~ Rapport de ZHPDiag v2013.8.29.381 - Nicolas Coolman  (29/08/2013)
~ Lanc� par utilisateur (30/08/2013 14:06:16)
~ Adresse du Site Web http://nicolascoolman.webs.com
~ Traduit par Nicolas Coolman
~ Etat de la version : Version � jour.
~ Liste blanche : D�sactiv�e par l'utilisateur
~ El�vation des Privil�ges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16660
MFIE: Mozilla Firefox 22.0
GCIE: Google Chrome v23.0.1271.95 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Fran�ais
Windows 7 Business Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_COA_NSLP channel
Windows ID Activation : OK
~ Windows Partial Key : 4VD8R
Windows License : OK
~ Windows Remaining Initializations Number : 3
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du syst�me
Kaspersky Internet Security 2012 v12.0.0.374
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W7

---\\ Logiciels d'optimisation du syst�me
CCleaner v3.04  =>Piriform Ltd

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 9 ActiveX
Adobe Reader X

---\\ Informations sur le syst�me
~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 4078 MB (46% free)
System Restore: Activ� (Enable)
System drive C: has 34 GB (7%) free of 466 GB

---\\ Mode de connexion au syst�me
~ Computer Name: UTILISATEUR-PC
~ User Name: utilisateur
~ All Users Names: utilisateur, HomeGroupUser$, Administrateur, 
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppData% : C:\Users\utilisateur\AppData\Roaming\
~ %Desktop% : C:\Users\utilisateur\Desktop\
~ %Favorites% : C:\Users\utilisateur\Favorites\
~ %LocalAppData% : C:\Users\utilisateur\AppData\Local\
~ %StartMenu% : C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enum�ration des unit�s disques
C:\ Hard drive, Flash drive, Thumb drive (Free 34 Go of 466 Go)
D:\ CD-ROM drive (Not Inserted)
E:\ Hard drive, Flash drive, Thumb drive (Free 201 Go of 932 Go)
F:\ CD-ROM drive (Not Inserted)



---\\ Etat du Centre de S�curit� Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime :  OK
~ Security Center: 34 Scanned in 00mn 00s



---\\ Recherche particuli�re de fichiers g�n�riques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de d�marrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.AC155DD9BD1E6D3B740826A4D1C68AAE] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/07/2013 - 06:13:37.) -- C:\Windows\System32\wininet.dll [2241024]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d�ouverture de session Windows.) (.21/11/2010 - 04:24:29.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioth�que de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du syst�me de fichiers NT.) (.12/04/2013 - 15:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parall�le.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/11/2010 - 04:25:07.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de clich� instantan� du volume.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes:  Scanned in 00mn 00s



---\\ Etat des fichiers cach�s (Cach�/Total)
~ Mes images (My Pictures) : 2/502
~ Mes musiques (My Musics) : 2/6
~ Mes Videos (My Videos) : 2/40
~ Mes Favoris (My Favorites) : 1/29
~ Mes Documents (My Documents) : 19/942
~ Mon Bureau (My Desktop) : 1/2154
~ Menu demarrer (Programs) : 1/142
~ Hidden Files:  Scanned in 00mn 02s



---\\ Processus lanc�s au d�marrage du syst�me
[MD5.F0EA603E7B91046CA48EA4B3593A007D] - (.Micro Application - Pas de description.) -- C:\Program Files (x86)\Micro Application\LauncherMA.exe   [485376] [PID.3740]
[MD5.F8D427DAE2984A4968E2D1CB53634784] - (.Nuance Communications, Inc. - OCR Aware.) -- C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpWareSE4.exe   [79400] [PID.3784]
[MD5.6C9D5BADC8F83D410A278717C2EEA6F6] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe   [206448] [PID.1588]
[MD5.090095307FA4914386A34EB61946CE96] - (...) -- C:\Windows\SysWOW64\rmctrl.exe   [32768] [PID.3800]
[MD5.317881F0C8F397BF9444837596EB4258] - (.FastStone Soft - FastStone Capture.) -- C:\Program Files (x86)\FastStone Capture\FSCapture.exe   [1185792] [PID.5968]
[MD5.27502022B75551385957D223DD9CB72B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe   [7842304] [PID.5908]
[MD5.67A95B9D129ED5399E7965CD09CF30E7] - (.Logitech Inc. - Logitech User mode UMVPF service.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe   [450848] [PID.928]
[MD5.1474F121C3DF1232D3E7239C03691EE6] - (.Adobe Systems Incorporated - Adobe Photoshop Elements 9.0 (component).) -- C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe   [169408] [PID.1452]
[MD5.D19C4EE2AC7C47B8F5F84FFF1A789D8A] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe   [63960] [PID.1532]
[MD5.3014CA345E8AD68587BABFB162DDDEC5] - (.InterVideo Inc. - Capture Device Service.) -- C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe   [200704] [PID.1628]
[MD5.1355EBE184F9DAB1718BC587F8A7E05E] - (.MAGIX AG - Verzeichnis�berwachung und Hilfsaufgaben f�.) -- C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe   [1253376] [PID.1668]
[MD5.D40B85303BCFF96A717392B06FB015C4] - (.Freemake - FreemakeUtilsService.) -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe   [100864] [PID.1784]
[MD5.875E4E0661F3A5994DF9E5E3A0A4F96B] - (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) -- C:\Windows\SysWOW64\IoctlSvc.exe   [81920] [PID.1992]
[MD5.7F32D4C47A50E7223491E8FB9359907D] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe   [325656] [PID.4712]
[MD5.2C16648A12999AE69A9EBF41974B0BA2] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe   [2656280] [PID.1868]
~ Processes Running:  Scanned in 00mn 00s



---\\ Google Chrome, D�marrage,Recherche,Extensions (G0,G1,G2)
C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Preferences
G0 - GCSP: Preference [User Data\Default][HomePage] http://www.searchnu.com  =>Adware.Bandoo
G0 - GCSP: Preference [User Data\Default] http://sn133w.snt133.mail.live.com
G1 - GCS: Preference [User Data\Default] http://dts.search-results.com  =>PUP.SearchResults
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activ�)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activ�)
G2 - GCE: Preference [User Data\Default] [dchlnpcodkpfdpacogkljefecpegganj] Analyse des liens (URL Advisor) v.12.0.0.477 (Activ�)
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock v.2.6.6, (Activ�)
G2 - GCE: Preference [User Data\Default] [jagncdcchgajhfhijbbhecadmaiegcmh] Clavier virtuel v.12.0.0.477 (Activ�)
G2 - GCE: Preference [User Data\Default] [jbolfgndggfhhpbnkgnpjkfhinclbigj] Freemake Video Converter v.1.0.0 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activ�)
G2 - GCE: Preference [User Data\Default] [pjldcfjmnllhmgjclecdnfampinooman] Kaspersky Anti-banni� re v.12.0.0.374 (Activ�)
~ Google Browser: 13 Scanned in 00mn 06s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions  (P2,M0,M1,M2,M3)
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\7eughi1j.default\prefs.js
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js (.not file.)
P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npnul32.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppl3260.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - 6.0.12.1662.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nprpjplug.dll
P2 - FPN: [HKLM] [@microsoft.com/GENUINE] - (.Microsoft Corporation - Windows Activation Technologies Plugin for Mozilla.) -- C:\Windows\system32\Wat\npWatWeb.dll
~ Firefox Browser: 7 Scanned in 00mn 00s



---\\ Internet Explorer, D�marrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ IE Browser: 14 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management:  Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys:  Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File:  Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 14



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: IEVkbdBHO [64Bits] - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} . (.Kaspersky Lab ZAO - IE Virtual Keyboard.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft� Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: link filter bho [64Bits] - {E33CF602-D945-461A-83F0-819F76A199F8} . (.Kaspersky Lab ZAO - WebToolBar component.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll
~ BHO: 3 Scanned in 00mn 00s



