77175E37AFA9C4C2D6B98C8E9AEB] - 30/08/2013 - 20:18:39 ---A- - C:\Windows\Prefetch\OPENWITH.EXE-BA0DC300.pf O45 - LFCP:[MD5.2F96C342251264D7CDE56A0F2DC3F7F2] - 30/08/2013 - 20:22:40 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-F29BFC53.pf O45 - LFCP:[MD5.67C31CCFDA4888908860A85C88625D6B] - 30/08/2013 - 20:24:00 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-DA99EFCF.pf O45 - LFCP:[MD5.4475E228312F98CB9D16C8821132153C] - 30/08/2013 - 20:28:00 ---A- - C:\Windows\Prefetch\EXPRESSTRAY.EXE-3370D5C9.pf O45 - LFCP:[MD5.4251D23B1798A96F27403CA47DBBD090] - 30/08/2013 - 20:28:10 ---A- - C:\Windows\Prefetch\EXPRESS.EXE-11BE41F1.pf O45 - LFCP:[MD5.A6FF580D98B7FEE1DF74E199CDB2A0F6] - 30/08/2013 - 20:28:34 ---A- - C:\Windows\Prefetch\ZUMA.EXE-46A499B7.pf O45 - LFCP:[MD5.91B1D3D2B2046342620CBFE45DE55FFE] - 30/08/2013 - 20:31:46 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-99964DCC.pf O45 - LFCP:[MD5.539E9B8CA11820A78156933D2F71776A] - 30/08/2013 - 20:37:25 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5D09CA10.pf O45 - LFCP:[MD5.4A7FF08B4584AE5C2867BD132D41E377] - 30/08/2013 - 20:37:36 ---A- - C:\Windows\Prefetch\TASKMGR.EXE-39AABA37.pf O45 - LFCP:[MD5.7DE7C55546CB54E19505D21E94809E3E] - 30/08/2013 - 20:39:33 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-BDDD5550.pf O45 - LFCP:[MD5.05BA0796B72C47D12B307FEB43405ABA] - 30/08/2013 - 20:39:33 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-CA550BAC.pf O45 - LFCP:[MD5.CE435ABEFA800E0BBC79F39F161A4B87] - 30/08/2013 - 20:51:11 ---A- - C:\Windows\Prefetch\MBAM-SETUP-1.75.0.1300.TMP-64C33568.pf O45 - LFCP:[MD5.9937D3162A8D1585A60675A66DDA71F3] - 30/08/2013 - 20:51:13 ---A- - C:\Windows\Prefetch\MBAM-SETUP-1.75.0.1300.EXE-C8B40E71.pf O45 - LFCP:[MD5.274A8C5CA87778393F1A066A56F1394C] - 30/08/2013 - 20:51:13 ---A- - C:\Windows\Prefetch\MBAM-SETUP-1.75.0.1300.TMP-C5A8D8CF.pf O45 - LFCP:[MD5.F04D0753FC3F6F8F548A2C0ECDBD1069] - 30/08/2013 - 20:51:23 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-E1DBB6D8.pf O45 - LFCP:[MD5.2DE55678D9EED84F9553A5704BA7E0E2] - 30/08/2013 - 20:52:10 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-3290E8FC.pf O45 - LFCP:[MD5.5513052268315674E6AE391B31E8D6D2] - 30/08/2013 - 20:52:19 ---A- - C:\Windows\Prefetch\MBAM.EXE-125A28F9.pf O45 - LFCP:[MD5.267FF8285882CF998A3C508FB8FFA8E2] - 30/08/2013 - 20:56:57 ---A- - C:\Windows\Prefetch\REGEDIT.EXE-FA6F6DA2.pf O45 - LFCP:[MD5.61D10FE9C00F61E64123F76AF236F66B] - 30/08/2013 - 20:58:55 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-9848A323.pf O45 - LFCP:[MD5.99B6EE3A50CEEDF5559019340ABE47B2] - 30/08/2013 - 20:58:55 ---A- - C:\Windows\Prefetch\LPKSETUP.EXE-EE6EE0C2.pf O45 - LFCP:[MD5.D6CBE33A68EBDDEBC1F993B3E0F687AE] - 30/08/2013 - 20:58:55 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-E874B0D0.pf O45 - LFCP:[MD5.A4721EE00189437DEB72254B85791D41] - 30/08/2013 - 20:58:57 ---A- - C:\Windows\Prefetch\SMSS.EXE-81AD91F0.pf O45 - LFCP:[MD5.6F6E1C4A1DFCB1C098ED96296EC8B654] - 30/08/2013 - 20:59:08 ---A- - C:\Windows\Prefetch\CSRSS.EXE-A7A2B218.pf O45 - LFCP:[MD5.58FA86708C143BC5B061B67591A7A4B2] - 30/08/2013 - 20:59:08 ---A- - C:\Windows\Prefetch\DWM.EXE-F29FE9E2.pf O45 - LFCP:[MD5.E2CEF269823E47F50F59F2C6EEEB55CE] - 30/08/2013 - 20:59:08 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-E35F76FB.pf O45 - LFCP:[MD5.7066674B1F3A6430BFAE53D3A3DF926B] - 30/08/2013 - 20:59:08 ---A- - C:\Windows\Prefetch\WINLOGON.EXE-0D9AB72B.pf O45 - LFCP:[MD5.EE6182EC5F20414E91911F3F12092256] - 30/08/2013 - 20:59:09 ---A- - C:\Windows\Prefetch\ATIECLXX.EXE-A62CF8E4.pf O45 - LFCP:[MD5.150484A3BB0793CD6AE45A279333E869] - 31/08/2013 - 08:32:47 ---A- - C:\Windows\Prefetch\ATBROKER.EXE-8B8F7F7C.pf O45 - LFCP:[MD5.DE96545D3E4F804B98C0AA3A8D8DE612] - 31/08/2013 - 08:32:57 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-03C49D11.pf O45 - LFCP:[MD5.278C48A30B822A015827156B65FF9F36] - 31/08/2013 - 08:32:57 ---A- - C:\Windows\Prefetch\USERINIT.EXE-7FD17ED1.pf O45 - LFCP:[MD5.47CE2FE1D6E5A408BFD6AA36F05C4BFD] - 31/08/2013 - 08:33:07 ---A- - C:\Windows\Prefetch\ONENOTEM.EXE-5E15F905.pf O45 - LFCP:[MD5.4432D57BCBE2BF76DF598D51CBB71E31] - 31/08/2013 - 08:33:12 ---A- - C:\Windows\Prefetch\BEATS64.EXE-98745CAE.pf O45 - LFCP:[MD5.353C656CB35FB187B3A13260BD227EAF] - 31/08/2013 - 08:33:13 ---A- - C:\Windows\Prefetch\STTRAY64.EXE-D84D4C46.pf O45 - LFCP:[MD5.BF1AEA2FCAD40F3C59A926933B8EAAA9] - 31/08/2013 - 08:33:14 ---A- - C:\Windows\Prefetch\HPQSTE08.EXE-719C92E3.pf O45 - LFCP:[MD5.C234CBF26520664AA6AADE0C16554405] - 31/08/2013 - 08:33:14 ---A- - C:\Windows\Prefetch\UPDATE.EXE-B8A8086B.pf O45 - LFCP:[MD5.50FCEF7F383ED5C0519F71A5209FEE3F] - 31/08/2013 - 08:33:15 ---A- - C:\Windows\Prefetch\MAILNOTIFIER.EXE-B134AA31.pf O45 - LFCP:[MD5.AC5139E19615FADCF549BF0A683EE019] - 31/08/2013 - 08:33:16 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-FCA76D39.pf O45 - LFCP:[MD5.9EBF9E4BB9627BA7B71F6AA259E2E2AB] - 31/08/2013 - 08:33:18 ---A- - C:\Windows\Prefetch\HPWUSCHD2.EXE-70D5B7CD.pf O45 - LFCP:[MD5.DA3F4A6BD1B0E16696620B25EE84F302] - 31/08/2013 - 08:33:23 ---A- - C:\Windows\Prefetch\HPQBAM08.EXE-3D5F973F.pf O45 - LFCP:[MD5.5CCD2DB24A56B6FC4F986FE6C0F1B271] - 31/08/2013 - 08:33:23 ---A- - C:\Windows\Prefetch\HPQGPC01.EXE-74C2A666.pf O45 - LFCP:[MD5.0080F3ACA369F4DCFC3822F8DA49A5A2] - 31/08/2013 - 08:33:27 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-00AD1665.pf O45 - LFCP:[MD5.7F1431BCC1337FA1BCA2C3EFA3338CF1] - 31/08/2013 - 08:33:59 ---A- - C:\Windows\Prefetch\AgCx_SC5.db O45 - LFCP:[MD5.2CBAA119F50650208B6047F899244A77] - 31/08/2013 - 08:36:01 ---A- - C:\Windows\Prefetch\CCLEANER64.EXE-1137D9AC.pf =>Piriform Ltd O45 - LFCP:[MD5.FD408F119B51DF9D6839F77D2859D2EA] - 31/08/2013 - 08:38:16 ---A- - C:\Windows\Prefetch\CLI.EXE-278FDBBC.pf O45 - LFCP:[MD5.1DA0BE6C6BF5F1F12EF578BE04D0D8B4] - 31/08/2013 - 08:38:16 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARNOTIFIER.EXE-B25C45A8.pf O45 - LFCP:[MD5.3336D5890A08A6FB994684F145A1A0E8] - 31/08/2013 - 08:38:17 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3460665520-1960831872-1863844556-1001.db O45 - LFCP:[MD5.E6BF7F1A9FDDFD0AE7A348CF210B7032] - 31/08/2013 - 08:38:17 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3460665520-1960831872-1863844556-1001.db O45 - LFCP:[MD5.046D5747AA7C307E6B9BD8E1012119EF] - 31/08/2013 - 08:38:18 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.2C177332DFFCC9BD43DE6A4E8091C3A7] - 31/08/2013 - 08:39:54 ---A- - C:\Windows\Prefetch\DASHOST.EXE-38AAABF0.pf O45 - LFCP:[MD5.BA3796E60FD5BA3BAB8FC1BC5C156D46] - 31/08/2013 - 08:39:54 ---A- - C:\Windows\Prefetch\GARMIN.CARTOGRAPHY.MAPUPDATE.-1A9C49F1.pf O45 - LFCP:[MD5.E0D68FAE8436EFBE0EAB37132A1E1516] - 31/08/2013 - 08:39:54 ---A- - C:\Windows\Prefetch\OUCORE.EXE-698BDEB8.pf O45 - LFCP:[MD5.89D8C41202D517798463EBC7D364D988] - 31/08/2013 - 08:39:54 ---A- - C:\Windows\Prefetch\OUSOFTWAREMANAGER.EXE-CC5E0AE9.pf O45 - LFCP:[MD5.3317BF16B151F398D3CCA73EB6F7654A] - 31/08/2013 - 08:39:54 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-D5072757.pf O45 - LFCP:[MD5.878DACB670B2045345EB962EA05325E1] - 31/08/2013 - 08:40:09 ---A- - C:\Windows\Prefetch\GOOGLEUPDATEONDEMAND.EXE-062A670B.pf O45 - LFCP:[MD5.1E53D1EED78935EDC8AFF7465CA26217] - 31/08/2013 - 08:40:10 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARMANAGER_714BFB3B-1CB3E86D.pf O45 - LFCP:[MD5.0E1B97F039B1C9AF63A6B13DF2E44925] - 31/08/2013 - 08:40:19 ---A- - C:\Windows\Prefetch\GOOGLEUPDATERSERVICE.EXE-5B31194A.pf O45 - LFCP:[MD5.BEBEBEA5C18184E1131831D7D01B4900] - 31/08/2013 - 08:40:35 ---A- - C:\Windows\Prefetch\MMLOADDRV.EXE-778A3492.pf O45 - LFCP:[MD5.305F6E0FD4FFBED6FA75F806F1D5A464] - 31/08/2013 - 08:40:35 ---A- - C:\Windows\Prefetch\MOM.EXE-AF39B199.pf O45 - LFCP:[MD5.F7382A88A64DF4AF238B2933E7E3BD02] - 31/08/2013 - 08:40:38 ---A- - C:\Windows\Prefetch\CCC.EXE-22878179.pf O45 - LFCP:[MD5.B4EEFDCF4680BA7D9462EA419B1B9648] - 31/08/2013 - 08:41:07 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-B28CC291.pf O45 - LFCP:[MD5.22769B9E3FB1DE81BF956F6271814D93] - 31/08/2013 - 08:41:18 ---A- - C:\Windows\Prefetch\NETSH.EXE-355423B0.pf O45 - LFCP:[MD5.D5FE13EF9D38C79DE541D5FEFD8CB78D] - 31/08/2013 - 08:41:25 ---A- - C:\Windows\Prefetch\HPSA_SERVICE.EXE-1776F51A.pf O45 - LFCP:[MD5.D2F774BED36F106E473FF2076EB6AC37] - 31/08/2013 - 08:41:27 ---A- - C:\Windows\Prefetch\HPCONNECTEDREMOTESERVICE.EXE-0486968A.pf O45 - LFCP:[MD5.C75E7034642851A8683CA94B68FFA654] - 31/08/2013 - 08:41:27 ---A- - C:\Windows\Prefetch\SYMSILENTBOOTSTRAP.EXE-2F1083F1.pf O45 - LFCP:[MD5.3A3566EB1CD14D7900D24985BF69E18B] - 31/08/2013 - 08:41:30 ---A- - C:\Windows\Prefetch\CCSVCHST.EXE-DFB7FC90.pf O45 - LFCP:[MD5.321F6A830530023F6987FAAFEDF0B13D] - 31/08/2013 - 08:41:39 ---A- - C:\Windows\Prefetch\CCSVCHST.EXE-DFB7FC8F.pf O45 - LFCP:[MD5.6F79256DA90EFCC152C0DD2A31B5AA6E] - 31/08/2013 - 08:42:18 ---A- - C:\Windows\Prefetch\HPCONNECTEDREMOTEUSER.EXE-1F44B348.pf O45 - LFCP:[MD5.5EF7A3B18FADE7F6318EC1F979672649] - 31/08/2013 - 08:43:13 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-7D63BB4C.pf O45 - LFCP:[MD5.A43E547C44423977D29851C3A3E7B132] - 31/08/2013 - 08:46:33 ---A- - C:\Windows\Prefetch\CLTLMH.EXE-810A302E.pf O45 - LFCP:[MD5.7E8061CF3CBE1D76E15DBC8997C9F285] - 31/08/2013 - 08:48:00 ---A- - C:\Windows\Prefetch\TASKHOSTEX.EXE-7356AAC0.pf O45 - LFCP:[MD5.AE6C70B896AE743AC4A28B7D3F5CB34E] - 31/08/2013 - 08:54:00 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-29D61DAB.pf O45 - LFCP:[MD5.AAABA5A35020EBD86B784109DAC15490] - 31/08/2013 - 08:54:05 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-57CA2F5E.pf O45 - LFCP:[MD5.8601CB8FD931B6D7692ED0BAA20E20C4] - 31/08/2013 - 08:54:09 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-985C34E6.pf O45 - LFCP:[MD5.2AD5BA9A3AE9194E7B60D5848C66612B] - 31/08/2013 - 08:59:00 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-62E5E10F.pf O45 - LFCP:[MD5.5980C1026E382E5927E89DE3B7E0B3F4] - 31/08/2013 - 09:09:05 ---A- - C:\Windows\Prefetch\RUNTIMEBROKER.EXE-17E2786F.pf O45 - LFCP:[MD5.9E4F8E4DAABCB3D99AA8C9B0BC4BF2DE] - 31/08/2013 - 09:09:05 ---A- - C:\Windows\Prefetch\THUMBNAILEXTRACTIONHOST.EXE-C3FB8861.pf O45 - LFCP:[MD5.070627181B6CE0A5460141E16D413408] - 31/08/2013 - 09:14:54 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.121FAF614FB62B9656290AC07BF17BC3] - 31/08/2013 - 09:14:54 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.648874F82D1AA8A59968E4AF20738B92] - 31/08/2013 - 09:14:55 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.AF37C789289D312C73862DC92A470867] - 31/08/2013 - 09:14:55 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.6F87E96B67697958B7843AB3A40E6D64] - 31/08/2013 - 09:19:53 ---A- - C:\Windows\Prefetch\AVG_AVCT_STB_ALL_2013_3392_CM-A6290D01.pf O45 - LFCP:[MD5.BA359B5BC8392171E8757BB9C93084C3] - 31/08/2013 - 09:20:16 ---A- - C:\Windows\Prefetch\AVGRDTESTX.EXE-7C1AB7D0.pf O45 - LFCP:[MD5.639A8A2C5C95BA0CC850820EE1515CAD] - 31/08/2013 - 09:21:58 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-BB49B536.pf O45 - LFCP:[MD5.ED3DB3698251CD078982DF338B312F5A] - 31/08/2013 - 09:25:32 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-BAE57A74.pf O45 - LFCP:[MD5.22E652302A3AD0D15E67B7221B0863F3] - 31/08/2013 - 09:25:36 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-7D20CFB0.pf O45 - LFCP:[MD5.81B24C96F79611653625DB6C0403A9A3] - 31/08/2013 - 09:25:43 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-69B6023D.pf O45 - LFCP:[MD5.89AA6111B24CD909F4EAD72108212B5E] - 31/08/2013 - 09:25:43 ---A- - C:\Windows\Prefetch\VSSVC.EXE-206E55B3.pf O45 - LFCP:[MD5.E828F1F3FE83B5684890D75D51DE094E] - 31/08/2013 - 09:26:04 ---A- - C:\Windows\Prefetch\TUMICROSCANNER.EXE-9668713B.pf O45 - LFCP:[MD5.69BF2699B5A17B8E1B7E7E0B91C33D65] - 31/08/2013 - 09:26:17 ---A- - C:\Windows\Prefetch\AVGIDSAGENT.EXE-87FDC94A.pf O45 - LFCP:[MD5.D2B621B9455855E879FA382C17DD40A0] - 31/08/2013 - 09:26:21 ---A- - C:\Windows\Prefetch\AVGWDSVC.EXE-E19D3202.pf O45 - LFCP:[MD5.0A95904C5E3879C6D9286AEEF0530096] - 31/08/2013 - 09:26:25 ---A- - C:\Windows\Prefetch\AVGNSA.EXE-1692DB61.pf O45 - LFCP:[MD5.25A73162EB7EAEA375EEE1E98DAF4D47] - 31/08/2013 - 09:26:26 ---A- - C:\Windows\Prefetch\AVGEMCA.EXE-B294A265.pf O45 - LFCP:[MD5.4C8C6B8ADDECF029F15010BA5D3D8CF3] - 31/08/2013 - 09:26:31 ---A- - C:\Windows\Prefetch\AVGUIRUX.EXE-139908D0.pf O45 - LFCP:[MD5.95304CED90A1F4FBBC9A4A55A7B686D0] - 31/08/2013 - 09:26:32 ---A- - C:\Windows\Prefetch\AVGCSRVA.EXE-F960D042.pf O45 - LFCP:[MD5.2C308B44C865C9AACFDC0F8B67F23A68] - 31/08/2013 - 09:26:37 ---A- - C:\Windows\Prefetch\AVGMFAPX.EXE-09C9F1FE.pf O45 - LFCP:[MD5.15CA99DCBC471CD6B426530D4E2741D4] - 31/08/2013 - 09:27:23 ---A- - C:\Windows\Prefetch\AVGCMGR.EXE-E3C62554.pf O45 - LFCP:[MD5.7EF1AC0000CE06F4428B08FE8A62C3F2] - 31/08/2013 - 09:27:47 ---A- - C:\Windows\Prefetch\AVGCFGEX.EXE-88213658.pf O45 - LFCP:[MD5.D5893077D9BEFA7516D53945975CFD52] - 31/08/2013 - 09:28:02 ---A- - C:\Windows\Prefetch\AVGMFAPX.EXE-482B91AB.pf O45 - LFCP:[MD5.E13FE58C76883077EE008B7F984BF5FF] - 31/08/2013 - 09:30:49 ---A- - C:\Windows\Prefetch\AVGUI.EXE-4AC784F5.pf O45 - LFCP:[MD5.C6F32ED4C13B793F79832B95DB8E7979] - 31/08/2013 - 09:31:05 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-6520183E.pf O45 - LFCP:[MD5.247395B50A25C798986C465479A6ACFE] - 31/08/2013 - 09:31:07 ---A- - C:\Windows\Prefetch\FIXCFG.EXE-E385ABCC.pf O45 - LFCP:[MD5.0D13C4DBB1E5FBF7824D54A226009296] - 31/08/2013 - 09:31:17 ---A- - C:\Windows\Prefetch\AVGDIAGEX.EXE-63572971.pf O45 - LFCP:[MD5.DD100DC0538FC487D26A991A262546EB] - 31/08/2013 - 09:31:23 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-C6CFE2A8.pf O45 - LFCP:[MD5.C1784BB2C83E00AF4ED5723703DF2994] - 31/08/2013 - 09:33:08 ---A- - C:\Windows\Prefetch\SYMERR.EXE-E8E6C194.pf