---\\ Applications d�marr�es par registre & par dossier (O4)
O4 - HKLM\..\Run: [CanonSolutionMenu] . (.CANON INC. - CNSLMAIN.) -- C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe 
O4 - HKLM\..\Wow6432Node\Run: [SSBkgdUpdate] . (.Nuance Communications, Inc. - SSBkgdUpdate.) -- C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe 
O4 - HKLM\..\Wow6432Node\Run: [OpwareSE4] . (.Nuance Communications, Inc. - OCR Aware.) -- C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpwareSE4.exe 
O4 - HKLM\..\Wow6432Node\Run: [AVP] . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe 
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl] C:\Windows\system32\rmctrl.exe (.not file.) 
O4 - HKLM\..\Wow6432Node\RunOnce: [Malwarebytes Anti-Malware (cleanup)] . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll 
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 
~ Application:  Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\TaskBar: Google Chrome.lnk . (.Google Inc. - Google Chrome.)  -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
O4 - GS\TaskBar: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.)  -- C:\Windows\explorer.exe 
O4 - GS\Programs: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files (x86)\Internet Explorer\iexplore.exe 
O4 - GS\QuickLaunch: dBpowerAMP Audio Player.lnk . (.Illustrate - Amp.)  -- C:\Program Files (x86)\Illustrate\dBpowerAMP\Amp.exe 
O4 - GS\QuickLaunch: Finale NotePad 2011.lnk . (.MakeMusic Inc. - Finale� NotePad for Windows.)  -- C:\Program Files (x86)\Finale NotePad 2011\Finale NotePad.exe 
O4 - GS\QuickLaunch: Google Chrome.lnk . (.Google Inc. - Google Chrome.)  -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
O4 - GS\QuickLaunch: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files (x86)\Internet Explorer\iexplore.exe 
O4 - GS\Accessories: control.exe.lnk . (.Microsoft Corporation - Windows Control Panel.)  -- C:\Windows\System32\control.exe 
O4 - GS\Accessories: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files (x86)\Internet Explorer\iexplore.exe 
O4 - GS\Accessories: Private Character Editor.lnk . (.Microsoft Corporation - �diteur de caract�res priv�s.)  -- C:\Windows\system32\eudcedit.exe 
O4 - GS\SendTo: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft  Windows Fax and Scan.)  -- C:\Windows\system32\WFS.exe 
O4 - GS\SendTo: Format Factory.lnk . (.Free Time - FormatFactory.)  -- C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe 
O4 - GS\SendTo: IsoBuster.lnk . (.Smart Projects - The Ultimate Data Recovery tool.)  -- C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe 
O4 - GS\SendTo: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Pas de description.)  -- C:\Windows\System32\fsquirt.exe 
O4 - GS\Desktop: A Pascal.lnk . (...)  -- E:\A Pascal 
O4 - GS\Desktop: Adivers - Raccourci.lnk . (...)  -- E:\Apascalimages\aaa nouv\Adivers 
O4 - GS\Desktop: Aegisub 3.lnk . (...)  -- C:\Program Files\Aegisub\aegisub32.exe
O4 - GS\Desktop: Biblioth�ques - Raccourci.lnk . (...)  -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Libraries 
O4 - GS\Desktop: Captures �cran - Raccourci.lnk . (...)  -- E:\Apascalimages\Captures �cran 
O4 - GS\Desktop: Documents Word - Raccourci.lnk . (...)  -- E:\A Pascal\Documents Word 
O4 - GS\Desktop: dvdflick.exe - Raccourci.lnk . (.Dennis "Exl" Meuwissen - DVD Flick.)  -- C:\Program Files (x86)\DVD Flick\dvdflick.exe 
O4 - GS\Desktop: EXCEL - Raccourci.lnk . (.Microsoft Corporation - Microsoft Office Excel.)  -- C:\Program Files (x86)\Microsoft Office\OFFICE11\EXCEL.exe 
O4 - GS\Desktop: Feuilles Excel - Raccourci.lnk . (...)  -- E:\A Pascal\Feuilles Excel 
O4 - GS\Desktop: iexplore.lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files (x86)\Internet Explorer\iexplore.exe 
O4 - GS\Desktop: IfoEdit - ENG.lnk . (.Derrow/Decision Development - IFO-file editor.)  -- E:\APascal Raccourcis Logiciels Sous-titrage\Ifoedit anglais\IfoEdit.exe 
O4 - GS\Desktop: IfoEdit - FR.lnk . (.Derrow/Decision Development - Editeur de Fichiers IFO.)  -- C:\Program Files (x86)\IfoEdit\IfoEdit.exe 
O4 - GS\Desktop: Image.lnk . (...)  -- E:\A Pascal\Sur le bureau\Image 
O4 - GS\Desktop: Jeux.lnk . (...)  -- E:\A Pascal\Sur le bureau\Jeux 
O4 - GS\Desktop: Karaoke.lnk . (...)  -- E:\A Pascal\Sur le bureau\Karaoke 
O4 - GS\Desktop: LaBoiteACouleurs - Raccourci.lnk . (.Benjamin Chartier - Color conversion tool.)  -- C:\Program Files (x86)\LaBoiteACouleurs\LaBoiteACouleurs.exe 
O4 - GS\Desktop: Microsoft Office Word 2003.lnk . (...)  -- C:\Windows\Installer\{9112040C-6000-11D3-8CFE-0150048383C9}\wordicon.exe (.not file.)
O4 - GS\Desktop: mkvmerge GUI.lnk . (...)  -- C:\Program Files (x86)\MKVToolNix\mmg.exe
O4 - GS\Desktop: Outils syst�me.lnk . (...)  -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools 
O4 - Global Startup: C:\Users\utilisateur\Desktop\Portail Orange.url . (...)  -- C:\Users\utilisateur\Desktop\Portail Orange.url
O4 - GS\Desktop: ReJig - Raccourci.lnk . (...)  -- E:\APascal Raccourcis Logiciels Sous-titrage\ReJig.exe
O4 - GS\Desktop: Restoration (Admin).lnk . (...)  -- E:\A ttelecharg\restoration_restoration_2.5.14_anglais_14192\REST2514\Restoration.exe
O4 - GS\Desktop: Son.lnk . (...)  -- E:\A Pascal\Sur le bureau\Son 
O4 - GS\Desktop: Sous-titrage Video.lnk . (...)  -- E:\APascal Raccourcis Logiciels Sous-titrage 
O4 - GS\Desktop: SubtitleCreator.lnk . (.Erik Vullings - SubtitleCreator.)  -- C:\Program Files (x86)\SubtitleCreator\SubtitleCreator.exe 
O4 - GS\Desktop: Textes.lnk . (...)  -- E:\A Pascal\Sur le bureau\Textes 
O4 - GS\Desktop: Vegas Movie Studio HD Platinum 10.0.lnk . (.Sony Creative Software Inc. - Vegas Movie Studio HD Platinum.)  -- C:\Program Files (x86)\Sony\Vegas Movie Studio HD Platinum 10.0\VegasMovieStudioPE100.exe 
O4 - GS\Desktop: Video.lnk . (...)  -- E:\A Pascal\Sur le bureau\Video 
O4 - GS\Desktop: Virtual Windows XP.lnk . (.Microsoft Corporation - Extension d'environnement Virtual PC.)  -- C:\Windows\system32\VMCPropertyHandler.dll 
O4 - GS\Desktop: VirtualDub - avec plugins.lnk . (...)  -- E:\Telecharge\Zips\VirtualDub-1.9.11 (1)\VirtualDub.exe
O4 - GS\Desktop: VirtualDubMod.exe - Raccourci.lnk . (...)  -- E:\Video prg\VirtualDubMod.exe
O4 - GS\Desktop: WinDirStat.lnk . (.Seifert - Windows Directory Statistics.)  -- C:\Program Files (x86)\WinDirStat\windirstat.exe 
~ Global Startup:  Scanned in 00mn 02s



---\\ Invisibilit� de l'ic�ne d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situ�s sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Clavier &virtuel [64Bits] - {4248FE82-7FCB-46AC-B270-339F08212110} . (...) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\kbrd.ico
O9 - Extra button: Analyse des &liens [64Bits] - {CCF151D8-D089-449F-A5A4-D9909053F20F} . (...) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\logo.ico
~ IE Extra Buttons:  Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d�affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft� Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft� Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
~ Winsock: 9 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{18C703E1-2564-4C4A-93D2-85D40D8D78D5}: NameServer = 178.33.41.181,88.191.223.122
O17 - HKLM\System\CCS\Services\Tcpip\..\{18C703E1-2564-4C4A-93D2-85D40D8D78D5}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{18C703E1-2564-4C4A-93D2-85D40D8D78D5}: NameServer = 178.33.41.181,88.191.223.122
O17 - HKLM\System\CS1\Services\Tcpip\..\{18C703E1-2564-4C4A-93D2-85D40D8D78D5}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{18C703E1-2564-4C4A-93D2-85D40D8D78D5}: NameServer = 178.33.41.181,88.191.223.122
O17 - HKLM\System\CS2\Services\Tcpip\..\{18C703E1-2564-4C4A-93D2-85D40D8D78D5}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain:  Scanned in 00mn 00s



---\\ Titr_HJT34=Protocole additionnel (O18)
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- 
O18 - Filter: text/xml [64Bits] - {807553E5-5146-11D5-A672-00B0D022E945} . (...) -- 
~ Protocole Additionnel:  Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-cl�s Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
O20 - Winlogon Notify: klogon . (.Kaspersky Lab ZAO - Logon Visualizer.) -- C:\Windows\System32\klogon.dll
~ Winlogon:  Scanned in 00mn 00s



---\\ Cl� de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non d�sactiv�s (O23)
O23 - Service: Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) . (.Adobe Systems Incorporated - Adobe Photoshop Elements 9.0 (component).) - C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service:  (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: Kaspersky Anti-Virus Service (AVP) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
O23 - Service: Capture Device Service (Capture Device Service) . (.InterVideo Inc. - Capture Device Service.) - C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: FABS - Helping agent for MAGIX media dat (Fabs) . (.MAGIX AG - Verzeichnis�berwachung und Hilfsaufgaben f�.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
O23 - Service: Freemake Improver (Freemake Improver) . (.Freemake - FreemakeUtilsService.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.)
O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: PLFlash DeviceIoControl Service (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service:  (UMVPFSrv) . (.Logitech Inc. - Logitech User mode UMVPF service.) - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: Intel(R) Management and Security Applica (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
~ Services: 11 Scanned in 00mn 05s



---\\ Enum�ration Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) -  (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enum�re les donn�es de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ T�ches planifi�es en automatique (O39)
[MD5.7F0472558099BE65B50BB5325A3259E1] [APT] [{29BF6E1B-B4DD-48C5-B334-C8A5DCACFB20}] (...) -- E:\A Pascal karaoke\SSAinstall.exe   [5569142]
[MD5.4C2704E2903EC95120F6A52C656D64E4] [APT] [{45ED58CB-D841-45FA-8F3A-37FA847A6C54}] (.Gabest.) -- C:\Program Files (x86)\Gabest\VobSub\submux.exe   [61440]
[MD5.00000000000000000000000000000000] [APT] [{86AB5E15-7401-4718-AEE5-2684AA08A0F9}] (...) -- E:\A ttelecharg\unrarw32.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{C4E998FD-A672-49F3-8CC3-82DDF368537E}] (...) -- E:\A ttelecharg\vobsub_vobsub_2.23_anglais_10893.exe (.not file.)   [0]
~ Scheduled Task: 4 Scanned in 00mn 04s



---\\ Composants install�s (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpr�teur de commandes Windows.) -- C:\Windows\system32\cmd.exe
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
~ Active Setup: 9 Scanned in 00mn 00s



---\\ Pilotes lanc�s au d�marrage du syst�me (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver:  (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver:  (kl2) . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) - C:\Windows\System32\DRIVERS\kl2.sys
O41 - Driver:  (KLIF) . (.Kaspersky Lab - Klif Mini-Filter [fre_wlh_amd64].) - C:\Windows\System32\DRIVERS\klif.sys
O41 - Driver:  (KLIM6) . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) - C:\Windows\System32\DRIVERS\klim6.sys
O41 - Driver:  (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys
O41 - Driver:  (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-syst�me de mise en m�moire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver:  (Serial) . (.Microsoft Corporation - Pilote de p�riph�rique s�rie.) - C:\Windows\System32\DRIVERS\serial.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver:  (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver:  (vpcnfltr) . (.Microsoft Corporation - Virtual PC Network Filter Driver.) - C:\Windows\System32\DRIVERS\vpcnfltr.sys
O41 - Driver: C:\Windows\System32\drivers\vpcvmm.sys (vpcvmm) . (.Microsoft Corporation - Moniteur d'ordinateur virtuel Virtual PC.) - C:\Windows\System32\drivers\vpcvmm.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver:  (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 75 Scanned in 00mn 00s



---\\ Logiciels install�s (O42)
O42 - Logiciel: 4Videosoft DVD Cr�ateur 5.0.20 - (...) [HKLM][64Bits] -- {D839D338-F027-41a2-9EA9-D9E5830DBF55}_is1
O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000}
O42 - Logiciel: AC3 Cutter 1.0 - (.spgsoft.com.) [HKLM][64Bits] -- AC3 Cutter_is1
O42 - Logiciel: AC3 Splitter version 1.2 - (...) [HKLM][64Bits] -- AC3 Splitter_is1
O42 - Logiciel: AC3Filter (remove only) - (...) [HKLM][64Bits] -- AC3Filter
O42 - Logiciel: ACID Music Studio 8.0 - (.Sony.) [HKLM][64Bits] -- {E97C937C-AE21-453D-86A0-A231507543D1}
O42 - Logiciel: ACID Pro 7.0 - (.Sony.) [HKLM][64Bits] -- {F7FD5E5E-3F0C-4931-AA1B-EAB838BC02DB}
O42 - Logiciel: ACID Xpress 7.0 - (.Sony.) [HKLM][64Bits] -- {444695CF-DD46-11DF-8F04-005056C00008}
O42 - Logiciel: ATI AVIVO64 Codecs - (.ATI Technologies Inc..) [HKLM][64Bits] -- {B4CA5A58-2759-7FCF-4F19-952E05FBA493}
O42 - Logiciel: AV Video Karaoke Maker - (.AVSOFT Corporation.) [HKLM][64Bits] -- AV Video Karaoke Maker
O42 - Logiciel: AVI ReComp 1.5.3 - (.Mateusz Gola (aka Prozac).) [HKLM][64Bits] -- AVI ReComp
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {47FA2C44-D148-4DBC-AF60-B91934AA4842}
O42 - Logiciel: Adobe After Effects 6.5 - (.Adobe Systems Inc..) [HKLM][64Bits] -- {61CEB2D7-8D3B-4247-B75E-A95F6699B90A}
O42 - Logiciel: Adobe Bridge 1.0 - (.Adobe Systems.) [HKLM][64Bits] -- {AE3D38A6-13B1-40B3-9423-D1FA9982FB6A}
O42 - Logiciel: Adobe Common File Installer - (.Adobe System Incorporated.) [HKLM][64Bits] -- {8EDBA74D-0686-4C99-BFDD-F894678E5102}
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {F302F4F0-588D-6501-1ACF-BE3FDCC9135D}
O42 - Logiciel: Adobe Creative Suite 5 Master Collection - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {1BBD8D70-721A-41AD-AC8F-7308A0C8FA92}
O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant
O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {969E11AA-8F3A-F162-1A5A-0965E216B6CE}
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Flash Player 9 ActiveX - (.Adobe Systems, Inc..) [HKLM][64Bits] -- {786547F9-59BB-4FA3-B2D8-327FF1F14870}
O42 - Logiciel: Adobe Help Center 2.0 - (.Adobe Systems.) [HKLM][64Bits] -- {8FFC924C-ED06-44CB-8867-3CA778ECE903}
O42 - Logiciel: Adobe Premiere Elements 9 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PremElem90
O42 - Logiciel: Adobe Premiere Elements 9 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {EB9955F8-467C-47FC-90F8-12CD5DF684C3}
O42 - Logiciel: Adobe Premiere Pro 2.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Premiere Pro 2.0
O42 - Logiciel: Adobe Reader X (10.1.4) - Fran�ais - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
O42 - Logiciel: Adobe Stock Photos 1.0 - (.Adobe Systems.) [HKLM][64Bits] -- {786C5747-1437-443D-B06E-79A00FE45110}
O42 - Logiciel: Aegisub 3.0.4 - (.Aegisub Team.) [HKLM][64Bits] -- {24BC8B57-716C-444F-B46B-A3349B9164C5}_is1
O42 - Logiciel: Amazon Kindle - (.Amazon.) [HKCU][64Bits] -- Amazon Kindle
O42 - Logiciel: Audacity 1.2.6 - (...) [HKLM][64Bits] -- Audacity_is1
O42 - Logiciel: Audio Edit Magic v8.1 - (.AudioEditMagic Soft..) [HKLM][64Bits] -- Audio Edit Magic_is1
O42 - Logiciel: Auslogics Disk Defrag - (.Auslogics Software Pty Ltd.) [HKLM][64Bits] -- {DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1
O42 - Logiciel: AviSynth 2.5 - (...) [HKLM][64Bits] -- AviSynth
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner  =>Piriform Ltd
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1
O42 - Logiciel: CR-Hexact 2.3 - (...) [HKLM][64Bits] -- CR-Hexact 2.3
O42 - Logiciel: CamStudio - (...) [HKLM][64Bits] -- CamStudio
O42 - Logiciel: CameraHelperMsi - (.Logitech.) [HKLM][64Bits] -- {15634701-BACE-4449-8B25-1567DA8C9FD3}
O42 - Logiciel: Canon MP Navigator EX 1.0 - (...) [HKLM][64Bits] -- MP Navigator EX 1.0
O42 - Logiciel: Canon MP520 series - (...) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP520_series
O42 - Logiciel: Canon My Printer - (...) [HKLM][64Bits] -- CanonMyPrinter
O42 - Logiciel: Canon Utilities Easy-PhotoPrint EX - (...) [HKLM][64Bits] -- Easy-PhotoPrint EX
O42 - Logiciel: Canon Utilities Solution Menu - (...) [HKLM][64Bits] -- CanonSolutionMenu
O42 - Logiciel: Cartes Anim�es 2 - (.Micro Application.) [HKLM][64Bits] -- {F2944E6F-DF6E-4D97-819F-79118EFC6A02}
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {A961C6FD-C583-45F6-A0A4-5E4376C29E41}
O42 - Logiciel: Contort Version 2.7 - (...) [HKLM][64Bits] -- Contort_is1
O42 - Logiciel: Convert VOB to AVI - (.www.convertvobtoavi.com.) [HKLM][64Bits] -- {5FE0C13A-63F1-4394-88A8-2D8722A75FE0}_is1
O42 - Logiciel: CoreVorbis Audio Decoder (remove only) - (...) [HKLM][64Bits] -- CoreVorbis Audio Decoder
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: DVD Decrypter 3.5.4.0 Fr - (...) [HKLM][64Bits] -- DVD Decrypter 3.5.4.0 Fr
O42 - Logiciel: DVD Flick 1.3.0.7 - (.Dennis Meuwissen.) [HKLM][64Bits] -- DVD Flick_is1
O42 - Logiciel: DVDFab 8.1.5.6 (17/01/2012) Qt - (.Fengtao Software Inc..) [HKLM][64Bits] -- DVDFab 8 Qt_is1
O42 - Logiciel: DVDFab HD Decrypter 4.1.2.0 - (.Fengtao Software Inc..) [HKLM][64Bits] -- DVDFab HD Decrypter 4_is1
O42 - Logiciel: DVDStyler v2.5 rc 1 - (...) [HKLM][64Bits] -- DVDStyler_is1
O42 - Logiciel: Del Mp3 Karaoke 4.8.4801 - (.Del Mp3 Karaoke.) [HKLM][64Bits] -- {DF3AD340-E29C-4B41-9915-48C145EC9A69}
O42 - Logiciel: DeskMarker - (.delight software gmbh.) [HKLM][64Bits] -- 4_is1
O42 - Logiciel: Direct Show Ogg Vorbis Filter (remove only) - (...) [HKLM][64Bits] -- OggDS
O42 - Logiciel: DirectVobSub (remove only) - (...) [HKLM][64Bits] -- DirectVobSub
O42 - Logiciel: DirectVobSub 2.41.6609 (64-bit) - (.MPC-HC Team.) [HKLM][64Bits] -- vsfilter64_is1
O42 - Logiciel: DivXLand Media Subtitler - (...) [HKLM][64Bits] -- DivXLand Media Subtitler
O42 - Logiciel: DivxToDVD 0.5.2 - (.VSO-Software SARL.) [HKLM][64Bits] -- VSO DivxToDVD_is1
O42 - Logiciel: D�tection de l'application Winamp - (.Nullsoft, Inc.) [HKCU][64Bits] -- Winamp Detect
O42 - Logiciel: Elements 9 Organizer - (.Nom de votre soci�t�.) [HKLM][64Bits] -- {433EACD8-4747-4A6A-826A-FFA9F39B0D40}
O42 - Logiciel: Elements STI Installer - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {25175695-4B20-4298-9F34-C2C57CD277B3}
O42 - Logiciel: Enregistrement utilisateur de Canon MP520 series - (...) [HKLM][64Bits] -- Enregistrement utilisateur de Canon MP520 series
O42 - Logiciel: FairUse Wizard 2 - (.FairUse Wizard.) [HKLM][64Bits] -- FairUse Wizard 2
O42 - Logiciel: FastStone Capture 7.1 - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Capture
O42 - Logiciel: Finale NotePad 2011 - (.MakeMusic.) [HKLM][64Bits] -- Finale NotePad 2011
O42 - Logiciel: Firebird SQL Server - MAGIX Edition - (.MAGIX AG.) [HKLM][64Bits] -- {34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}
O42 - Logiciel: FormatFactory 2.80 - (.Free Time.) [HKLM][64Bits] -- FormatFactory
O42 - Logiciel: Free Video Converter - (.Extensoft.) [HKLM][64Bits] -- Free Video Converter
O42 - Logiciel: FreeOCR v4.2 - (...) [HKLM][64Bits] -- freeocr_is1
O42 - Logiciel: Freez DVD Ripper v1.5 - (.www.smallvideosoft.com.) [HKLM][64Bits] -- Freez DVD Ripper_is1
O42 - Logiciel: GIMP 2.6.11 - (.The GIMP Team.) [HKLM][64Bits] -- WinGimp-2.0_is1
O42 - Logiciel: Garmin Communicator Plugin - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {17079027-EB8A-42C6-9BF8-825B78889F6A}
O42 - Logiciel: Garmin Communicator Plugin x64 - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {EB418DDD-5365-4381-87F6-D8BBB21CC1CA}
O42 - Logiciel: Garmin USB Drivers - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {510D2239-6C2E-457B-9590-485EC552D94D}
O42 - Logiciel: Gif R�cup�rateur 1.1 - (.Olivier RAVET.) [HKLM][64Bits] -- Gif R�cup�rateur_is1
O42 - Logiciel: GoldWave v5.25 - (...) [HKLM][64Bits] -- GoldWave v5.25
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: HHD Software Free Hex Editor Neo 4.97 - (.HHD Software, Ltd..) [HKLM][64Bits] -- {8EB85C0E-DE7D-4A53-BD66-708B8F2C80B0}
O42 - Logiciel: HandBrake 0.9.6 - (...) [HKLM][64Bits] -- HandBrake
O42 - Logiciel: High-Definition Video Playback - (.Nero AG.) [HKLM][64Bits] -- {58CB9A9A-1EFB-4EA8-B50C-3097E754AC21}