O45 - LFCP:[MD5.32A6A85E0D39F259E111A6829E9FD5BC] - 31/08/2013 - 09:33:10 ---A- - C:\Windows\Prefetch\TASKENG.EXE-23205583.pf O45 - LFCP:[MD5.34DAEC711BE92790EEC3AF3DEB7669D4] - 31/08/2013 - 09:33:18 ---A- - C:\Windows\Prefetch\CONSENT.EXE-2D674CE4.pf O45 - LFCP:[MD5.805D0B6E0DD876772A0A331716A465B6] - 31/08/2013 - 09:33:23 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E6B64B6C.pf O45 - LFCP:[MD5.2762A930DE1C8A510AACA28B093D35CC] - 31/08/2013 - 09:33:23 ---A- - C:\Windows\Prefetch\ZHPDIAG2 (2).TMP-FC6FF960.pf O45 - LFCP:[MD5.7038F76D384B09E446ABAC1A9E82C0E4] - 31/08/2013 - 09:33:28 ---A- - C:\Windows\Prefetch\ZHPDIAG2 (2).EXE-8B7A6A15.pf O45 - LFCP:[MD5.032D8D7DD94DEA0A3E61268381421ED7] - 31/08/2013 - 09:33:28 ---A- - C:\Windows\Prefetch\ZHPDIAG2 (2).TMP-86714A33.pf O45 - LFCP:[MD5.120C4624C1363433F95FB9EB5E91CA0A] - 31/08/2013 - 09:33:46 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-CE99ACA7.pf O45 - LFCP:[MD5.E2E5A464E7A9D35F0A13DC7022464C1A] - 31/08/2013 - 09:33:48 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-210D3DBE.pf O45 - LFCP:[MD5.26B334CDC096EBC18ACC92F0CBDD247B] - 31/08/2013 - 09:33:51 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-5F2753B1.pf O45 - LFCP:[MD5.0A9969EF588CD937642683159945BC85] - 31/08/2013 - 09:33:55 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-10E4267C.pf O45 - LFCP:[MD5.0687D4651969A34C734769658F0B1C40] - 31/08/2013 - 09:34:00 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-F4FB5D2F.pf O45 - LFCP:[MD5.49CBC10708D89D67B410FA8305310722] - 31/08/2013 - 09:34:01 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-C7289479.pf O45 - LFCP:[MD5.4774336802724A64825AD9AE4F635DCE] - 31/08/2013 - 09:34:07 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-7A9337F2.pf O45 - LFCP:[MD5.544202F344795CBCEF6C92A77CC2FBAB] - 31/08/2013 - 09:34:10 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARUSER_32.EXE-992C17DF.pf O45 - LFCP:[MD5.1A0DA1F9C9016095A8FADD97A533E07A] - 31/08/2013 - 09:34:14 ---A- - C:\Windows\Prefetch\FLASHUTIL_ACTIVEX.EXE-4E6AE223.pf O45 - LFCP:[MD5.D57E3CE504503247C742921449F7C81E] - 31/08/2013 - 09:34:58 ---A- - C:\Windows\Prefetch\CMD.EXE-2EB3E6E2.pf O45 - LFCP:[MD5.B813A0DA825748DB1F6AD15F0E52379F] - 31/08/2013 - 09:34:58 ---A- - C:\Windows\Prefetch\CONHOST.EXE-F98A1078.pf O45 - LFCP:[MD5.03EC07F3DDF4B6B94A741D5469FF085F] - 31/08/2013 - 09:34:58 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-E9FF6526.pf O45 - LFCP:[MD5.7C49B22F99FD9E95A29E50398AC4A16E] - 31/08/2013 - 09:35:05 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-0C8A533A.pf O45 - LFCP:[MD5.A91FAA7C4D7E279AEAFA3FA0969D759D] - 31/08/2013 - 09:35:06 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-7B160CA5.pf O45 - LFCP:[MD5.AB5A08D946F708724AA990105F2647DB] - 31/08/2013 - 09:35:14 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-5A956D1E.pf O45 - LFCP:[MD5.52D45A3FC2CF0473D13F71D11CDBB12D] - 31/08/2013 - 09:35:27 ---A- - C:\Windows\Prefetch\PV.EXE-D9D90B9C.pf O45 - LFCP:[MD5.255C11CBC2E06AE2E4264F0201D91F7C] - 31/08/2013 - 09:35:39 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-D08B2113.pf O45 - LFCP:[MD5.63BA83A09C9C71361EF3CF3BCA25074E] - 31/08/2013 - 09:35:55 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-0AD36442.pf ~ Prefetcher: 337 Scanned in 00mn 04s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Live Security Package.) -- C:\Windows\System32\livessp.dll ~ LSA: 9 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 17 Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 17 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 ~ MWPE Keys: 3 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736] ~ Drivers: 17 Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\bk.html [92] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\bk.js [708] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\cs.js [2657] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\icon128.png [11230] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\icon16.png [586] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\icon48.png [2929] O61 - LFC: 11/12/2707 - 02:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kidmhllhjmmmnpbiaihafgchacpmokof\1.131\manifest.json [526] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\entries [801] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\format [2] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\prop-base\icon.png.svn-base [53] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\prop-base\icon128.png.svn-base [53] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\prop-base\icon48.png.svn-base [53] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\text-base\background.html.svn-base [532] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\text-base\icon.png.svn-base [3577] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\text-base\icon128.png.svn-base [23546] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\.svn\text-base\icon48.png.svn-base [7257] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\background.html [532] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\icon.png [3577] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\icon128.png [23546] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\icon48.png [7257] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\manifest.json [664] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\plugin\.svn\entries [255] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\plugin\.svn\format [2] O61 - LFC: 18/01/2776 - 14:14:52 ---A- . (.Nosibay.) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp\1.0.0.130\plugin\npSurfMatch.dll [57344] O61 - LFC: 28/08/2013 - 14:22:53 ---A- . (.Babylon Ltd..) -- C:\Users\Angélique\AppData\Local\Temp\uninst1.exe [340464] =>Toolbar.Babylon O61 - LFC: 28/08/2013 - 18:51:06 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Adobe\AIR\Updater\lastUpdateCheck [35] O61 - LFC: 28/08/2013 - 19:13:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\AD2F1837.GettingStartedwithWindows8_v10z8vjag6ke6\Settings\settings.dat [262144] O61 - LFC: 28/08/2013 - 19:13:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingNews_8wekyb3d8bbwe\Settings\settings.dat [262144] O61 - LFC: 28/08/2013 - 19:13:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\Settings\settings.dat [262144] O61 - LFC: 28/08/2013 - 19:15:02 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.PerfTrack\e5c4656ff7ce2ea48e31d19fe9f1e8f2\Microsoft.PerfTrack.ni.dll [26624] O61 - LFC: 28/08/2013 - 19:15:02 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.PerfTrack\e5c4656ff7ce2ea48e31d19fe9f1e8f2\Microsoft.PerfTrack.ni.dll.aux [1264] O61 - LFC: 28/08/2013 - 19:15:02 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Platform\a04c8473b982cecb54b593881e6f9849\Platform.ni.dll.aux [7468] O61 - LFC: 28/08/2013 - 19:15:02 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Platform\a04c8473b982cecb54b593881e6f9849\Platform.ni.dll [6905856] O61 - LFC: 28/08/2013 - 19:15:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Trave4979206f#\e7ee8fefba704352a1594f42c2a787dd\AppEx.Travel.Services.ni.dll.aux [8012] O61 - LFC: 28/08/2013 - 19:15:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Travee71ecb87#\992e8a58b108d4c078b180bb1a557b3f\AppEx.Travel.Utilities.ni.dll.aux [2580] O61 - LFC: 28/08/2013 - 19:15:12 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Trave4979206f#\e7ee8fefba704352a1594f42c2a787dd\AppEx.Travel.Services.ni.dll [6963712] O61 - LFC: 28/08/2013 - 19:15:12 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Travee71ecb87#\992e8a58b108d4c078b180bb1a557b3f\AppEx.Travel.Utilities.ni.dll [53760] O61 - LFC: 28/08/2013 - 19:15:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Commo2e34e0d9#\3830fd34adeb5f54ba44cf8fafca9c35\AppEx.Common.EntityCollection.ni.dll.aux [1812] O61 - LFC: 28/08/2013 - 19:15:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Common\8a0db5b7229ce49dd845eac9dcf98e8c\AppEx.Common.ni.dll.aux [4420] O61 - LFC: 28/08/2013 - 19:15:14 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Commo2e34e0d9#\3830fd34adeb5f54ba44cf8fafca9c35\AppEx.Common.EntityCollection.ni.dll [187392] O61 - LFC: 28/08/2013 - 19:15:14 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\AppEx.Common\8a0db5b7229ce49dd845eac9dcf98e8c\AppEx.Common.ni.dll [1055744] O61 - LFC: 28/08/2013 - 19:15:16 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.W64cef312#\42949796c73e54f690519bc67b4c460d\Microsoft.WindowsAzure.Messaging.Managed.ni.dll [1037824] O61 - LFC: 28/08/2013 - 19:15:16 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.W64cef312#\42949796c73e54f690519bc67b4c460d\Microsoft.WindowsAzure.Messaging.Managed.ni.dll.aux [6928] O61 - LFC: 28/08/2013 - 19:33:07 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [340] O61 - LFC: 28/08/2013 - 19:33:07 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 [326] O61 - LFC: 28/08/2013 - 19:33:37 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] O61 - LFC: 28/08/2013 - 19:33:37 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] O61 - LFC: 28/08/2013 - 19:44:49 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\Content\7D1F03728133589A90656A87E482B21F [38443] O61 - LFC: 28/08/2013 - 19:44:49 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\7D1F03728133589A90656A87E482B21F [256] O61 - LFC: 28/08/2013 - 20:05:38 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\4Free\Video Converter 3\index\indexversion.dat [24] O61 - LFC: 28/08/2013 - 20:20:18 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 [290] O61 - LFC: 28/08/2013 - 20:20:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\featuresc359114f-6b8c-499f-a2f3-920532e9cf8c[1].json [13041] O61 - LFC: 28/08/2013 - 20:20:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\6795803a-8517-45a2-8956-028a74549d33[1].png [7768] O61 - LFC: 28/08/2013 - 20:20:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\cc950027-7a41-4d11-bd9d-6f39c1081067[1].png [78718] O61 - LFC: 28/08/2013 - 20:20:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.197821[2].png [10361] O61 - LFC: 28/08/2013 - 20:20:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\b453fe27-a771-4bf3-99dd-c97d4d6d6237[1].png [62992] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\ac4e6560-ff09-4974-96fa-b08655bc39a9[1].png [12077] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\5f3d8352-9fe4-4db7-a969-4219cc802256[1].png [106110] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\d7589c62-10b7-4dbb-af94-2e72f9ef2aba[1].png [112468] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\e8403fe4-3a66-4db3-b368-c4ee03e30c33[1].png [108913] O61 - LFC: 28/08/2013 - 20:20:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\eba0cc57-0c68-432d-bce7-055677956cba[1].png [47101] O61 - LFC: 28/08/2013 - 20:20:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\30aa86bf-cedc-4503-8e72-014c52351947[1].png [19496] O61 - LFC: 28/08/2013 - 20:20:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\9a9fd586-6efb-4768-a0a4-7a656ca1a1da[1].png [24199] O61 - LFC: 28/08/2013 - 20:20:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\a3fd444b-d243-4c50-a71f-7f205c875ed6[1].png [51423] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\89cb5a1e-b4bd-4736-b2df-cff6c63ffb3a[1].png [239546] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\0083b07b-d9b3-4d4b-838a-20a702c4f693[1].png [26348] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\4e3f7bdb-e2d3-4dba-a3e2-a807e2b75557[1].png [37085] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\613199ae-d287-4360-96a1-7dc4210010d3[1].png [81125] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\8d240384-f583-4a44-9add-94cd5c39927a[1].png [11481] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\7bfda8b0-7b15-4b90-a899-cec7e2189963[1].png [11428] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\8c6f05a6-895b-4628-9090-d829ac3b8487[1].png [240446] O61 - LFC: 28/08/2013 - 20:20:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\4d0d3916-2ab6-4a4e-92d0-a1e0eff1288d[1].png [11684] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\0d0e1342-163f-45eb-8bb4-d115265e2b77[1].png [30320] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\2fc01e4b-0665-4fdb-a210-d72474983b5d[1].png [11581] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\4c1b6862-22c6-4029-8f65-b806b1a2bba9[1].png [53331] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\5a9d2eae-d779-4bae-8675-a6beb2c9045f[1].png [121935] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\8a73937e-a9e1-4ca0-b5de-87a10b699870[1].png [22158] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\4b643f1a-381b-497f-9607-279de3b8b4d4[1].png [12990] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\d66bdb29-0a8c-4abd-b254-f4681f053823[1].png [14572] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\27171256-a42f-41a3-9af0-b8d1cf1bfc07[1].png [315758] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\43ffbaab-03ec-40df-933c-56add8fa8d84[1].png [21226] O61 - LFC: 28/08/2013 - 20:20:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\9f7e4c5d-d11d-4050-84ab-4190f2c028aa[1].png [15877] O61 - LFC: 28/08/2013 - 20:20:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\871aaca7-1dbb-43c4-b64e-e4a7ce09f120[1].png [35933] O61 - LFC: 28/08/2013 - 20:20:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\3bfbfcc2-bfbf-443c-8f43-4891245e3bc8[1].png [477298] O61 - LFC: 28/08/2013 - 20:20:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\3c19a863-fed7-47a9-999d-bdd6fb6d29e6[1].png [49120] O61 - LFC: 28/08/2013 - 20:20:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\82bbc4b1-eb8d-45b1-b522-04479342b033[1].png [481668] O61 - LFC: 28/08/2013 - 20:20:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\c9469f10-e45b-4369-a3ee-a1cad0441479[1].png [233395] O61 - LFC: 28/08/2013 - 20:20:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.3838[1].png [1044] O61 - LFC: 28/08/2013 - 20:20:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\5\5-https???wscont.apps.microsoft.com?winstore?6.2?667?WW?fr-fr?0?12?Updates.htm.dat [632] O61 - LFC: 28/08/2013 - 20:20:55 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.220[1].png [1249] O61 - LFC: 28/08/2013 - 20:20:55 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.421[1].png [509] O61 - LFC: 28/08/2013 - 20:21:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\5\5-https???wscont.apps.microsoft.com?winstore?6.2?667?WW?fr-fr?0?12?Installs.htm.dat [798] O61 - LFC: 28/08/2013 - 20:21:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\LocalState\LiveComm.etl [131072] O61 - LFC: 28/08/2013 - 20:21:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\LocalState\LiveComm\nouser\120712-0049\DBStore\livecomm.edb [6307840] O61 - LFC: 28/08/2013 - 20:21:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\LocalState\Microsoft.WindowsLive.ModernPhotos.etl [1048576] O61 - LFC: 28/08/2013 - 20:21:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\LocalState\ModernPhoto.edb [54558720] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.24304[1].png [2160] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.65723[1].png [1443] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.62528[1].png [721] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.77234[1].png [1593] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.31234[1].png [3763] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.69207[1].png [2857] O61 - LFC: 28/08/2013 - 20:23:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.8779[1].png [1857] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.100387[1].png [3209] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.133471[1].png [5178] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.25964[1].png [2105] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.26307[1].png [217] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.33823[1].png [4425] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.60019[1].png [918] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.81725[1].png [6178] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.88398[1].png [3512] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.90296[1].png [2803] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.159562[1].png [1471] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.179685[1].png [3284] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.192573[1].png [3233] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.217849[1].png [1124] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.222202[1].png [6869] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.31332[1].png [371] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.40563[1].png [1353] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.53497[1].png [333] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.96908[1].png [3871] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.143019[1].png [4148] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.161432[1].png [2162] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.179790[1].png [3639] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.180181[1].png [5631] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.221119[1].png [5986] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.33611[1].png [4603] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.83456[1].png [480] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.8977[1].png [1857] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.125796[1].png [908] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.153623[1].png [5254] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.18912[1].png [6887] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.208828[1].png [4207] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.35115[1].png [8256] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.53748[1].png [856] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.83826[1].png [724] O61 - LFC: 28/08/2013 - 20:23:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.85716[1].png [1461] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.119694[1].png [4930] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.120846[1].png [4394] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.15932[1].png [3977] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.164495[1].png [1885] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.173084[1].png [1789] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.184255[1].png [3036] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.199588[1].png [4625] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.205187[1].png [1598] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.23748[1].png [3036] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.64267[1].png [3305] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.81244[1].png [3265] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.86219[1].png [3649] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.9043[1].png [2343] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.114175[1].png [3077] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.119599[1].png [4188] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.169500[1].png [1671] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.189602[1].png [1740] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.203632[1].png [4131] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.49738[1].png [567] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.55971[1].png [2774] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.61136[1].png [5455] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.79916[1].png [855] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.93372[1].png [1810] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.95244[1].png [5060] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.96575[1].png [4401] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.97142[1].png [6714] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.149379[1].png [1268] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.188333[1].png [9375] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.202051[1].png [5945] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.226469[1].png [783] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.22828[1].png [723] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.35560[1].png [3614] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.36078[1].png [1630] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.39406[1].png [5734] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.44944[1].png [4174] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.48820[1].png [4045] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.49725[1].png [1043] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.49731[1].png [1043] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.55779[1].png [353] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.92740[1].png [1658] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.106644[1].png [900] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.113138[1].png [22366] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.127476[1].png [4643] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.145015[1].png [1644] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.209605[1].png [1363] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.24491[1].png [326] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.4335[1].png [1179] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.47673[1].png [4106] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.58626[1].png [6796] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.61569[1].png [7594] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.86924[1].png [2500] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.93034[1].png [5060] O61 - LFC: 28/08/2013 - 20:23:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.97264[1].png [1546] O61 - LFC: 28/08/2013 - 20:23:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.76915[1].png [2237] O61 - LFC: 28/08/2013 - 20:25:18 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheConfigurationCache\19ae72c1-13b5-4274-a586-9c3dd2a184f3 [49812] O61 - LFC: 28/08/2013 - 20:25:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheAlertsCache\6ab6074d-5ee5-4f53-9889-21c6c40f3ffa [153] O61 - LFC: 28/08/2013 - 20:25:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheCurrentConditionsAndForecastCache\25ddcdc0-6882-4e15-8021-c47c93f7ab78 [16330] O61 - LFC: 28/08/2013 - 20:25:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheHistoricalWeatherCache\b02cfa38-3bdd-46cd-b39c-11793e08f0c0 [5558] O61 - LFC: 28/08/2013 - 20:25:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheWeatherInteractiveMapsClusterCache\a0f8e03a-30c8-4cbf-ac95-1cfa25249804 [2466] O61 - LFC: 28/08/2013 - 20:25:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\fb7dc987-d6c0-4864-8de9-8820cf2de992 [127159] O61 - LFC: 28/08/2013 - 20:25:24 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [302] O61 - LFC: 28/08/2013 - 20:25:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheHourlyForecastWeatherCache\078abc6e-b7f1-433e-9bb6-facc1ffdac50 [28747] O61 - LFC: 28/08/2013 - 20:25:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\2d40a9e5-0c81-4fe6-9841-99598afb52af [135126] O61 - LFC: 28/08/2013 - 20:25:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\4bfe6eb6-13f9-452e-9553-e90117afc181 [113419] O61 - LFC: 28/08/2013 - 20:25:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\eb171de2-476b-4c50-b153-a871b6d985d3 [19259] O61 - LFC: 28/08/2013 - 20:25:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\INetCache\POU4AFVC\adsadclient31[2].htm [0] O61 - LFC: 28/08/2013 - 20:25:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\INetCookies\Z2D3ANBH.txt [101] O61 - LFC: 28/08/2013 - 20:25:54 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] O61 - LFC: 28/08/2013 - 20:25:54 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheAlertsCache\_CacheMetadata.bin [759] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheConfigurationCache\_CacheMetadata.bin [344] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheCurrentConditionsAndForecastCache\_CacheMetadata.bin [2904] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheGetStartedCache\_CacheMetadata.bin [506] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheHistoricalWeatherCache\_CacheMetadata.bin [1611] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheHourlyForecastWeatherCache\_CacheMetadata.bin [2304] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheMapsImageFrameCache\_CacheMetadata.bin [13605] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheNearbyResortsByLatLongCache\_CacheMetadata.bin [1019] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheNextStepsCache\_CacheMetadata.bin [502] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheStaticMapsImageCache\_CacheMetadata.bin [8655] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheTileCache\_CacheMetadata.bin [1477] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheTodayAdFeedCache\_CacheMetadata.bin [539] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheVirtualEarthSearchByNameCache\_CacheMetadata.bin [684] O61 - LFC: 28/08/2013 - 20:26:19 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\Cache\cacheWeatherInteractiveMapsClusterCache\_CacheMetadata.bin [1167] O61 - LFC: 28/08/2013 - 20:27:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\LocalState\InstrumentationData.xml [226] O61 - LFC: 28/08/2013 - 20:28:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\Settings\settings.dat [262144] O61 - LFC: 28/08/2013 - 20:28:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\LocalState\LiveComm.etl [131072] O61 - LFC: 28/08/2013 - 20:28:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\LocalState\LiveComm\nouser\120712-0049\DBStore\livecomm.edb [6307840] O61 - LFC: 28/08/2013 - 20:28:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat [8192] O61 - LFC: 29/08/2013 - 12:26:17 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\bl.db [5120] O61 - LFC: 29/08/2013 - 12:26:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero StartSmart\cache\flg.dat [4] O61 - LFC: 29/08/2013 - 12:27:02 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\Nero Burning ROM\UserImages.bmp [43062] O61 - LFC: 29/08/2013 - 16:44:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero StartSmart\cache\ext.dat [1132923] O61 - LFC: 29/08/2013 - 16:44:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero StartSmart\cache\nrm.dat [817674] O61 - LFC: 29/08/2013 - 17:34:04 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\NeroVision\NeroVisionLog.txt [375] O61 - LFC: 29/08/2013 - 17:34:04 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\NeroVision\nve-am.bin [96] O61 - LFC: 29/08/2013 - 17:34:04 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\NeroVision\nve-mtmpl.bin [12] O61 - LFC: 29/08/2013 - 17:34:04 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Ahead\NeroVision\nve-vobmap.bin [48] O61 - LFC: 29/08/2013 - 17:45:43 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\HTML Help\hh.dat [8854] O61 - LFC: 29/08/2013 - 18:11:11 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\WinRAR\version.dat [12] O61 - LFC: 29/08/2013 - 18:25:08 