O42 - Logiciel: Huffyuv AVI lossless video codec (Remove Only) - (...) [HKLM][64Bits] -- HUFFYUV
O42 - Logiciel: HxD Hex Editor version 1.7.7.0 - (.Ma�l H�rz.) [HKLM][64Bits] -- HxD Hex Editor_is1
O42 - Logiciel: IFOEdit 0.971 Fr - (...) [HKLM][64Bits] -- IFOEdit 0.971 Fr
O42 - Logiciel: IL Download Manager - (.Image-Line bvba.) [HKLM][64Bits] -- IL Download Manager
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: InterVideo DeviceService - (.InterVideo.) [HKLM][64Bits] -- {521AAD14-5030-44BB-8B0E-5CE65FCE57E0}
O42 - Logiciel: IsoBuster 3.0 - (.Smart Projects.) [HKLM][64Bits] -- IsoBuster_is1
O42 - Logiciel: Java(TM) 6 Update 33 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216033FF}
O42 - Logiciel: Jubler subtitle editor - (...) [HKLM][64Bits] -- Jubler
O42 - Logiciel: K-Lite Codec Pack 8.7.0 (Basic) - (...) [HKLM][64Bits] -- KLiteCodecPack_is1
O42 - Logiciel: KC Softwares IDPhotoStudio - (.KC Softwares.) [HKLM][64Bits] -- KC Softwares IDPhotoStudio_is1
O42 - Logiciel: KMP+ / The KMPlayer v3.2.0.19 Beta FR - (.www.kmplayer.com/fr.) [HKLM][64Bits] -- KMP+ FR_is1
O42 - Logiciel: KaraFun Player - (.Recisio.) [HKLM][64Bits] -- KaraFun Player_is1
O42 - Logiciel: KaraFun Studio - (.Recisio.) [HKLM][64Bits] -- KaraFun Studio_is1
O42 - Logiciel: KaraWin Pro - (...) [HKLM][64Bits] -- {BED079C3-CA6E-4EFB-80EC-28A4BC772869}
O42 - Logiciel: Karaoke CD+G Creator Pro - (.Doblon.) [HKLM][64Bits] -- {AA77219C-0A77-4FF3-8CC5-2DC08469E6FF}_is1
O42 - Logiciel: Karaoke Video Creator - (.Doblon.) [HKLM][64Bits] -- {1E163AFB-7BAF-45C8-84CF-E9C732561DBF}_is1
O42 - Logiciel: Kaspersky Internet Security 2012 - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{45E557D6-2271-4F13-8101-C620B4285AB0}
O42 - Logiciel: Kaspersky Internet Security 2012 - (.Kaspersky Lab.) [HKLM][64Bits] -- {45E557D6-2271-4F13-8101-C620B4285AB0}
O42 - Logiciel: Kijio Subtitle Editor - (.Dejan Pelzel.) [HKLM][64Bits] -- {F1700C56-1D1A-42A7-A669-472F911B4E46}
O42 - Logiciel: Knoll Light Factory EZ Studio - (...) [HKLM][64Bits] -- Knoll Light Factory EZ Studio
O42 - Logiciel: LWS Facebook - (.Logitech.) [HKLM][64Bits] -- {FF167195-9EE4-46C0-8CD7-FBA3457E88AB}
O42 - Logiciel: LWS Gallery - (.Logitech.) [HKLM][64Bits] -- {6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}
O42 - Logiciel: LWS Help_main - (.Logitech.) [HKLM][64Bits] -- {1651216E-E7AD-4250-92A1-FB8ED61391C9}
O42 - Logiciel: LWS Launcher - (.Logitech.) [HKLM][64Bits] -- {83C8FA3C-F4EA-46C4-8392-D3CE353738D6}
O42 - Logiciel: LWS Motion Detection - (.Logitech.) [HKLM][64Bits] -- {71E66D3F-A009-44AB-8784-75E2819BA4BA}
O42 - Logiciel: LWS Pictures And Video - (.Logitech.) [HKLM][64Bits] -- {08610298-29AE-445B-B37D-EFBE05802967}
O42 - Logiciel: LWS Twitter - (.Logitech.) [HKLM][64Bits] -- {174A3B31-4C43-43DD-866F-73C9DB887B48}
O42 - Logiciel: LWS Video Mask Maker - (.Logitech.) [HKLM][64Bits] -- {EED027B7-0DB6-404B-8F45-6DFEE34A0441}
O42 - Logiciel: LWS VideoEffects - (.Logitech.) [HKLM][64Bits] -- {138A4072-9E64-46BD-B5F9-DB2BB395391F}
O42 - Logiciel: LWS WLM Plugin - (.Logitech.) [HKLM][64Bits] -- {9DAEA76B-E50F-4272-A595-0124E826553D}
O42 - Logiciel: LWS Webcam Software - (.Logitech.) [HKLM][64Bits] -- {8937D274-C281-42E4-8CDB-A0B2DF979189}
O42 - Logiciel: LWS YouTube Plugin - (.Logitech.) [HKLM][64Bits] -- {21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}
O42 - Logiciel: La boite a couleurs version 1.6.15 - (...) [HKLM][64Bits] -- La boite a couleurs_is1
O42 - Logiciel: Lame ACM MP3 Codec - (...) [HKLM][64Bits] -- LameACM
O42 - Logiciel: LauncherMA - (.Micro Application.) [HKLM][64Bits] -- {C06EFB22-B5DB-46C5-9215-BCB5C19C0858}
O42 - Logiciel: Light Image Resizer 4.1.0.6 - (.ObviousIdea.) [HKLM][64Bits] -- {EBE030DD-D404-4D92-85E9-8C3624820808}_is1
O42 - Logiciel: Lode Runner 2.0 - (.ZX Games.) [HKLM][64Bits] -- Lode Runner_is1
O42 - Logiciel: Logitech Webcam Software - (.Logitech Inc..) [HKLM][64Bits] -- {D40EB009-0499-459c-A8AF-C9C110766215}
O42 - Logiciel: MAGIX Goya burnR (MSI) - (.MAGIX AG.) [HKLM][64Bits] -- {7CA34A88-231B-4D96-AE12-DBE04419D62D}
O42 - Logiciel: MAGIX Music Maker 17 Version � t�l�charger - (.MAGIX AG.) [HKLM][64Bits] -- MAGIX_MSI_mm17
O42 - Logiciel: MAGIX Music Maker 17 Version � t�l�charger - (.MAGIX AG.) [HKLM][64Bits] -- {C1E27585-2AD0-4D5A-8693-0D2FFA276EF3}
O42 - Logiciel: MAGIX Music Maker MX Version � t�l�charger - (.MAGIX AG.) [HKLM][64Bits] -- MAGIX_MSI_mm18
O42 - Logiciel: MAGIX Music Maker MX Version � t�l�charger - (.MAGIX AG.) [HKLM][64Bits] -- {AD5C9F0A-2DC1-4421-957C-D86A816482DB}
O42 - Logiciel: MAGIX Screenshare - (.MAGIX AG.) [HKLM][64Bits] -- {E045FEEC-E626-485B-A361-2DA5CC2606DA}
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX AG.) [HKLM][64Bits] -- {7C881F50-A689-490B-9305-18D01A6B0BBD}
O42 - Logiciel: MKVToolNix 6.1.0 - (.Moritz Bunkus.) [HKLM][64Bits] -- MKVToolNix
O42 - Logiciel: MP3 & Musique Cr�ateur - (.Mystik Media.) [HKLM][64Bits] -- MP3 & Musique Cr�ateur
O42 - Logiciel: MPEG4E VFW - H.264/MPEG-4 AVC codec (remove only) - (...) [HKLM][64Bits] -- MPEG4E
O42 - Logiciel: MSVC90_x64 - (.Nokia.) [HKLM][64Bits] -- {AB071C8B-873C-459F-ACA9-9EBE03C3E89B}
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM][64Bits] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {459C13B0-DD46-11DF-BFE1-005056C00008}
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {8AAA8780-1D35-11E2-A3A6-F04DA23A5C58}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: MSXML 4.0 SP2 Parser and SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM][64Bits] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44}
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94}
O42 - Logiciel: Macromedia Flash Player 8 - (.Macromedia.) [HKLM][64Bits] -- ShockwaveFlash
O42 - Logiciel: MagicScore - (...) [HKLM][64Bits] -- MagicScore_is1
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: MediaInfo 0.7.58 - (.MediaArea.net.) [HKLM][64Bits] -- MediaInfo
O42 - Logiciel: Micro Application - MediaDICO Anagrammes - (...) [HKLM][64Bits] -- MediaDICO Anagrammes
O42 - Logiciel: Microsoft GIF Animator - (...) [HKLM][64Bits] -- GIF Animator
O42 - Logiciel: Microsoft Primary Interoperability Assemblies 2005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D24DB8B9-BB6C-4334-9619-BA1C650E13D3}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Morgan Stream Switcher - (...) [HKLM][64Bits] -- mmswitch
O42 - Logiciel: Movie Joiner v4 - (.MovieToolbox.) [HKLM][64Bits] -- {A03775BE-8AC6-4E8E-A80A-D112E373D6E2}
O42 - Logiciel: Mozilla Firefox 22.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 22.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: Nero - Burning Rom - (.ahead software gmbh.) [HKLM][64Bits] -- {A4D7B764-4140-11D4-88EB-0050DA3579C0}
O42 - Logiciel: Nero 10 Menu TemplatePack Basic - (.Nero AG.) [HKLM][64Bits] -- {63AA3EAB-23BB-48B2-9AD0-44F878075604}
O42 - Logiciel: Nero 10 Movie ThemePack Basic - (.Nero AG.) [HKLM][64Bits] -- {F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}
O42 - Logiciel: Nero 7 Premium - (.Nero AG.) [HKLM][64Bits] -- {C6115A28-F277-4E82-B067-84D28BF21036}
O42 - Logiciel: Nero BackItUp - (.Nero AG.) [HKLM][64Bits] -- {0420F95C-11FF-4E02-B967-6CC22B188F9F}
O42 - Logiciel: Nero BackItUp and Burn - (.Nero AG.) [HKLM][64Bits] -- {E08CC458-41FB-4BB5-9B08-2C83DB55A5B9}
O42 - Logiciel: Nero BurnRights - (.Nero AG.) [HKLM][64Bits] -- {397516AE-7DFE-4F90-84E0-BD616D559434}
O42 - Logiciel: Nero Control Center 10 - (.Nero AG.) [HKLM][64Bits] -- {6DFB899F-17A2-48F0-A533-ED8D6866CF38}
O42 - Logiciel: Nero ControlCenter 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {523B2B1B-D8DB-4B41-90FF-C4D799E2758A}
O42 - Logiciel: Nero Core Components 10 - (.Nero AG.) [HKLM][64Bits] -- {2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}
O42 - Logiciel: Nero Dolby Files 10 - (.Nero AG.) [HKLM][64Bits] -- {C3580AC4-C827-4332-B935-9A282ED5BB97}
O42 - Logiciel: Nero Express - (.Nero AG.) [HKLM][64Bits] -- {6C3CF7AC-5AB0-42D9-93C0-68166A57AFB6}
O42 - Logiciel: Nero RescueAgent - (.Nero AG.) [HKLM][64Bits] -- {51E2F9B3-A972-4F58-B4EF-4D9676D9F5D1}
O42 - Logiciel: Nero Vision 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {329411A0-19F3-4740-874F-17400B126F27}
O42 - Logiciel: Nero Vision Xtra - (.Nero AG.) [HKLM][64Bits] -- {7AA92D13-8B7A-48B9-B18D-645564FAD258}
O42 - Logiciel: NeroKwikMedia Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {02FCAA8F-59D3-4198-822E-135C61EE4F0B}
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM][64Bits] -- {2D99A593-C841-43A7-B7C9-D6F3AE70B756}
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM][64Bits] -- {C373F7C4-05D2-4047-96D1-6AF30661C6AA}
O42 - Logiciel: PDF Settings CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A78FE97A-C0C8-49CE-89D0-EDD524A17392}
O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM][64Bits] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1
O42 - Logiciel: PDFCreator - (.Frank Heind�rfer, Philip Chinery.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd  (08/22/2008 7.0.0.0) - (.Nokia.) [HKLM][64Bits] -- FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D
O42 - Logiciel: Paint.NET v3.5.11 - (.dotPDN LLC.) [HKLM][64Bits] -- {72EF03F5-0507-4861-9A44-D99FD4C41418}
O42 - Logiciel: Photo Magician 2.0.1.0 - (.Sheldon Solutions.) [HKLM][64Bits] -- {AF766933-2E99-4D86-916E-FEA0A482B89E}_is1
O42 - Logiciel: Pinnacle Studio Ultimate Plugins - (.Pinnacle Systems.) [HKLM][64Bits] -- {65173BC2-60E7-4DE8-A61D-A81FCB96EE93}
O42 - Logiciel: PoiZone - (.Image-Line bvba.) [HKLM][64Bits] -- PoiZone
O42 - Logiciel: PrintPratic - (.Micro Application.) [HKLM][64Bits] -- PrintPratic
O42 - Logiciel: PxMergeModule - (.Your Company Name.) [HKLM][64Bits] -- {024521CF-C07E-4F8E-8481-0D75695E03AF}
O42 - Logiciel: Real Alternative 1.7.5 - (...) [HKLM][64Bits] -- RealAlt_is1
O42 - Logiciel: Realisator - (...) [HKLM][64Bits] -- Realisator_is1
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Red Giant ToonIt Studio - (...) [HKLM][64Bits] -- Red Giant ToonIt Studio
O42 - Logiciel: Rep-Listing - (.JPA.) [HKLM][64Bits] -- {887EF08A-011E-477C-B6CB-01E540538ADB}
O42 - Logiciel: Ri4m v5.0.1d - (...) [HKLM][64Bits] -- Ri4m v5.0.1d
O42 - Logiciel: SUPER � v2011.build.49 (July 1st, 2011) version v2011.build.49 - (.eRightSoft.) [HKLM][64Bits] -- {B93DCF58-AA57-41EC-8D69-B05C66C6312D}_is1
O42 - Logiciel: Satsuki Decoder Pack 64 bits - (.Satsuki Yatoshi'S Softs.) [HKLM][64Bits] -- Satsuki Decoder Pack
O42 - Logiciel: ScanSoft OmniPage SE 4 - (.Nuance Communications, Inc..) [HKLM][64Bits] -- {DEE88727-779B-47A9-ACEF-F87CA5F92A65}
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
O42 - Logiciel: Serenade v3.1 demo - (...) [HKLM][64Bits] -- ST5UNST #1
O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}
O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM][64Bits] -- {B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}
O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}
O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- {2F8BA3FD-1FA9-4279-B696-712ABB12F09F}
O42 - Logiciel: SmartSound Quicktracks for Premiere Elements 9.0 - (.SmartSound Software Inc.) [HKLM][64Bits] -- InstallShield_{6748E773-5DA0-4D19-8AA5-273B4133A09B}
O42 - Logiciel: SmartSound Quicktracks for Premiere Elements 9.0 - (.SmartSound Software Inc.) [HKLM][64Bits] -- {6748E773-5DA0-4D19-8AA5-273B4133A09B}
O42 - Logiciel: Sqirlz Morph - (.xiberpix.) [HKLM][64Bits] -- Sqirlz Morph
O42 - Logiciel: Srt2Sup a4.03 - (.Gandalf Services.) [HKLM][64Bits] -- {5E6417D0-960A-4C18-9CB8-DD7678BDB8D0}
O42 - Logiciel: SubRip 1.17.1 (remove only) - (...) [HKLM][64Bits] -- SubRip
O42 - Logiciel: SubSync (C:\Program Files (x86)\SubSync\) - (...) [HKLM][64Bits] -- ST6UNST #2
O42 - Logiciel: SubSync - (...) [HKLM][64Bits] -- ST6UNST #1
O42 - Logiciel: Substation Alpha 4.08 - (.Default Manufacturer.) [HKLM][64Bits] -- {E4E95EF0-86B7-45DA-A858-FAE534CC10E2}
O42 - Logiciel: Subtitle Edit 3.3.7 - (.Nikse.) [HKLM][64Bits] -- SubtitleEdit_is1
O42 - Logiciel: Subtitle Workshop 2.51 - (...) [HKLM][64Bits] -- SubtitleWorkshop
O42 - Logiciel: SubtitleCreator - (.Erik Vullings.) [HKLM][64Bits] -- SubtitleCreator
O42 - Logiciel: SupConverter FE version 1.5.5.0 - (...) [HKLM][64Bits] -- SupConverter FE_is1
O42 - Logiciel: SuperCopier2 - (...) [HKLM][64Bits] -- SuperCopier2
O42 - Logiciel: TMPGEnc Authoring Works 5 Trial Version - (.Pegasys Inc..) [HKLM][64Bits] -- {82EA864C-E79C-4CCD-9B52-EC6F712683C0}
O42 - Logiciel: Text-To-Speech-Runtime - (.Magix Development GmbH.) [HKLM][64Bits] -- {7B3F0113-E63C-4D6D-AF19-111A3165CCA2}
O42 - Logiciel: The FilmMachine 1.6.1 - (.The Mask Productions.) [HKLM][64Bits] -- The FilmMachine_is1
O42 - Logiciel: Time Adjuster STANDARD 3.1 - (.IrekSoftware.com.) [HKCU][64Bits] -- TimeAdjuster
O42 - Logiciel: Toxic Biohazard - (.Image-Line bvba.) [HKLM][64Bits] -- Toxic Biohazard
O42 - Logiciel: Triogical v2.01 - (.J�r�my Routier & Alain Decayeux.) [HKLM][64Bits] -- Triogical!_is1
O42 - Logiciel: Ulead DVD MovieFactory 6 TBYB - (.InterVideo Digital Technology Corporation.) [HKLM][64Bits] -- InstallShield_{CCC4E428-411E-4605-B515-317D50ABD477}
O42 - Logiciel: Ulead GIF Animator 5 TBYB - (.Ulead System.) [HKLM][64Bits] -- {8AF3E926-ED59-11D4-A44B-0000E86D2305}
O42 - Logiciel: UltraStar 0.8.3 - (...) [HKLM][64Bits] -- UltraStar
O42 - Logiciel: UltraStar Deluxe - (.USDX Team.) [HKLM][64Bits] -- UltraStar Deluxe
O42 - Logiciel: VLC media player 2.0.1 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: VSO ConvertXToDVD - (.VSO-Software SARL.) [HKLM][64Bits] -- {CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1
O42 - Logiciel: Vegas Movie Studio HD Platinum 10.0 - (.Sony.) [HKLM][64Bits] -- {40AE01BE-A290-4FFB-8DAB-C624C17DC87E}
O42 - Logiciel: Vegas Pro 12.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {8830ADE1-1D35-11E2-B7CA-F04DA23A5C58}
O42 - Logiciel: Verbatim GREEN BUTTON 1.54 - (.Verbatim.) [HKLM][64Bits] -- Verbatim GREEN BUTTON_is1
O42 - Logiciel: Verbatim Hard Drive Formatter - (.Verbatim.) [HKLM][64Bits] -- Verbatim Hard Drive Formatter_is1
O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-040C-0000-0000000FF1CE}
O42 - Logiciel: VisualSubSync (remove only) - (...) [HKLM][64Bits] -- VisualSubSync
O42 - Logiciel: VobSub v2.23 (Remove Only) - (.Gabest.) [HKLM][64Bits] -- VobSub
O42 - Logiciel: Walaoke 2.20.0 - (.Walasoft.) [HKLM][64Bits] -- Walaoke
O42 - Logiciel: WinDirStat 1.1.2 - (...) [HKCU][64Bits] -- WinDirStat
O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Winamp - (.Nullsoft, Inc.) [HKLM][64Bits] -- Winamp
O42 - Logiciel: Windows Driver Package - Garmin (grmnusb) GARMIN Devices  (06/03/2009 2.3.0 - (.Garmin.) [HKLM][64Bits] -- 49CF605F02C7954F4E139D18828DE298CD59217C
O42 - Logiciel: Windows Media Encoder 9 Series - (...) [HKLM][64Bits] -- Windows Media Encoder 9
O42 - Logiciel: Windows Media Encoder 9 Series - (.Microsoft Corporation.) [HKLM][64Bits] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
O42 - Logiciel: Windows XP Mode - (.Microsoft Corporation.) [HKLM][64Bits] -- {1374CC63-B520-4f3f-98E8-E9020BF01CFF}
O42 - Logiciel: XnView 1.98.5 - (.Gougelet Pierre-e.) [HKLM][64Bits] -- XnView_is1
O42 - Logiciel: Xvid 1.1.2 final uninstall - (.Xvid team (Koepi).) [HKLM][64Bits] -- Xvid_is1
O42 - Logiciel: YAMAHA XG SoftSynthesizer S-YXG50  - (...) [HKLM][64Bits] -- {B713000F-FBE3-11D3-9D91-0050DA5C3DCF}
O42 - Logiciel: Yahoo! Toolbar - (...) [HKLM][64Bits] -- Yahoo! Companion  =>Toolbar.Yahoo
O42 - Logiciel: Yass 0.9.2 - (...) [HKLM][64Bits] -- Yass 0.9.2
O42 - Logiciel: Yass Along 0.9.9 - (...) [HKLM][64Bits] -- Yass Along 0.9.9
O42 - Logiciel: dBpowerAMP - (...) [HKLM][64Bits] -- dBpowerAMP
O42 - Logiciel: erLT - (.Logitech, Inc..) [HKLM][64Bits] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}
O42 - Logiciel: ffdshow [rev 1324] [2007-07-01] - (...) [HKLM][64Bits] -- ffdshow_is1
O42 - Logiciel: m4ng Codec Pack - (...) [HKLM][64Bits] -- m4ng Codec Pack
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}
O42 - Logiciel: vanBasco's Karaoke Player - (...) [HKLM][64Bits] -- VMidi
~ Logic: 424 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\4Videosoft Studio]
[HKCU\Software\7-Zip]
[HKCU\Software\8322898]
[HKCU\Software\AC3Filter]
[HKCU\Software\ASIO]
[HKCU\Software\ASProtect]
[HKCU\Software\ASUS]