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Platform\c37edb77e02bfdeca95467376cde2c94\Platform.ni.dll.aux [7468] O61 - LFC: 29/08/2013 - 18:25:08 ---A- . (.Microsoft.) -- C:\Users\Angélique\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Platform\c37edb77e02bfdeca95467376cde2c94\Platform.ni.dll [6905856] O61 - LFC: 29/08/2013 - 18:45:33 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF8FCC70BAF\Disc_00123601-0002-0010-D99D-AFF8FCC70BAF\Info\FRA\Disc_Info_User.xml [1859] O61 - LFC: 29/08/2013 - 18:46:02 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\LocalData\Disc_00123601-0002-0010-D99D-AFF8FCC70BAF\Chapter\Title00\Chapter_Info.xml [973] O61 - LFC: 29/08/2013 - 18:46:03 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\LocalData\Disc_00123601-0002-0010-D99D-AFF8FCC70BAF\Chapter\Title00\ch005.JPG [41714] O61 - LFC: 29/08/2013 - 18:46:08 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF8FCC70BAF\Disc_00123601-0002-0010-D99D-AFF8FCC70BAF\Info\thumbnail.JPG [54756] O61 - LFC: 29/08/2013 - 18:46:09 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF8FCC70BAF\Info\FilmWatch_Info_User.xml [444] O61 - LFC: 29/08/2013 - 19:14:04 -SHA- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\AppCache\4K5O2AJ1\container.dat [0] O61 - LFC: 29/08/2013 - 19:19:16 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Windows Live\uxcore_WLXPhotoGalleryRepair_00.etl [8192] O61 - LFC: 29/08/2013 - 19:19:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Windows Live\uxcore_WLXPhotoGallery_00.etl [8192] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\background.html [100] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\background.js [1236] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\contentscript.js [2579] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\icon128.png [21925] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\icon16.png [764] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\icon48.png [4143] O61 - LFC: 29/08/2775 - 12:02:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Extensions\keaillmajpeodnbelalgeffidfcdgiem\1.125\manifest.json [1086] O61 - LFC: 30/08/2013 - 11:37:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\Settings\settings.dat [262144] O61 - LFC: 30/08/2013 - 11:41:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\TempCover2 [0] O61 - LFC: 30/08/2013 - 11:44:31 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\SID.db [2810] O61 - LFC: 30/08/2013 - 11:44:31 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\SII.db [98] O61 - LFC: 30/08/2013 - 11:44:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\idx\_22.cfs [50713] O61 - LFC: 30/08/2013 - 11:44:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\idx\deletable [4] O61 - LFC: 30/08/2013 - 11:44:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\idx\segments [28] O61 - LFC: 30/08/2013 - 11:44:38 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\is2.db [73728] O61 - LFC: 30/08/2013 - 11:59:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Ahead\Nero Home\crawlercfg.dat [3074] O61 - LFC: 30/08/2013 - 11:59:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\Nero422ba7b75153400ab88900ff7e84571d.nri [20217] O61 - LFC: 30/08/2013 - 12:01:29 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\ImgBurn\Graph Data Files\hp_DVD-RAM_GH82N_R204_VENDREDI-30-AOÛT-2013_13-00_TDK601saku.ibg [11502] O61 - LFC: 30/08/2013 - 12:01:41 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\CyberLink\PowerDVD10\Remix\Circle.png [424] O61 - LFC: 30/08/2013 - 12:01:41 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\CyberLink\PowerDVD10\Remix\LineGreen.png [144] O61 - LFC: 30/08/2013 - 12:01:41 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\CyberLink\PowerDVD10\Remix\TextAnimation.png [1754] O61 - LFC: 30/08/2013 - 12:01:47 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF5FCC70BAA\Disc_00123601-0002-0010-D99D-AFF5FCC70BAA\Info\FRA\Disc_Info_User.xml [1859] O61 - LFC: 30/08/2013 - 12:02:20 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\LocalData\Disc_00123601-0002-0010-D99D-AFF5FCC70BAA\Chapter\Title00\Chapter_Info.xml [973] O61 - LFC: 30/08/2013 - 12:03:06 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Misc\Resuming_Info.bin [3584] O61 - LFC: 30/08/2013 - 12:03:06 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Misc\Resuming_Info.map [525] O61 - LFC: 30/08/2013 - 12:03:06 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF5FCC70BAA\Disc_00123601-0002-0010-D99D-AFF5FCC70BAA\Info\thumbnail.JPG [45491] O61 - LFC: 30/08/2013 - 12:03:07 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\LocalStorage_V2\DefaultMember\Movie_00123601-0002-0010-D99D-AFF5FCC70BAA\Info\FilmWatch_Info_User.xml [444] O61 - LFC: 30/08/2013 - 12:03:10 ---A- . (...) -- C:\Users\Angélique\Documents\CyberLink\PowerDVD10\JumpList\JumpList.xml [172] O61 - LFC: 30/08/2013 - 12:06:24 ---A- . (...) -- C:\Users\Angélique\AppData\default.pls [42] O61 - LFC: 30/08/2013 - 12:10:52 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Excel12.pip [1544] O61 - LFC: 30/08/2013 - 12:36:00 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\4Free\Video Converter 3\action_new.js [289] O61 - LFC: 30/08/2013 - 12:39:16 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{3E83A91D-12D5-4db6-99BC-4A995AF5469F}.dll [1077248] O61 - LFC: 30/08/2013 - 12:39:16 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{73D37BB6-72D4-4697-90CB-6CA7BF0FC8B7}.dll [1077248] O61 - LFC: 30/08/2013 - 12:39:16 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{F361030F-9683-4b77-B295-CA9D466861FC}.dll [1077248] O61 - LFC: 30/08/2013 - 12:39:16 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{F90F81F0-4282-4554-A8C5-4C73AF3A119D}.dll [1077248] O61 - LFC: 30/08/2013 - 12:39:17 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{D5850F2C-D1C3-40cd-8ACB-263E6D187E5B}.dll [1077248] O61 - LFC: 30/08/2013 - 12:39:18 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{3089C7D5-691D-4756-BABA-9BE754830C1B}.dll [1077248] O61 - LFC: 30/08/2013 - 12:39:18 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{7D0EE474-CDD2-46be-8FF4-D8F4C758DED7}.dll [1077248] O61 - LFC: 30/08/2013 - 12:39:18 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{F8F0585E-E854-4816-B0D9-01526C7A0897}.dll [1077248] O61 - LFC: 30/08/2013 - 12:45:38 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{30ED0745-D032-4628-A918-C6540E2EF512}.dll [1077248] O61 - LFC: 30/08/2013 - 12:45:39 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{5A8A27F5-A2BA-41cf-B8DC-1D00A4CA18A0}.dll [1077248] O61 - LFC: 30/08/2013 - 12:45:39 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{72EF739A-B3D8-40b8-9570-6DCBB01F453E}.dll [1077248] O61 - LFC: 30/08/2013 - 12:45:39 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{EBCF21DD-B59C-464b-B02E-4C482B6E5644}.dll [1077248] O61 - LFC: 30/08/2013 - 12:45:40 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{56F4DBCB-0E13-47ab-83AC-875D4570C539}.dll [1077248] O61 - LFC: 30/08/2013 - 12:45:40 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{5CD91BB2-9084-4234-A0CC-C535B1A68C30}.dll [1077248] O61 - LFC: 30/08/2013 - 12:45:40 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{848C2C78-C75C-4fa0-B580-67AEB53E3FC4}.dll [1077248] O61 - LFC: 30/08/2013 - 12:45:40 ---A- . (.4Free Software Studio.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{8A4F0F79-AECD-49dc-92A7-0075FB4741A0}.dll [1077248] O61 - LFC: 30/08/2013 - 14:38:22 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [302] O61 - LFC: 30/08/2013 - 14:38:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\features25ec7526-bd61-4d98-afe1-e0e03835f365[1].json [13048] O61 - LFC: 30/08/2013 - 14:38:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-Featured-https???next-services.apps.microsoft.com?browse?6.2.9200-1?667?c?FR?Featured?10810363.dat [7512] O61 - LFC: 30/08/2013 - 14:38:23 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-HomePageData-https???next-services.apps.microsoft.com?browse?6.2.9200-1?667?fr-FR_fr-FR?c?FR?cp?10011709?HomePageData?pt?x64?lf?1?os?edition?type.dat [2604] O61 - LFC: 30/08/2013 - 14:38:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\c646e50b-19b8-498e-aace-14894d499c4d[1].png [9851] O61 - LFC: 30/08/2013 - 14:38:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-Topic-https???next-services.apps.microsoft.com?browse?6.2.9200-1?667?fr-FR_fr-FR?c?FR?Topic?10788021.dat [26292] O61 - LFC: 30/08/2013 - 14:38:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\52bb6939-95fc-4420-bddd-1e9e9b07b6c0[1].png [59275] O61 - LFC: 30/08/2013 - 14:38:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\5b3e5e9f-4c47-4031-a41c-0a6ea150647d[1].png [69589] O61 - LFC: 30/08/2013 - 14:38:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\c8291738-8d74-43a7-a578-3ad3422e2cf7[1].png [103645] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.5410[2].png [2182] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\6ecc9322-f0e1-4fed-b5ea-de2577630813[1].png [10644] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\bda43080-d4a3-43eb-8ad4-431905d9d384[1].png [238975] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\3e2a2a5e-e73d-489f-9518-192240ed2bbc[1].png [104997] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\afd4e7cd-d9c0-4419-a91c-6ae41abba94a[1].png [18410] O61 - LFC: 30/08/2013 - 14:38:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\ef9ca4bf-49e7-4174-8a62-4dc66e5b9dab[1].png [95864] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\9b4ac61e-fffc-43fd-b915-1ab1281d8887[1].png [6868] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\c6c4942b-9515-4c0a-8f2c-bc4ec60e8936[1].png [32524] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\fa373634-3305-4627-bb37-16ec19b90fd0[1].png [28826] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\084944b0-bb5b-41a0-b764-ba5c3ff9e7af[1].png [348995] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\4cf6207c-39cc-48ea-9e8b-fffc8859dcb8[1].png [14763] O61 - LFC: 30/08/2013 - 14:38:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\65ec3112-c90a-488f-a367-4453f38d985f[1].png [35467] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\11ad9b83-0b12-461a-bca0-9e571a279407[1].png [112484] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\4ab968b7-1e60-4b6b-a36b-f9b0b3143eea[1].png [46992] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\58de5df5-6b01-47af-a624-cb2a95c07df3[1].png [36930] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\5db57a4c-447d-47fb-9026-3f957efdc5a5[1].png [10353] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\b39f286b-20ca-49e8-b178-0009e593de39[1].png [9347] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\69631937-6980-4157-be44-4572f7542968[1].png [9136] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\019cfe70-1dcd-4ae0-8563-ce0df60e2fff[1].png [8719] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\3a26f5e7-4e0c-4841-a7c1-48bcce891157[1].png [126004] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\681f5256-69d3-4bf2-b0c0-3f8bf082d26e[1].png [43104] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\cb48a29d-5b05-4ff7-8970-062f39c34077[1].png [22686] O61 - LFC: 30/08/2013 - 14:38:28 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\d56c97d7-aefb-4db5-9a51-335bef474244[1].png [17537] O61 - LFC: 30/08/2013 - 14:38:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\1bd1ce17-8417-4f8e-aefe-0173e41b3a8e[1].png [183262] O61 - LFC: 30/08/2013 - 14:38:30 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\92aaf530-5f84-4d93-893e-3174130db403[1].png [372705] O61 - LFC: 30/08/2013 - 14:38:30 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\5013c294-1616-4428-be48-8611bf2697a2[1].png [615158] O61 - LFC: 30/08/2013 - 14:38:36 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-ReviewList-https???next-services.apps.microsoft.com?4R?6.2.9200-1?667?fr-FR?m?FR?Apps?a665892e-2670-4120-a088-c5ab2e23e4a9?Reviews?all?s?date?1?pn?1.dat [8144] O61 - LFC: 30/08/2013 - 14:38:37 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.221547[1].png [4165] O61 - LFC: 30/08/2013 - 14:38:52 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] O61 - LFC: 30/08/2013 - 14:38:52 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] O61 - LFC: 30/08/2013 - 14:39:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.3940[1].png [853] O61 - LFC: 30/08/2013 - 14:39:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.4069[1].png [388] O61 - LFC: 30/08/2013 - 14:39:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.4250[1].png [836] O61 - LFC: 30/08/2013 - 14:39:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.4043[1].png [265] O61 - LFC: 30/08/2013 - 14:40:46 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\5\5-https???wscont.apps.microsoft.com?winstore?6.2?667?WW?fr-fr?0?12?Topic.htm.dat [802] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.139531[1].png [1298] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.175126[1].png [429] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.102667[1].png [6136] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.127924[1].png [4687] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.178206[1].png [1319] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.32547[1].png [6078] O61 - LFC: 30/08/2013 - 14:40:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.64010[1].png [3105] O61 - LFC: 30/08/2013 - 14:40:55 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\2\2-GetUpdateList.dat [0] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.197935[1].png [3816] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.201568[1].png [996] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.45587[1].png [910] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.31359[1].png [1803] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.184277[1].png [5055] O61 - LFC: 30/08/2013 - 14:41:06 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.56267[1].png [2889] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.132657[1].png [876] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.79567[1].png [4946] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.14806[1].png [5906] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.30554[1].png [6250] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.48945[1].png [8355] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.64579[1].png [5005] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.85988[1].png [2167] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.21060[1].png [2048] O61 - LFC: 30/08/2013 - 14:41:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.50274[1].png [938] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.157156[1].png [6706] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.159630[1].png [4665] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.64167[1].png [9246] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.19068[1].png [339] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.220640[1].png [5415] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.744[1].png [1493] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.79455[1].png [4855] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.110261[1].png [2474] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.124088[1].png [1282] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.5209[1].png [2772] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.6543[1].png [1139] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.125969[1].png [6414] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.25739[1].png [3759] O61 - LFC: 30/08/2013 - 14:41:56 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.338[1].png [1698] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.169087[1].png [1765] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.2019[1].png [5355] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.212150[1].png [9988] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.215110[1].png [5273] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.216808[1].png [1908] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.65901[1].png [7302] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.711[1].png [2593] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.77947[1].png [7526] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.102051[1].png [1795] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.185543[1].png [4559] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.56443[1].png [1639] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.56689[1].png [5783] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.5834[1].png [3009] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.8769[1].png [6307] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.9208[1].png [1405] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.220639[1].png [5000] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.220641[1].png [6027] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.2361[1].png [3866] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.44377[1].png [2288] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.7400[1].png [6873] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.761[1].png [7986] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.9005[1].png [1245] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.117800[1].png [3391] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.121411[1].png [3060] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.125944[1].png [6959] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.173132[1].png [2143] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.17800[1].png [3295] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.17852[1].png [3135] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.19054[1].png [3222] O61 - LFC: 30/08/2013 - 14:41:57 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.31763[1].png [1903] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.102000[1].png [7116] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.107842[1].png [5961] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.152424[1].png [6331] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.190228[1].png [6011] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.212267[1].png [2028] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.214356[1].png [2516] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.21506[1].png [3172] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.47712[1].png [3777] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.5167[1].png [7455] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.73253[1].png [937] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.85275[1].png [5767] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.92133[1].png [8498] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.100837[1].png [2182] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.12214[1].png [8806] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.166223[1].png [5837] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.197334[1].png [5338] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.221916[1].png [10038] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.33760[1].png [2201] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.78469[1].png [2202] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.9635[1].png [3633] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.99950[1].png [8106] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.142589[1].png [8876] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.20291[1].png [5802] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.2596[1].png [4014] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.37033[1].png [1703] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.46028[1].png [8679] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.46257[1].png [8440] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.48343[1].png [2025] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.5932[1].png [4304] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.70889[1].png [2860] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.85076[1].png [7031] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.109571[1].png [4345] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.120214[1].png [3038] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.1774[1].png [3717] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.19061[1].png [10339] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.220638[1].png [6161] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.220643[1].png [8014] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.46647[1].png [10071] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.60008[1].png [10188] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.66599[1].png [6335] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.752[1].png [1192] O61 - LFC: 30/08/2013 - 14:41:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.96413[1].png [7504] O61 - LFC: 30/08/2013 - 14:42:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-ReviewList-https???next-services.apps.microsoft.com?4R?6.2.9200-1?667?fr-FR?m?FR?Apps?8b86b19a-7c3d-4caa-a8f1-295a832c7423?Reviews?all?s?date?1?pn?1.dat [6190] O61 - LFC: 30/08/2013 - 14:42:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\PEGI_12[1].png [5147] O61 - LFC: 30/08/2013 - 14:42:21 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\PEGI_gambling[1].png [17957] O61 - LFC: 30/08/2013 - 14:42:26 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\1\1-StartService.dat [0] O61 - LFC: 30/08/2013 - 14:42:55 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8 [1891] O61 - LFC: 30/08/2013 - 14:42:55 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [302] O61 - LFC: 30/08/2013 - 14:42:55 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 [290] O61 - LFC: 30/08/2013 - 14:42:56 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF [1582] O61 - LFC: 30/08/2013 - 14:42:58 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4 [1891] O61 - LFC: 30/08/2013 - 14:42:59 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_2FFE778CED2FD9BBAB74B5314F3440CA [1999] O61 - LFC: 30/08/2013 - 14:42:59 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F [21415] O61 - LFC: 30/08/2013 - 14:42:59 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092 [727] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_2FFE778CED2FD9BBAB74B5314F3440CA [414] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4 [426] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8 [430] O61 - LFC: 30/08/2013 - 14:43:26 -S-A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\windows_ie_ac_001\AC\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF [404] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.107869[1].png [7431] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.16781[1].png [8977] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.2207[1].png [2829] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.31040[1].png [3447] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.61711[1].png [2734] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.87960[1].png [10572] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.110994[1].png [3980] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.170653[1].png [9460] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.212273[1].png [7807] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.88789[1].png [7586] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.153289[1].png [8672] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.192860[1].png [2918] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.223854[1].png [9183] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.28826[1].png [7664] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.40240[1].png [4089] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.46083[1].png [10242] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.57142[1].png [10182] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.21499[1].png [2978] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.215730[1].png [4403] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.5065[1].png [5978] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.52008[1].png [6236] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.5875[1].png [2583] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.75629[1].png [1035] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.82970[1].png [870] O61 - LFC: 30/08/2013 - 14:43:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.94208[1].png [8961] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.156723[1].png [1182] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.182382[1].png [3485] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.25893[1].png [1513] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\LSJZ8T4B\Icon.40915[1].png [9992] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.100856[1].png [3477] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.150843[1].png [8477] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.64232[1].png [10423] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.81519[1].png [7222] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.91790[1].png [9589] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\OPDPVSC8\Icon.92213[1].png [8265] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.102002[1].png [6108] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.18967[1].png [6737] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.225610[1].png [1797] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.60836[1].png [3462] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\PNCCUIJZ\Icon.81124[1].png [9125] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.101437[1].png [5696] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.151635[1].png [7945] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.187413[1].png [4216] O61 - LFC: 30/08/2013 - 14:43:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\INetCache\XU93ZPE2\Icon.73768[1].png [9332] O61 - LFC: 30/08/2013 - 14:43:49 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\0\0-ReviewList-https???next-services.apps.microsoft.com?4R?6.2.9200-1?667?fr-FR?m?FR?Apps?fcf02d0b-229a-4f8e-9d8e-59e1e44bdd81?Reviews?all?s?date?1?pn?1.dat [5454] O61 - LFC: 30/08/2013 - 14:44:30 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Data\history.dat [676] O61 - LFC: 30/08/2013 - 14:45:32 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\wmplog05.sqm [2040] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\Branding\DefaultSkin\OptionFormBackground.skin [389] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\Branding\DefaultSkin\OptionFormToolbar.skin [5019] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\Branding\DefaultSkin\SkinName.txt [16] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\Branding\ResourceStrings.txt [2376] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Config\PreferencesConfig.xml [18461] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Config\PreferencesConfig_ff.xml [17301] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Config\ToolbarConfig.xml [160575] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Config\ToolbarConfig_ff.xml [169769] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\FileRepositoryVersionDefinition.xsd [1467] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AboutLogoIcon.ico [6518] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertButton.png [494] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertEmail.png [565] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertEmailElementDisplay.png [581] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertEmptyButton.png [505] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertInboxEmail.png [565] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertInboxMultimedia.png [565] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertMMSElementDisplay.png [657] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertMultimedia.png [3260] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertMultimediaMessages.png [657] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\AlertSMSElementDisplay.png [657] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Bookmark.png [544] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\DesktopSearch.png [3495] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\HighlightButton.png [442] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\LogoButton.png [3537] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\OptionTabIconAdvanced.ico [26870] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\OptionTabIconCustomButtons.ico [26870] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\OptionTabIconPopupBlocker.ico [26870] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\OptionTabIconToolbar.ico [26870] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\OrangeLogo.png [369] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\PictoAide.png [400] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\PopupBlockerAlert.wav [22816] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\PopupBlockerAllowed.png [347] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\PopupBlockerBlocked.png [468] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\PopupBlockerCursor.cur [5494] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\PopupBlockerSiteOk.png [491] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SearchButton.png [645] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SendAddressBook.png [753] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SendButton.png [255] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SendEmail.png [494] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SendMultimediaMessage.png [655] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SendPageEmail.png [494] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SendPageTextMessage.png [567] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SendTextMessage.png [567] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SignIn.htm [538] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SignInImage.png [632] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SignOut.htm [564] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SignOutAuthentified.png [598] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\SignOutIdentified.png [598] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Thumbs.db [47104] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\TranslateButton.png [287] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\WeatherLocations.xml [5492] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\WeatherLocations.xml.new [7256] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\0.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\1.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\10.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\11.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\12.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\13.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\14.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\15.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\16.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\17.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\18.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\19.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\2.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\20.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\21.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\22.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\23.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\24.bmp [696] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\25.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\26.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\27.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\28.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\29.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\3.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\30.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\31.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\32.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\33.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\34.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\35.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\36.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\37.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\38.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\39.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\4.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\40.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\41.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\42.bmp [1016] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\43.bmp [1016] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\44.bmp [1016] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\45.bmp [1016] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\46.bmp [1016] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\5.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\6.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\7.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\8.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\9.bmp [1396] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\OrangeWeather.xsl [868] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\Thumbs.db [7168] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\Weather.xgr [281] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\Weather1.xgr [1091] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\Weather2.xgr [934] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\Weather\Weather3.xgr [355] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\pict_actu.png [428] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\pict_img.png [634] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\pict_monde.png [839] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\pict_search.png [645] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\pict_shop.png [467] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\pict_site.png [289] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\Resources\pict_wiki.png [3030] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\UpgradeInfo.xml [729] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\FileRepository\102\VersionDefinition.xml [18112] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\License.txt [3029] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\Files\ToolbarHelper.tlb [2464] O61 - LFC: 30/08/2013 - 17:07:22 ---A- . (.France Telecom SA.) -- C:\Users\Angélique\AppData\Local\Temp\ToolbarInstaller\OrangeToolbar.exe [1732720] O61 - LFC: 30/08/2013 - 17:35:48 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\wmplog06.sqm [1880] O61 - LFC: 30/08/2013 - 17:44:45 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\wmplog07.sqm [1880] O61 - LFC: 30/08/2013 - 17:46:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\wmplog08.sqm [1784] O61 - LFC: 30/08/2013 - 17:46:31 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\wmplog09.sqm [1784] O61 - LFC: 30/08/2013 - 17:52:31 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\wmplog10.sqm [1880] O61 - LFC: 30/08/2013 - 18:02:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\wmplog11.sqm [1784] O61 - LFC: 30/08/2013 - 18:16:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\86626933.od [134] O61 - LFC: 30/08/2013 - 18:16:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\CVRD275.tmp.cvr [0] O61 - LFC: 30/08/2013 - 18:54:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Microsoft\Office\Word12.pip [1684] O61 - LFC: 30/08/2013 - 19:07:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315749_stp.CIS [9735] O61 - LFC: 30/08/2013 - 19:07:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315749_stp.CIS.part [20] O61 - LFC: 30/08/2013 - 19:07:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315845_stp.CIS [160718] O61 - LFC: 30/08/2013 - 19:07:54 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315845_stp.CIS.part [21] O61 - LFC: 30/08/2013 - 19:07:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315752_stp.CIS [787071] O61 - LFC: 30/08/2013 - 19:07:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315752_stp.CIS.part [27] O61 - LFC: 30/08/2013 - 19:07:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315934_stp.CIS [501103] O61 - LFC: 30/08/2013 - 19:07:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315934_stp.CIS.part [24] O61 - LFC: 30/08/2013 - 19:08:05 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\latest.zpb [356752] O61 - LFC: 30/08/2013 - 19:08:10 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\bab098.claroico.zpb [953] O61 - LFC: 30/08/2013 - 19:08:10 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\bab138.deltatb_dmn.zpb [254] =>Toolbar.DeltaSearch O61 - LFC: 30/08/2013 - 19:08:10 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\bab457.TB_NewWay.dat [173] O61 - LFC: 30/08/2013 - 19:08:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\bab149.spreg.zpb [299] O61 - LFC: 30/08/2013 - 19:08:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\BUsolution_enh_1004.zpb [231193] O61 - LFC: 30/08/2013 - 19:08:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315711_stp.CIS [7509413] O61 - LFC: 30/08/2013 - 19:08:12 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\is45637729\315711_stp.CIS.part [93] O61 - LFC: 30/08/2013 - 19:08:13 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\GUninstaller_new.zpb [139448] O61 - LFC: 30/08/2013 - 19:08:14 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\ccp_wk.zpb [227530] O61 - LFC: 30/08/2013 - 19:08:15 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\DeltaChromeTB_new.zpb [79850] O61 - LFC: 30/08/2013 - 19:08:17 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\DSearchLink_DTTS.zpb [54577] O61 - LFC: 30/08/2013 - 19:08:24 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eooncjejnppfjjklapaamhcdmjbilmde_0.localstorage [3072] O61 - LFC: 30/08/2013 - 19:08:25 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\DeltaTB.zpb [1681832] =>Toolbar.DeltaSearch O61 - LFC: 30/08/2013 - 19:10:45 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\MSI7900e.LOG [388] O61 - LFC: 30/08/2013 - 19:10:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\avgchrome\avgp [1531] O61 - LFC: 30/08/2013 - 19:11:03 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\nsnD874.tmp\System.dll [11264] O61 - LFC: 30/08/2013 - 19:11:04 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\nsnD874.tmp\UserInfo.dll [4096] O61 - LFC: 30/08/2013 - 19:11:05 ---A- . (.Andrei Ciubotaru [Hardwired].) -- C:\Users\Angélique\AppData\Local\Temp\nsnD874.tmp\Processes.dll [57344] O61 - LFC: 30/08/2013 - 19:11:06 ---A- . (.TODO: .) -- C:\Users\Angélique\AppData\Local\Temp\nsnD874.tmp\chrmPref.dll [212992] O61 - LFC: 30/08/2013 - 19:11:07 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\tempfile.t [0] O61 - LFC: 30/08/2013 - 19:12:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\nsj9AAA.tmp\System.dll [11264] O61 - LFC: 30/08/2013 - 19:12:58 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\nsj9AAA.tmp\UserInfo.dll [4096] O61 - LFC: 30/08/2013 - 19:12:58 ---A- . (.Andrei Ciubotaru [Hardwired].) -- C:\Users\Angélique\AppData\Local\Temp\nsj9AAA.tmp\Processes.dll [57344] O61 - LFC: 30/08/2013 - 19:12:58 ---A- . (.TODO: .) -- C:\Users\Angélique\AppData\Local\Temp\nsj9AAA.tmp\chrmPref.dll [212992] O61 - LFC: 30/08/2013 - 19:36:51 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Chrome\User Data\Default\Preferences [1531] O61 - LFC: 30/08/2013 - 20:28:11 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Garmin\Express.exe_Url_44vgoklnmwzol3f5bx0zhrwgflwejvvx\2.2.17.0\user.config [1345] O61 - LFC: 30/08/2013 - 20:52:17 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\~DF5F75EB99DB5DD288.TMP [393216] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\0320923636.data [739] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\0320923636.quar [794] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3452010340.data [735] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3452010340.quar [258] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5220391143.data [801] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5220391143.quar [396] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\7365576775.data [776] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\8024629897.data [737] O61 - LFC: 30/08/2013 - 20:56:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\8024629897.quar [1360] O61 - LFC: 30/08/2013 - 20:56:58 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-30 (21-53-19).txt [6296] O61 - LFC: 30/08/2013 - 20:56:58 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\7365576775.quar [17737608] O61 - LFC: 30/08/2013 - 20:56:58 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\8508759430.data [776] O61 - LFC: 30/08/2013 - 20:56:58 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\8508759430.quar [17737608] O61 - LFC: 31/08/2013 - 08:38:16 --HA- . (...) -- C:\Users\Angélique\AppData\Local\IconCache.db [227420] O61 - LFC: 31/08/2013 - 08:39:29 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\fr.orange.assistancelivebox\Local Store\ALB.db [9216] O61 - LFC: 31/08/2013 - 08:39:37 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\RedboxLog.txt [24662] O61 - LFC: 31/08/2013 - 08:39:42 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Google\Toolbar Cache\7.5.4413.1752\fr\translate_element.js.content [2381] O61 - LFC: 31/08/2013 - 08:39:44 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Google\Local Search History\google%2Eweb.w [0] O61 - LFC: 31/08/2013 - 08:40:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\ATI\ACE\Manifest.Bin [28165] O61 - LFC: 31/08/2013 - 08:40:29 ---A- . (...) -- C:\Users\Angélique\AppData\Local\ATI\ACE\Manifest.xml [20325] O61 - LFC: 31/08/2013 - 08:42:20 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Hewlett-Packard\HP Connected Remote\data\WMC_module.sdf [1294336] O61 - LFC: 31/08/2013 - 08:42:20 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\Hewlett-Packard\HP Connected Remote\data\WMP_module.sdf [98304] O61 - LFC: 31/08/2013 - 08:46:51 ---A- . (...) -- C:\Users\Angélique\AppData\Local\ATI\ACE\Profiles.xml [42756] O61 - LFC: 31/08/2013 - 09:18:59 ---A- . (.AVG Technologies.) -- C:\Users\Angélique\Downloads\avg_avct_stb_all_2013_3392_cm10.exe [4491824] O61 - LFC: 31/08/2013 - 09:26:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgcfg.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgcore.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:27 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgupd.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:33 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\update\download\avg13infoavi.ctf [3401] O61 - LFC: 31/08/2013 - 09:26:33 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\update\download\avg13infowin.ctf [25228] O61 - LFC: 31/08/2013 - 09:26:34 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Temp\avginfo.id [82] O61 - LFC: 31/08/2013 - 09:26:39 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgupd.log.1 [262237] O61 - LFC: 31/08/2013 - 09:26:41 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\fixcfg.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:41 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\AVG2013\cfgall\fixcfg.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgdecider.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgmsgdisp.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgui.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\krnlapi.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:50 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\lng.log.lock [0] O61 - LFC: 31/08/2013 - 09:26:51 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgual.log.lock [0] O61 - LFC: 31/08/2013 - 09:27:03 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgidpagentmonitor.log.lock [0] O61 - LFC: 31/08/2013 - 09:27:20 ---A- . (...) -- C:\Users\Angélique\AppData\Local\Avg2013\log\avgpostinst.log.lock [0] O61 - LFC: 31/08/2013 - 09:28:22 ---A- . (.Nicolas Coolman.) -- C:\Users\Angélique\Downloads\ZHPDiag2.exe [5074768] O61 - LFC: 31/08/2013 - 09:30:49 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\AVG2013\cfgall\userawacs.cfg [807] O61 - LFC: 31/08/2013 - 09:30:57 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\AVG2013\cfgall\userguistate.cfg [12510] O61 - LFC: 31/08/2013 - 09:31:18 ---A- . (.Nicolas Coolman.) -- C:\Users\Angélique\Downloads\ZHPDiag2 (1).exe [5074768] O61 - LFC: 31/08/2013 - 09:31:51 ---A- . (...) -- C:\Users\Angélique\AppData\Roaming\AVG2013\cfgall\usergui.cfg [201] O61 - LFC: 31/08/2013 - 09:32:50 ---A- . (.Nicolas Coolman.) -- C:\Users\Angélique\Downloads\ZHPDiag2 (2).exe [5074768] ~ 179 Fichiers temporaires (Temporary files) ~ Files: 720 Scanned in 01mn 06s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ ADS: Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ FASS Keys: 18 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: SearchScopes [HKCU] {1F5FCB9E-ADA9-1BD5-483B-01DE7B7C09D9} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://r.orange.fr ~ Keys: Scanned in 00mn 00s ---\\ Enumère les fichiers Crack & Keygen (CKF) (O82) C:\Users\Angélique\Desktop\DOCUMENTS\LOGICIELS\Acdsee 9\keygen.exe C:\Users\Angélique\Desktop\DOCUMENTS\LOGICIELS\Acdsee 9\keygen.exe ~ Files: Scanned in 01mn 14s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [190976] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [309248] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1366016] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1156096] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99840] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à distance.) -- C:\Windows\System32\rasmans.dll [358400] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [107520] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [62976] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [438784] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [305664] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [3241472] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [826368] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [565760] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [894464] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151552] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [105472] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1285632] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [219648] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [80896] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134144] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [291328] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [97792] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [190976] O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1964544] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [47104] O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [207872] O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Microsoft.) -- C:\Windows\System32\ncasvc.dll [161792] O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [180224] ~ Services: 34 Scanned in 00mn 02s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{3089C7D5-691D-4756-BABA-9BE754830C1B}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{30ED0745-D032-4628-A918-C6540E2EF512}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{3E83A91D-12D5-4db6-99BC-4A995AF5469F}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{56F4DBCB-0E13-47ab-83AC-875D4570C539}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{5A8A27F5-A2BA-41cf-B8DC-1D00A4CA18A0}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{5CD91BB2-9084-4234-A0CC-C535B1A68C30}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{72EF739A-B3D8-40b8-9570-6DCBB01F453E}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{73D37BB6-72D4-4697-90CB-6CA7BF0FC8B7}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{7D0EE474-CDD2-46be-8FF4-D8F4C758DED7}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{848C2C78-C75C-4fa0-B580-67AEB53E3FC4}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{8A4F0F79-AECD-49dc-92A7-0075FB4741A0}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{D5850F2C-D1C3-40cd-8ACB-263E6D187E5B}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{EBCF21DD-B59C-464b-B02E-4C482B6E5644}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{F361030F-9683-4b77-B295-CA9D466861FC}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{F8F0585E-E854-4816-B0D9-01526C7A0897}.dll [1077248] [MD5.DE4280B5F3875CC9C0223A9BD30613F5] [SPRF][30/08/2013] (.4Free Software Studio - mpeg2lib Dynamic Link Library.) -- C:\Users\Angélique\AppData\Local\Temp\mpeg2lib_{F90F81F0-4282-4554-A8C5-4C73AF3A119D}.dll [1077248] [MD5.3C74C26999F2060BC6302448F173A342] [SPRF][28/08/2013] (.Babylon Ltd. - Uninstaller Application.) -- C:\Users\Angélique\AppData\Local\Temp\uninst1.exe [340464] =>Toolbar.Babylon [MD5.F7A7DA530618C3700A449FE7971DB924] [SPRF][12/08/2013] (.VSO Software - Helper driver to facilitate play of cd backups.) -- C:\Users\Angélique\AppData\Roaming\ezplay.sys [118400] [MD5.16E53BFC96CE14021C0E07EB1C198478] [SPRF][16/08/2013] (...) -- C:\Users\Angélique\AppData\Roaming\inst.exe [99384] [MD5.AF7CE12C4F3DC8CB2B07685C916BBCFE] [SPRF][16/08/2013] (.VSO Software - low level access layer for CD/DVD/BD devices.) -- C:\Users\Angélique\AppData\Roaming\pcouffin.sys [82816] [MD5.4C47469F47FD9F8437B62A86F6E0874F] [SPRF][06/08/2013] (...) -- C:\Users\Angélique\Desktop\adw cleaner.exe [666633] ~ Files: 21 Scanned in 00mn 00s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "vm-monitoring-rpc" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "vm-monitoring-dcom" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMP-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC-EPMapper" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Netlogon-TCP-RPC-In" | In - None - P6 - FALSE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\System32\lsass.exe O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "ProximityUxHost-Sharing-In-TCP-NoScope" | In - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe O87 - FAEL: "ProximityUxHost-Sharing-Out-TCP-NoScope" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-DAS-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnPHost-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-DAS-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-In-UDP-NoScope" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-UDP-LocalSubnetScope" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-Out-UDP-NoScope" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-Out-UDP-LocalSubnetScope" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-RTSP-NoScope" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-RTSP-LocalSubnetScope" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-In-RTSP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe O87 - FAEL: "PlayTo-SSDP-Discovery-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-QWave-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-QWave-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-QWave-In-TCP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PlayTo-QWave-Out-TCP-PlayToScope" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TPMVSCMGR-Server-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe O87 - FAEL: "TPMVSCMGR-Server-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TPMVSCMGR-Server-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe O87 - FAEL: "TPMVSCMGR-Server-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-TERMSRV-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{D0EEDCE1-6C83-4E6F-B638-C85BEB4B07F2}" | Out - None - P6 - TRUE | .(.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe O87 - FAEL: "{8E69D0AE-9BC0-4FAD-BDE2-D20203C0ADC7}" | In - None - P6 - TRUE | .(.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe O87 - FAEL: "{81955369-CC12-4422-8606-2DF490DEC746}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{B454371A-BA66-4D57-BAAD-7CB781711119}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{FC45E6EF-FB98-436F-B097-5848614493CC}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{CC7C2CFD-804D-416D-AA14-F2CC775DE384}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{ACAFA6CD-09EB-4FC0-B868-26CA527B6EE6}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDirector 10.) -- c:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.exe O87 - FAEL: "{84EA5ECD-83C2-4E41-AFBC-B9A88FCC7F2F}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDVD 10.0.) -- c:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.exe O87 - FAEL: "{ABAD49F1-4903-43BF-A303-4353B3079C02}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{9C8468E8-3B35-4D4E-8213-329EC33C6AEB}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{5709C097-9E43-4A22-A3B1-CDB34E3FEDBF}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{ED219049-9F8B-40DF-8C13-3F10A00559B8}" | In - None - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{3ABB40F7-8B42-4D32-B156-7124108ACD41}" | In - None - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{4D8CC59A-4A31-4E35-ABE9-C54DBCDEC5AA}" | In - None - P6 - TRUE | .(.Pas de propriétaire - DedicarzService.) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\DedicarzService.exe O87 - FAEL: "{D6C15D61-926C-41DF-8673-099104E449E8}" | In - None - P17 - TRUE | .(.Pas de propriétaire - DedicarzService.) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\DedicarzService.exe O87 - FAEL: "{B9FA8142-B500-4AC0-8A47-475AF1B2261C}" | In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\LiveboxManager.exe O87 - FAEL: "{AD3D31EA-0E52-424B-A2A5-60ECB75B9750}" | In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\LiveboxManager.exe O87 - FAEL: "{9423C1B9-F57E-4DAF-9F77-C25544C80BBF}" | In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\PluginLivebox.exe O87 - FAEL: "{64FDBE31-6051-4749-A9FC-4C60CF512EF5}" | In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\PluginLivebox.exe O87 - FAEL: "{D4996458-157C-4E4A-96DD-43C53A39D465}" | In - Private - P6 - TRUE | .(.France Telecom SA - Orange Upd@te.) -- C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O87 - FAEL: "{2ED2139B-5397-407A-9AFB-1BC2180EFB1A}" | In - Private - P17 - TRUE | .(.France Telecom SA - Orange Upd@te.) -- C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O87 - FAEL: "{D3635B5F-820F-48C8-87F1-7C714DEA8D8B}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe O87 - FAEL: "{E1E9BEC5-045B-42F3-AFC0-97AB83814342}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe O87 - FAEL: "{059100E3-0710-4485-8B26-C39330ADD3D8}" | In - None - P17 - TRUE | .(.Hewlett-Packard - HP Update Client.) -- C:\Program Files (x86)\HP\hp software update\hpwucli.exe O87 - FAEL: "{301ABDDE-327E-4409-B1BE-E8DE3F033D86}" | In - None - P17 - TRUE | .(.Hewlett-Packard Company - HP Device Detection.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe O87 - FAEL: "{6A5BDA1C-5EF9-4C4E-8E3F-3A391AE38D14}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe O87 - FAEL: "{AB3D12D1-C83C-409A-89D1-8C560CE01A64}" | In - Private - P6 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe O87 - FAEL: "{5E06AC13-41B4-4E6B-8331-67EBC0697203}" | In - Private - P17 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe O87 - FAEL: "{7D63D2AA-FE0C-48CC-AF3B-134C94C07178}" | In - Private - P6 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Diagnostics.) -- C:\Program Files (x86)\AVG\AVG2013\avgdiagex.exe O87 - FAEL: "{50FE1AD7-7568-42AB-A5A2-FD12D39D083C}" | In - Private - P17 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Diagnostics.) -- C:\Program Files (x86)\AVG\AVG2013\avgdiagex.exe O87 - FAEL: "{3110491E-63E2-4281-A45B-57E4455917B7}" | In - Private - P6 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Installer Application.) -- C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe O87 - FAEL: "{834B9735-E7FA-4803-BD14-B9C34B3A9FF7}" | In - Private - P17 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG Installer Application.) -- C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe O87 - FAEL: "{4D7A4382-54E4-4A1A-8346-4D45D795529B}" | In - Private - P6 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\AVG2013\avgemca.exe O87 - FAEL: "{5D8DA2C2-F3F8-463A-A96D-AB0A7A9DE6C6}" | In - Private - P17 - TRUE | .(.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\AVG2013\avgemca.exe ~ Firewall: 222 Scanned in 00mn 05s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "00004159070000000000000000F01FEC" . (.Microsoft Office.) -- C:\windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe O90 - PUC: "0694AF70830BBE9498B1F95939A05A44" . (.HP Customer Experience Enhancements.) -- C:\windows\Installer\{07FA4960-B038-49EB-891B-9F95930AA544}\ARPPRODUCTICON.exe O90 - PUC: "0BF8916BEE36E17EE1BE08FF74CC79B2" . (.Catalyst Control Center Graphics Previews Common.) -- c:\windows\Installer\{B6198FB0-63EE-E71E-1EEB-80FF47CC972B}\ARPPRODUCTICON.exe O90 - PUC: "1038C85769625584FA5435B4210089A0" . (.Samsung Kies.) -- C:\windows\Installer\{758C8301-2696-4855-AF45-534B1200980A}\ARPPRODUCTICON.exe O90 - PUC: "114202EE62C28E947948B11CBD7FED69" . (.HP Support Assistant.) -- C:\windows\Installer\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}\ARPPRODUCTICON.exe O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon O90 - PUC: "1EE84710D8DF80740B2D5607A9D20EDB" . (.Garmin Express.) -- C:\windows\Installer\{01748EE1-FD8D-4708-B0D2-65709A2DE0BD}\Garmin.ico O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico O90 - PUC: "2D6F4B0BEA2FA1544969F6F2A698B723" . (.PowerDirector.) -- c:\windows\Installer\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\ARPPRODUCTICON.exe O90 - PUC: "42C6FBF1Df1C10144AB2C065F4E9E897" . (.Media Suite.) -- c:\windows\Installer\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.03) - Français.) -- C:\windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O90 - PUC: "6D00A044A005D5B90E3384948D371F85" . (.ccc-utility64.) -- c:\windows\Installer\{440A00D6-500A-9B5D-E033-4849D873F158}\ARPPRODUCTICON.exe O90 - PUC: "701043F6AA9F6C745BC43C1AF91155F3" . (.Hewlett-Packard ACLM.NET v1.2.1.1.) -- C:\windows\Installer\{6F340107-F9AA-47C6-B54C-C3A19F11553F}\ARPPRODUCTICON.exe O90 - PUC: "7241E1804E66EEC4DE10379666BC5DD4" . (.AMD Catalyst Install Manager.) -- c:\windows\Installer\{081E1427-66E4-4CEE-ED01-736966CBD54D}\ARPPRODUCTICON.exe O90 - PUC: "92568FD15CBBFF4571190D07298ADC1E" . (.AMD VISION Engine Control Center.) -- c:\windows\Installer\{1DF86529-BBC5-54FF-1791-D07092A8CDE1}\ARPPRODUCTICON.exe O90 - PUC: "951EFF34991388141ADC261966DA0163" . (.Nero 7 Premium.) -- C:\windows\Installer\{43FFE159-3199-4188-A1CD-629166AD1036}\ARPPRODUCTICON.exe O90 - PUC: "A4432684C93A7984CA4D1AEB5D61C3A5" . (.PhotoDirector.) -- c:\windows\Installer\{4862344A-A39C-4897-ACD4-A1BED5163C5A}\ARPPRODUCTICON.exe O90 - PUC: "AD1B71B0BA6770D48B8EDF06166ECB5A" . (.Garmin Express Tray.) -- C:\windows\Installer\{0B17B1DA-76AB-4D07-B8E8-FD6061E6BCA5}\express.ico O90 - PUC: "B15E587D3EB674747AE7FE8280F1EFDA" . (.Elevated Installer.) -- C:\windows\Installer\{D785E51B-6BE3-4747-A77E-EF28081FFEAD}\express.ico O90 - PUC: "B43A342FF7BA56047B078BB567C742C7" . (.HP Connected Remote.) -- c:\windows\Installer\{F243A34B-AB7F-4065-B770-B85B767C247C}\_853F67D554F05449430E7E.exe O90 - PUC: "BA0A2B44E214C8F40B851D8EEACCFD5F" . (.PowerRecover.) -- c:\windows\Installer\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}\ARPPRODUCTICON.exe O90 - PUC: "BE824E2CE6110C14E9482BD29ECC4AF2" . (.HP Registration Service.) -- c:\windows\Installer\{C2E428EB-116E-41C0-9E84-B22DE9CCA42F}\ARPPRODUCTICON.exe O90 - PUC: "C8454747654E8184E80DA4F100FE771A" . (.Catalyst Control Center - Branding.) -- c:\windows\Installer\{7474548C-E456-4818-8ED0-4A1F00EF77A1}\ARPPRODUCTICON.exe O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- c:\windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe O90 - PUC: "D1BF956E69AFBBDD1FB59EFE6F7194E8" . (.Catalyst Control Center Localization All.) -- c:\windows\Installer\{E659FB1D-FA96-DDBB-F15B-E9EFF617498E}\ARPPRODUCTICON.exe O90 - PUC: "D276F30548C6A844F8F8B43CA58C4314" . (.AMD APP SDK Runtime.) -- c:\windows\Installer\{503F672D-6C84-448A-8F8F-4BC35AC83441}\ARPPRODUCTICON.exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "D84D78A2FDF3df1479DC1A3E07FEFF2E" . (.Power2Go.) -- c:\windows\Installer\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\ARPPRODUCTICON.exe O90 - PUC: "DE532CED4A8571542A874CE1D8EABAB3" . (.PowerDVD.) -- c:\windows\Installer\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\ARPPRODUCTICON.exe O90 - PUC: "E8E7104CB7B833618BF4F535AAEE04AD" . (.Catalyst Control Center InstallProxy.) -- c:\windows\Installer\{C4017E8E-8B7B-1633-B84F-5F53AAEE40DA}\ARPPRODUCTICON.exe ~ Update Products: 148 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.9D1FC3737A86F6B516152DFF025F2FC7] [WIS][30/07/2013] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\266e1.msi [26112] [MD5.C133F19570415BEC44B8403A15BD4E9A] [WIS][29/04/2011] (.Builds the Destinations MSI - Builds the Destinations MSI.) -- C:\Windows\Installer\509b7.msi [523776] [MD5.28D9DD3E46DC577765A40C3EBF2B5927] [WIS][30/07/2013] (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Windows\Installer\836c01.msi [28672] =>Toolbar.Google [MD5.C8C7E6A37A3ED4E5D4492BD8B2C64CC5] [WIS][04/08/2013] (.Kodak EasyShare software - Kodak EasyShare software.) -- C:\Windows\Installer\c048c.msi [333312] ~ WIS: 150 Scanned in 00mn 09s ---\\ Etat général des services not Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 11/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 13/09/2012 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SR - | Auto 04/07/2013 4939312 | (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe SR - | Auto 23/07/2013 283136 | (avgwd) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SR - | Auto 10/06/2013 1966960 | (Dedicarz Service) . (...) - C:\Program Files (x86)\Orange\Assistance Livebox\dedicarz\DedicarzService.exe SR - | Auto 22/07/2013 219480 | (Garmin Core Update Service) . (.Garmin Ltd or its subsidiaries.) - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe SS - | Auto 30/07/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 30/07/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 30/07/2013 194032 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SR - | Auto 27/09/2012 86528 | (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe SR - | Auto 12/10/2012 35744 | (HPConnectedRemote) . (.Hewlett-Packard.) - c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe SR - | Demand 12/10/2012 29696 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll (hpqcxs08) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SR - | Auto 12/10/2012 29696 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll (hpqddsvc) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SS - | Demand 10/08/2012 1001376 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe SS - | Demand 14/03/2007 779824 | (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe SR - | Auto 12/10/2012 29696 | C:\Windows\System32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SR - | Auto 21/05/2013 144368 | (NIS) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe SS - | Demand 12/03/2007 271920 | (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe SS - | Auto 18/09/2012 1082016 | (Orange update Core Service) . (.France Telecom SA.) - C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe SR - | Auto 12/10/2012 29696 | C:\Windows\System32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SR - | Auto 06/06/2013 333824 | (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\STacSV64.exe SS - | Demand 00\00\0000 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe SS - | Demand 12/10/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 12s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by Angélique at 31/08/2013 10:41:46 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Angélique at 31/08/2013 10:41:48 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : v2.12869 - (31/08/2013) Clés trouvées (Keys found) : 8 Valeurs trouvées (Values found) : 3 Dossiers trouvés (Folders found) : 1 Fichiers trouvés (Files found) : 25 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4D91-8333-CF10577473F7}] =>Toolbar.Google^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] =>Toolbar.Google^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] =>Toolbar.Google^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Tarma [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc] =>PUP.eSafeSecurity [HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^ [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:NTRedirect =>Hijacker.BabSolution^ [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:startertv_fr_8 =>Adware.StarterTV^ C:\Users\Angélique\AppData\Local\Software =>Adware.Boxore C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe =>Toolbar.Google^ C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google^ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job =>PUP.DealPly^ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job =>PUP.DealPly^ [HKCU\Software\AppDataLow\Software\Lyrics_Fan] =>Adware.AddLyrics^ [HKCU\Software\DealPlyLive] =>PUP.DealPly^ [HKCU\Software\Duuqu] =>Toolbar.DeltaSearch^ [HKCU\Software\PopCap] =>Adware.PopCap^ [HKCU\Software\yahooinstall] =>Toolbar.Yahoo^ [HKLM\Software\Wow6432Node\DealPlyLive] =>PUP.DealPly^ [HKLM\Software\Wow6432Node\Duuqu] =>Toolbar.DeltaSearch^ [HKLM\Software\Wow6432Node\Trymedia Systems] =>Adware.Trymedia^ C:\Windows\Prefetch\WAJAM_VALIDATE.EXE-7943D4B7.pf =>Toolbar.Wajam^ C:\Windows\Prefetch\DELTATB.EXE-82BC991C.pf =>Toolbar.DeltaSearch^ C:\Windows\Prefetch\MYDELTATB.EXE-2F40C208.pf =>Toolbar.DeltaSearch^ C:\Windows\Prefetch\BABMAINT.EXE-7DDEAE89.pf =>Hijacker.BabSolution^ C:\Windows\Prefetch\BROWSERDEFENDER.EXE-BA8CEBB9.pf =>Hijacker.Eazel^ C:\Windows\Prefetch\DUUQUUPDATE.EXE-04FBEB94.pf =>Toolbar.DeltaSearch^ C:\Windows\Prefetch\DUUQUUPDATESETUP.EXE-D55031A7.pf =>Toolbar.DeltaSearch^ C:\Windows\Prefetch\DUUQUUPDATE.EXE-23028BAD.pf =>Toolbar.DeltaSearch^ C:\Users\Angélique\AppData\Local\Temp\uninst1.exe =>Toolbar.Babylon^ C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\bab138.deltatb_dmn.zpb =>Toolbar.DeltaSearch^ C:\Users\Angélique\AppData\Local\Temp\B93EDE5D-BAB0-7891-A10D-11348DA2A8C2\Latest\DeltaTB.zpb =>Toolbar.DeltaSearch^ C:\Windows\Installer\836c01.msi =>Toolbar.Google^ ~ Additionnel Scan: 307968 Items scanned in 00mn 23s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com32384220-toolbar-google =>Toolbar.Google ~ http://nicolascoolman.webs.com26678994-hijacker-babsolution =>Hijacker.BabSolution ~ http://nicolascoolman.webs.com29259213-adware-startertv =>Adware.StarterTV ~ http://nicolascoolman.webs.com28060597-pup-dealply =>PUP.DealPly ~ http://nicolascoolman.webs.com26601058-adware-addlyrics =>Adware.AddLyrics ~ http://nicolascoolman.webs.com27875657-toolbar-deltasearch =>Toolbar.DeltaSearch ~ http://nicolascoolman.webs.com26666257-adware-popcap =>Adware.PopCap ~ http://nicolascoolman.webs.com30268689-toolbar-yahoo =>Toolbar.Yahoo ~ http://nicolascoolman.webs.com29710349-adware-trymedia =>Adware.Trymedia ~ http://nicolascoolman.webs.com27379491-toolbar-wajam =>Toolbar.Wajam ~ http://nicolascoolman.webs.com27161672-hijacker-eazel =>Hijacker.Eazel ~ http://nicolascoolman.webs.com26627369-toolbar-babylon =>Toolbar.Babylon ~ http://nicolascoolman.webs.com29637859-toolbar-tarma =>Toolbar.Tarma ~ http://nicolascoolman.webs.com27588628-pup-esafesecurity =>PUP.eSafeSecurity ~ http://nicolascoolman.webs.com28204239-pup-optimizerpro =>PUP.OptimizerPro ~ http://nicolascoolman.webs.com26626977-adware-boxore =>Adware.Boxore ~ MSI: 16 link(s) detected in 00mn 23s End of the scan (2617 lines in 07mn 20s)(2)