[HKCU\Software\ATI]
[HKCU\Software\AVAST Software]
[HKCU\Software\AVI ReComp]
[HKCU\Software\AVS4YOU]
[HKCU\Software\Adobe]
[HKCU\Software\Ahead]
[HKCU\Software\AppDataLow]
[HKCU\Software\Audacity]
[HKCU\Software\Auslogics]
[HKCU\Software\BCCP]
[HKCU\Software\BlueFive]
[HKCU\Software\CDDB]
[HKCU\Software\Canneverbe Limited]
[HKCU\Software\CanonBJ]
[HKCU\Software\Canon]
[HKCU\Software\CeWe Color]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Convar]
[HKCU\Software\CoreAAC]
[HKCU\Software\CoreVorbis]
[HKCU\Software\CyberLink]
[HKCU\Software\Cygnus Solutions]
[HKCU\Software\DVD Decrypter]
[HKCU\Software\DVDAuthor2]
[HKCU\Software\DVDAuthorPro]
[HKCU\Software\DVDFab]
[HKCU\Software\DVDStyler]
[HKCU\Software\DXTransform]
[HKCU\Software\DanniDin]
[HKCU\Software\Defsoft]
[HKCU\Software\DigitByteStudio]
[HKCU\Software\Digital River]
[HKCU\Software\DirectShow]
[HKCU\Software\DivXNetworks]
[HKCU\Software\Doblon]
[HKCU\Software\EffectMgr]
[HKCU\Software\Elecard]
[HKCU\Software\Enhancer]
[HKCU\Software\Extensoft]
[HKCU\Software\FUW]
[HKCU\Software\FairUse Wizard 2]
[HKCU\Software\FairUseW]
[HKCU\Software\FastStone]
[HKCU\Software\FlasK Development]
[HKCU\Software\FreeTime]
[HKCU\Software\Freecom]
[HKCU\Software\Freemake]
[HKCU\Software\Freeware]
[HKCU\Software\GAP]
[HKCU\Software\GNU]
[HKCU\Software\GSpot Appliance Corp]
[HKCU\Software\Gabest]
[HKCU\Software\Gadwin Systems]
[HKCU\Software\Game Maker]
[HKCU\Software\Garmin]
[HKCU\Software\GoldWave]
[HKCU\Software\Google]
[HKCU\Software\HHD Software]
[HKCU\Software\HaaliMkx]
[HKCU\Software\Haali]
[HKCU\Software\Huisendobler]
[HKCU\Software\IPC software]
[HKCU\Software\Illustrate]
[HKCU\Software\Image-Line]
[HKCU\Software\Imagineer Systems Ltd]
[HKCU\Software\Intel]
[HKCU\Software\InterVideo]
[HKCU\Software\IrekZielinskiSoft]
[HKCU\Software\JavaSoft]
[HKCU\Software\KC Softwares]
[HKCU\Software\KMPlayer]
[HKCU\Software\Karaoke-DX]
[HKCU\Software\Karawin]
[HKCU\Software\KasperskyLab]
[HKCU\Software\LAV]
[HKCU\Software\Laventure]
[HKCU\Software\Leadertech]
[HKCU\Software\Licenses]
[HKCU\Software\Ligos]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\LogiShrd]
[HKCU\Software\Logitech]
[HKCU\Software\MAGIX AG]
[HKCU\Software\MPEG4E.COM]
[HKCU\Software\Macromedia]
[HKCU\Software\MagicScore Music Software]
[HKCU\Software\Magix Development]
[HKCU\Software\Magix]
[HKCU\Software\MainConcept (Broadcast)]
[HKCU\Software\MainConcept]
[HKCU\Software\MakeMusic]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Media Research Group]
[HKCU\Software\MediaChance]
[HKCU\Software\Micro Application]
[HKCU\Software\Minnetonka Audio Software]
[HKCU\Software\MovieToolbox]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\Mystik Media (www.mystikmedia.com)]
[HKCU\Software\Nero]
[HKCU\Software\Netscape]
[HKCU\Software\NewBlue]
[HKCU\Software\ODBC]
[HKCU\Software\ObviousIdea]
[HKCU\Software\OnDemand]
[HKCU\Software\PACE Anti-Piracy]
[HKCU\Software\PDFCreator]
[HKCU\Software\PDFEdit]
[HKCU\Software\Paint.NET]
[HKCU\Software\Pegasys Inc.]
[HKCU\Software\Pinnacle Systems]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\PowerPack]
[HKCU\Software\Protexis]
[HKCU\Software\PrtScr]
[HKCU\Software\Pvm]
[HKCU\Software\RECISIO]
[HKCU\Software\RealNetworks]
[HKCU\Software\Realtek]
[HKCU\Software\Rep-Listing]
[HKCU\Software\SFX TEAM]
[HKCU\Software\SWiSHzone.com]
[HKCU\Software\Satsuki Decoder Pack]
[HKCU\Software\ScanSoft]
[HKCU\Software\Seifert]
[HKCU\Software\Skype]
[HKCU\Software\Smart Projects]
[HKCU\Software\SoftVoice]
[HKCU\Software\Softwrap]
[HKCU\Software\Sony Creative Software]
[HKCU\Software\SubRip]
[HKCU\Software\SysInternals]
[HKCU\Software\The Mask Productions]
[HKCU\Software\Tracker Software]
[HKCU\Software\Trolltech]
[HKCU\Software\TuneUp]
[HKCU\Software\Ulead Systems]
[HKCU\Software\Ulead]
[HKCU\Software\UnFREEz]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\VFPlugin]
[HKCU\Software\VOBMerge 2]
[HKCU\Software\VSO]
[HKCU\Software\VirtualDub.org]
[HKCU\Software\VisualSubSync]
[HKCU\Software\Vlad]
[HKCU\Software\WalaSoft]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Winamp]
[HKCU\Software\Wow6432Node]
[HKCU\Software\Xara]
[HKCU\Software\YAMAHA]
[HKCU\Software\ZX-Games]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\delight software gmbh]
[HKCU\Software\jsoto's tools]
[HKCU\Software\madFlac]
[HKCU\Software\mkvmergeGUI]
[HKCU\Software\vanBasco]
[HKCU\Software\xiberpix]
[HKCU\Software\yahoo]  =>Toolbar.Yahoo
[HKLM\Software\7-Zip]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Adobe]
[HKLM\Software\Audible]
[HKLM\Software\CBSTEST]
[HKLM\Software\Canneverbe Limited]
[HKLM\Software\Canon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\DTS]
[HKLM\Software\DivX]
[HKLM\Software\Dolby]
[HKLM\Software\GNU]
[HKLM\Software\HaaliMkx]
[HKLM\Software\InfoWatch]
[HKLM\Software\Intel]
[HKLM\Software\KasperskyLab]
[HKLM\Software\Logitech]
[HKLM\Software\Minnetonka Audio Software]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Nokia]
[HKLM\Software\ODBC]
[HKLM\Software\PACE Anti-Piracy]
[HKLM\Software\PC Connectivity Solution]
[HKLM\Software\Paint.NET]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\SonicFocus]
[HKLM\Software\Sonic]
[HKLM\Software\Sony Creative Software]
[HKLM\Software\Stool]
[HKLM\Software\Tracker Software]
[HKLM\Software\TuneUp]
[HKLM\Software\Waves Audio]
[HKLM\Software\Wow6432Node\ASDMA]
[HKLM\Software\Wow6432Node\ASUS]
[HKLM\Software\Wow6432Node\ATI Technologies]
[HKLM\Software\Wow6432Node\ATI]
[HKLM\Software\Wow6432Node\AVAST Software]
[HKLM\Software\Wow6432Node\AVS4YOU]
[HKLM\Software\Wow6432Node\Adobe Systems]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\Aegisub]
[HKLM\Software\Wow6432Node\Aimersoft]
[HKLM\Software\Wow6432Node\Audible]
[HKLM\Software\Wow6432Node\Avnex]
[HKLM\Software\Wow6432Node\CDDB]
[HKLM\Software\Wow6432Node\CR-TEKnologies]
[HKLM\Software\Wow6432Node\Canneverbe Limited]
[HKLM\Software\Wow6432Node\Canon]
[HKLM\Software\Wow6432Node\Caphyon]
[HKLM\Software\Wow6432Node\Chilkat Software, Inc.]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\Cygnus Solutions]
[HKLM\Software\Wow6432Node\DVDFab]
[HKLM\Software\Wow6432Node\DirectShowFilters]
[HKLM\Software\Wow6432Node\DivXNetworks]
[HKLM\Software\Wow6432Node\DivX]
[HKLM\Software\Wow6432Node\Extensoft]
[HKLM\Software\Wow6432Node\FairUse Wizard]
[HKLM\Software\Wow6432Node\Freemake]
[HKLM\Software\Wow6432Node\GNU]
[HKLM\Software\Wow6432Node\Gabest]
[HKLM\Software\Wow6432Node\Garmin]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\HPS]
[HKLM\Software\Wow6432Node\HaaliMkx]
[HKLM\Software\Wow6432Node\HighCriteria]
[HKLM\Software\Wow6432Node\Image-Line]
[HKLM\Software\Wow6432Node\Info-Concept]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\InterVideo]
[HKLM\Software\Wow6432Node\JPA]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\Jomigo]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\KLCodecPack]
[HKLM\Software\Wow6432Node\Karasoft]
[HKLM\Software\Wow6432Node\KasperskyLab]
[HKLM\Software\Wow6432Node\LAV]
[HKLM\Software\Wow6432Node\Logitech]
[HKLM\Software\Wow6432Node\MAGIX]
[HKLM\Software\Wow6432Node\MEDUSA]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Magix Development]
[HKLM\Software\Wow6432Node\MakeMusic]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\Micro Application]
[HKLM\Software\Wow6432Node\Minnetonka Audio Software]
[HKLM\Software\Wow6432Node\Mircrosoft]
[HKLM\Software\Wow6432Node\Morgan]
[HKLM\Software\Wow6432Node\MovieToolbox]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\Nero]
[HKLM\Software\Wow6432Node\Nokia]
[HKLM\Software\Wow6432Node\Nullsoft]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\ObviousIdea]
[HKLM\Software\Wow6432Node\Outsim]
[HKLM\Software\Wow6432Node\PC Connectivity Solution]
[HKLM\Software\Wow6432Node\PCSuite]
[HKLM\Software\Wow6432Node\PDFCreator]
[HKLM\Software\Wow6432Node\PegasusImaging]
[HKLM\Software\Wow6432Node\Pegasys Inc.]
[HKLM\Software\Wow6432Node\Pinnacle Systems]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Preview Systems]
[HKLM\Software\Wow6432Node\Propellerhead Software]
[HKLM\Software\Wow6432Node\Protexis]
[HKLM\Software\Wow6432Node\RECISIO]
[HKLM\Software\Wow6432Node\ReJig]
[HKLM\Software\Wow6432Node\RealAlternative]
[HKLM\Software\Wow6432Node\RealNetworks]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\Red Giant Software]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\S3R521]
[HKLM\Software\Wow6432Node\Safer Networking Limited]
[HKLM\Software\Wow6432Node\ScanSoft]
[HKLM\Software\Wow6432Node\Sheldon Solutions]
[HKLM\Software\Wow6432Node\SmartSound Software]
[HKLM\Software\Wow6432Node\SoftVTU]
[HKLM\Software\Wow6432Node\SoftVoice]
[HKLM\Software\Wow6432Node\Sonic]
[HKLM\Software\Wow6432Node\Sony Creative Software]
[HKLM\Software\Wow6432Node\Sony Media Software]
[HKLM\Software\Wow6432Node\Trad-FR]
[HKLM\Software\Wow6432Node\TuneUp]
[HKLM\Software\Wow6432Node\URUSoft]
[HKLM\Software\Wow6432Node\Ulead Systems]
[HKLM\Software\Wow6432Node\Uniblue]
[HKLM\Software\Wow6432Node\VOBMerge 2]
[HKLM\Software\Wow6432Node\VSO]
[HKLM\Software\Wow6432Node\VST]
[HKLM\Software\Wow6432Node\VideoLAN]
[HKLM\Software\Wow6432Node\Volatile]
[HKLM\Software\Wow6432Node\WinRAR]
[HKLM\Software\Wow6432Node\Windows]
[HKLM\Software\Wow6432Node\Wow6432Node]
[HKLM\Software\Wow6432Node\Xara]
[HKLM\Software\Wow6432Node\XnView]
[HKLM\Software\Wow6432Node\YAMAHA CORPORATION]
[HKLM\Software\Wow6432Node\YAMAHA]
[HKLM\Software\Wow6432Node\Yahoo]  =>Toolbar.Yahoo
[HKLM\Software\Wow6432Node\Yass Along]
[HKLM\Software\Wow6432Node\Yass]
[HKLM\Software\Wow6432Node\ahead]
[HKLM\Software\Wow6432Node\lameme]
[HKLM\Software\Wow6432Node\logishrd]
[HKLM\Software\Wow6432Node\mozilla.org]
[HKLM\Software\Wow6432Node\none]
[HKLM\Software\Wow6432Node\xiberpix]
[HKLM\Software\Wow6432Node]
~ Key Software: 509 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 02/04/2013 - 16:30:27 - [89,054] ----D C:\Program Files (x86)\4Videosoft Studio
O43 - CFD: 13/06/2013 - 10:53:44 - [22,209] ----D C:\Program Files (x86)\AC3 Cutter
O43 - CFD: 31/03/2012 - 09:26:43 - [0,563] ----D C:\Program Files (x86)\AC3Filter
O43 - CFD: 13/06/2013 - 10:31:34 - [1,112] ----D C:\Program Files (x86)\AC3SPLITTER
O43 - CFD: 02/08/2013 - 15:51:09 - [-1945,605] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 25/04/2012 - 12:02:05 - [2,857] ----D C:\Program Files (x86)\Adobe Download Assistant
O43 - CFD: 11/05/2011 - 19:21:11 - [65,621] ----D C:\Program Files (x86)\Aegisub
O43 - CFD: 04/11/2011 - 20:16:23 - [111,663] ----D C:\Program Files (x86)\Ahead
O43 - CFD: 06/04/2013 - 10:04:31 - [0] ----D C:\Program Files (x86)\Aimersoft
O43 - CFD: 02/09/2012 - 10:32:47 - [0] ----D C:\Program Files (x86)\Anuman Interactive
O43 - CFD: 13/04/2011 - 15:59:08 - [60,939] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 07/04/2013 - 11:10:09 - [8,444] ----D C:\Program Files (x86)\Audacity
O43 - CFD: 13/06/2013 - 11:10:03 - [19,242] ----D C:\Program Files (x86)\Audio Edit Magic
O43 - CFD: 13/04/2011 - 14:14:33 - [8,799] ----D C:\Program Files (x86)\Auslogics
O43 - CFD: 13/07/2013 - 11:41:14 - [22,921] ----D C:\Program Files (x86)\AV Video Karaoke Maker
O43 - CFD: 27/03/2012 - 13:37:08 - [8,113] ----D C:\Program Files (x86)\AVI ReComp
O43 - CFD: 28/07/2013 - 13:48:11 - [5,614] ----D C:\Program Files (x86)\AviSynth 2.5
O43 - CFD: 02/07/2012 - 11:25:28 - [0] ----D C:\Program Files (x86)\AVS4YOU
O43 - CFD: 03/05/2011 - 12:07:17 - [7,942] ----D C:\Program Files (x86)\CamStudio
O43 - CFD: 09/05/2011 - 17:37:09 - [285,856] ----D C:\Program Files (x86)\Canon
O43 - CFD: 02/06/2012 - 14:21:31 - [0] ----D C:\Program Files (x86)\CaptureWiz
O43 - CFD: 02/09/2012 - 10:34:19 - [0,034] ----D C:\Program Files (x86)\ClubDJProVJ 5
O43 - CFD: 02/04/2013 - 14:08:21 - [1200,801] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 14/11/2011 - 12:53:31 - [3,523] ----D C:\Program Files (x86)\Contort
O43 - CFD: 03/08/2012 - 16:14:37 - [6,869] ----D C:\Program Files (x86)\Convar
O43 - CFD: 05/09/2011 - 18:35:41 - [15,141] ----D C:\Program Files (x86)\Convert VOB to AVI
O43 - CFD: 31/05/2011 - 19:32:23 - [1,327] ----D C:\Program Files (x86)\CR-TEKnologies
O43 - CFD: 20/07/2013 - 11:55:38 - [4,117] ----D C:\Program Files (x86)\Defsoft
O43 - CFD: 28/07/2012 - 12:49:36 - [35,545] ----D C:\Program Files (x86)\Dejan Pelzel
O43 - CFD: 27/04/2012 - 10:34:28 - [6,559] ----D C:\Program Files (x86)\delight software gmbh
O43 - CFD: 20/05/2011 - 16:29:53 - [2,974] ----D C:\Program Files (x86)\DelMp3Kok
O43 - CFD: 22/11/2011 - 14:01:34 - [0] ----D C:\Program Files (x86)\Directory Lister
O43 - CFD: 24/03/2013 - 12:58:42 - [0,973] ----D C:\Program Files (x86)\DirectVobSub
O43 - CFD: 02/09/2012 - 10:35:36 - [0,718] ----D C:\Program Files (x86)\DivX
O43 - CFD: 30/12/2012 - 12:10:19 - [0,711] ----D C:\Program Files (x86)\DivXLand
O43 - CFD: 13/07/2013 - 11:19:32 - [64,432] ----D C:\Program Files (x86)\Doblon
O43 - CFD: 12/03/2012 - 12:43:56 - [3,309] ----D C:\Program Files (x86)\DVD Decrypter
O43 - CFD: 18/04/2013 - 12:25:32 - [42,824] ----D C:\Program Files (x86)\DVD Flick
O43 - CFD: 30/07/2011 - 19:41:19 - [49,222] ----D C:\Program Files (x86)\DVDFab 8 Qt
O43 - CFD: 29/03/2012 - 11:47:00 - [4,513] ----D C:\Program Files (x86)\DVDFab HD Decrypter 4
O43 - CFD: 02/09/2012 - 10:36:28 - [0] ----D C:\Program Files (x86)\DVDlabPro2
O43 - CFD: 02/07/2013 - 19:44:24 - [62,986] ----D C:\Program Files (x86)\DVDStyler
O43 - CFD: 31/01/2012 - 15:05:19 - [39,898] ----D C:\Program Files (x86)\eRightSoft
O43 - CFD: 17/05/2012 - 14:26:07 - [22,042] ----D C:\Program Files (x86)\FairUse Wizard 2
O43 - CFD: 02/06/2012 - 11:38:41 - [2,019] ----D C:\Program Files (x86)\FastStone Capture
O43 - CFD: 08/11/2011 - 18:08:26 - [169,833] ----D C:\Program Files (x86)\Finale NotePad 2011
O43 - CFD: 19/05/2013 - 13:57:26 - [0,039] ----D C:\Program Files (x86)\Free PDF to Word Converter
O43 - CFD: 02/09/2012 - 10:37:04 - [0,048] ----D C:\Program Files (x86)\Free Screen To Video
O43 - CFD: 02/09/2012 - 10:37:20 - [34,682] ----D C:\Program Files (x86)\Free Video Converter
O43 - CFD: 04/07/2012 - 16:58:51 - [45,496] ----D C:\Program Files (x86)\Freemake
O43 - CFD: 28/12/2011 - 10:52:05 - [114,229] ----D C:\Program Files (x86)\FreeTime
O43 - CFD: 10/08/2011 - 10:57:31 - [0,370] ----D C:\Program Files (x86)\Gabest
O43 - CFD: 10/06/2012 - 17:18:11 - [0] ----D C:\Program Files (x86)\Gadwin Systems
O43 - CFD: 02/09/2012 - 10:39:40 - [0,096] ----D C:\Program Files (x86)\Game_Maker8
O43 - CFD: 09/08/2011 - 18:51:57 - [3,789] ----D C:\Program Files (x86)\Gandalf Services
O43 - CFD: 24/05/2012 - 11:57:15 - [0,121] ----D C:\Program Files (x86)\Garmin
O43 - CFD: 24/05/2012 - 11:57:30 - [14,677] ----D C:\Program Files (x86)\Garmin GPS Plugin
O43 - CFD: 18/11/2012 - 16:08:28 - [1,404] ----D C:\Program Files (x86)\GIF Recuperateur
O43 - CFD: 12/12/2011 - 18:46:52 - [107,032] ----D C:\Program Files (x86)\GIMP-2.0
O43 - CFD: 02/06/2012 - 18:40:19 - [5,061] ----D C:\Program Files (x86)\GoldWave
O43 - CFD: 13/04/2011 - 12:24:08 - [950,880] ----D C:\Program Files (x86)\Google
O43 - CFD: 08/07/2011 - 11:41:18 - [2,316] ----D C:\Program Files (x86)\HxD
O43 - CFD: 01/03/2013 - 15:50:00 - [0,801] ----D C:\Program Files (x86)\IfoEdit
O43 - CFD: 14/09/2011 - 09:56:08 - [4,113] ----D C:\Program Files (x86)\Illustrate
O43 - CFD: 02/09/2012 - 10:41:28 - [24,892] ----D C:\Program Files (x86)\Image-Line
O43 - CFD: 26/11/2012 - 13:29:41 - [29,735] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 13/04/2011 - 12:08:05 - [14,853] ----D C:\Program Files (x86)\Intel
O43 - CFD: 15/08/2013 - 09:01:35 - [4,886] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 06/07/2012 - 10:08:37 - [84,568] ----D C:\Program Files (x86)\Java
O43 - CFD: 21/07/2013 - 09:36:17 - [4,938] ----D C:\Program Files (x86)\Jubler
O43 - CFD: 05/07/2012 - 09:52:45 - [58,667] ----D C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 20/05/2011 - 14:28:25 - [6,663] ----D C:\Program Files (x86)\KaraFun
O43 - CFD: 17/03/2013 - 15:18:10 - [13,922] ----D C:\Program Files (x86)\KaraFun Player
O43 - CFD: 24/07/2011 - 19:10:22 - [13,356] ----D C:\Program Files (x86)\KaraFun Studio
O43 - CFD: 20/05/2011 - 16:22:20 - [5,671] ----D C:\Program Files (x86)\Karasoft
O43 - CFD: 09/10/2012 - 14:55:53 - [131,137] ----D C:\Program Files (x86)\Kaspersky Lab
O43 - CFD: 16/02/2012 - 19:01:55 - [2,481] ----D C:\Program Files (x86)\KC Softwares
O43 - CFD: 25/05/2013 - 12:30:27 - [10,958] ----D C:\Program Files (x86)\La Course aux Nombres-3.0.2
O43 - CFD: 28/04/2013 - 14:09:29 - [2,362] ----D C:\Program Files (x86)\LaBoiteACouleurs
O43 - CFD: 05/07/2012 - 09:53:39 - [0] ----D C:\Program Files (x86)\Leawo
O43 - CFD: 21/04/2011 - 11:18:55 - [0] ----D C:\Program Files (x86)\LibreOffice 3
O43 - CFD: 27/06/2011 - 14:03:36 - [77,186] ----D C:\Program Files (x86)\Logitech
O43 - CFD: 09/08/2011 - 19:09:20 - [22,203] ----D C:\Program Files (x86)\m4ng codec pack
O43 - CFD: 02/09/2012 - 10:43:00 - [0,073] ----D C:\Program Files (x86)\m4ng Video Analyser
O43 - CFD: 02/09/2012 - 10:43:08 - [0,072] ----D C:\Program Files (x86)\M4ng Video Enhancer
O43 - CFD: 24/05/2011 - 18:22:16 - [12,931] ----D C:\Program Files (x86)\MagicScore Music Software
O43 - CFD: 11/11/2011 - 18:09:13 - [352,857] ----D C:\Program Files (x86)\MAGIX
O43 - CFD: 13/07/2013 - 15:02:49 - [13,327] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 11/08/2011 - 10:25:51 - [1,438] ----D C:\Program Files (x86)\MEDUSA
O43 - CFD: 03/03/2012 - 19:17:07 - [815,580] ----D C:\Program Files (x86)\Micro Application
O43 - CFD: 19/07/2011 - 18:51:43 - [0,764] ----D C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 13/12/2011 - 15:48:58 - [1,466] ----D C:\Program Files (x86)\Microsoft GIF Animator
O43 - CFD: 01/02/2013 - 13:19:12 - [251,418] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 13/05/2012 - 20:27:28 - [36,641] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 19/07/2011 - 14:47:44 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 21/04/2011 - 11:34:38 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 21/03/2013 - 19:03:41 - [50,305] ----D C:\Program Files (x86)\MKVToolNix
O43 - CFD: 31/03/2012 - 09:26:51 - [0,208] ----D C:\Program Files (x86)\Morgan
O43 - CFD: 02/05/2012 - 13:01:31 - [9,577] ----D C:\Program Files (x86)\MovieToolbox
O43 - CFD: 13/07/2013 - 11:46:15 - [54,393] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 11/07/2013 - 08:37:27 - [0,214] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 01/02/2013 - 13:18:48 - [101,558] ----D C:\Program Files (x86)\MSECache
O43 - CFD: 11/11/2011 - 18:08:24 - [0,147] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 13/04/2011 - 16:00:55 - [0] ----D C:\Program Files (x86)\My Company Name
O43 - CFD: 10/08/2012 - 11:40:48 - [867,885] ----D C:\Program Files (x86)\Nero
O43 - CFD: 23/11/2012 - 09:02:34 - [4,200] ----D C:\Program Files (x86)\Nokia
O43 - CFD: 28/12/2011 - 11:18:30 - [34,473] ----D C:\Program Files (x86)\ObviousIdea
O43 - CFD: 18/11/2011 - 11:39:13 - [3,387] ----D C:\Program Files (x86)\Outsim
O43 - CFD: 20/07/2011 - 12:03:56 - [19,887] ----D C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 19/02/2012 - 14:56:36 - [31,424] ----D C:\Program Files (x86)\PDFCreator
O43 - CFD: 27/07/2013 - 15:37:59 - [370,424] ----D C:\Program Files (x86)\Pegasys Inc
O43 - CFD: 21/02/2012 - 17:57:15 - [0] ----D C:\Program Files (x86)\photomoinscher 4.6
O43 - CFD: 17/08/2011 - 18:56:22 - [21,228] ----D C:\Program Files (x86)\Pinnacle
O43 - CFD: 24/05/2011 - 14:47:13 - [0,393] ----D C:\Program Files (x86)\Pvm
O43 - CFD: 28/07/2013 - 13:48:23 - [14,920] ----D C:\Program Files (x86)\Real Alternative
O43 - CFD: 11/10/2012 - 16:54:41 - [8,500] ----D C:\Program Files (x86)\Realisator
O43 - CFD: 13/04/2011 - 11:59:02 - [5,470] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 07:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 23/11/2011 - 16:45:49 - [2,108] ----D C:\Program Files (x86)\Replisting
O43 - CFD: 24/02/2012 - 16:41:30 - [39,189] ----D C:\Program Files (x86)\Ripp-it_AM
O43 - CFD: 09/05/2011 - 17:29:50 - [115,938] ----D C:\Program Files (x86)\ScanSoft
O43 - CFD: 14/01/2012 - 10:38:15 - [6,484] ----D C:\Program Files (x86)\Sheldon Solutions
O43 - CFD: 23/01/2012 - 19:16:54 - [8,213] ----D C:\Program Files (x86)\Smallvideosoft
O43 - CFD: 09/09/2012 - 12:18:14 - [9,941] ----D C:\Program Files (x86)\Smart Projects
O43 - CFD: 25/07/2011 - 18:39:40 - [32,185] ----D C:\Program Files (x86)\SmartSound Software
O43 - CFD: 19/11/2011 - 20:14:31 - [764,649] ----D C:\Program Files (x86)\Sony
O43 - CFD: 19/11/2011 - 20:11:31 - [144,990] ----D C:\Program Files (x86)\Sony Setup
O43 - CFD: 17/11/2011 - 11:55:24 - [4,508] ----D C:\Program Files (x86)\Sqirlz Morph
O43 - CFD: 20/07/2013 - 11:29:35 - [3,536] ----D C:\Program Files (x86)\Sub Station Alpha v4.08
O43 - CFD: 11/12/2012 - 11:14:51 - [1,107] ----D C:\Program Files (x86)\SubRip
O43 - CFD: 31/03/2012 - 09:21:29 - [0,412] ----D C:\Program Files (x86)\SubSync
O43 - CFD: 19/08/2013 - 15:14:07 - [19,172] ----D C:\Program Files (x86)\Subtitle Edit
O43 - CFD: 10/08/2011 - 17:29:41 - [7,038] ----D C:\Program Files (x86)\SubtitleCreator
O43 - CFD: 13/04/2011 - 12:24:35 - [1,169] ----D C:\Program Files (x86)\SuperCopier2
O43 - CFD: 13/04/2011 - 11:58:44 - [0] --H-D C:\Program Files (x86)\Temp
O43 - CFD: 28/07/2013 - 13:48:06 - [51,258] ----D C:\Program Files (x86)\The FilmMachine
O43 - CFD: 24/11/2012 - 16:26:46 - [66,764] ----D C:\Program Files (x86)\The KMPlayer FR
O43 - CFD: 28/03/2012 - 16:18:22 - [1,951] ----D C:\Program Files (x86)\TimeAdjuster
O43 - CFD: 23/08/2013 - 18:02:51 - [71,822] ----D C:\Program Files (x86)\Triogical2
O43 - CFD: 03/06/2011 - 11:32:16 - [5,859] ----D C:\Program Files (x86)\Triogical2Windows7
O43 - CFD: 13/12/2011 - 15:47:00 - [251,202] ----D C:\Program Files (x86)\Ulead Systems
O43 - CFD: 04/05/2011 - 15:08:12 - [30,910] ----D C:\Program Files (x86)\UltraStar
O43 - CFD: 04/05/2011 - 15:01:30 - [53,812] ----D C:\Program Files (x86)\UltraStar Deluxe
O43 - CFD: 10/12/2011 - 12:27:50 - [0,086] ----D C:\Program Files (x86)\UnFREEz
O43 - CFD: 08/11/2012 - 13:07:20 - [0] ----D C:\Program Files (x86)\Uniblue
O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 02/05/2013 - 09:34:59 - [0,284] ----D C:\Program Files (x86)\Unrar
O43 - CFD: 01/07/2011 - 14:54:34 - [2,008] ----D C:\Program Files (x86)\URUSoft
O43 - CFD: 23/03/2013 - 12:04:37 - [2,058] ----D C:\Program Files (x86)\vanBasco's Karaoke Player
O43 - CFD: 10/08/2012 - 11:55:32 - [2,285] ----D C:\Program Files (x86)\Verbatim
O43 - CFD: 10/08/2012 - 11:32:18 - [1,767] ----D C:\Program Files (x86)\Verbatim GREEN BUTTON
O43 - CFD: 13/04/2011 - 14:12:29 - [89,130] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 10/09/2011 - 15:24:15 - [6,076] ----D C:\Program Files (x86)\VisualSubSync
O43 - CFD: 27/07/2013 - 16:44:51 - [49,641] ----D C:\Program Files (x86)\VSO
O43 - CFD: 14/01/2012 - 10:40:57 - [0] ----D C:\Program Files (x86)\Vstplugins
O43 - CFD: 16/03/2013 - 20:11:28 - [8,039] ----D C:\Program Files (x86)\Walasoft
O43 - CFD: 25/05/2011 - 11:43:06 - [36,739] ----D C:\Program Files (x86)\Winamp
O43 - CFD: 25/05/2011 - 11:38:43 - [0,148] ----D C:\Program Files (x86)\Winamp Detect
O43 - CFD: 06/08/2013 - 20:21:25 - [0,774] ----D C:\Program Files (x86)\WinDirStat
O43 - CFD: 10/07/2013 - 20:09:53 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 19/07/2011 - 14:46:49 - [79,255] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 21/11/2010 - 08:19:00 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 25/07/2011 - 18:29:29 - [13,379] ----D C:\Program Files (x86)\Windows Media Components
O43 - CFD: 21/11/2010 - 08:19:00 - [4,791] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 21/04/2011 - 14:28:03 - [0,430] ----D C:\Program Files (x86)\Windows Messaging
O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 21/11/2010 - 08:19:00 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 21/11/2010 - 05:31:38 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 21/11/2010 - 08:19:00 - [6,062] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 21/04/2011 - 12:04:41 - [4,777] ----D C:\Program Files (x86)\Windows Virtual PC
O43 - CFD: 20/12/2012 - 13:29:13 - [4,131] ----D C:\Program Files (x86)\WinRAR
O43 - CFD: 02/05/2012 - 13:21:37 - [0] ----D C:\Program Files (x86)\Witcobber
O43 - CFD: 31/12/2011 - 13:04:31 - [16,150] ----D C:\Program Files (x86)\XnView
O43 - CFD: 27/07/2013 - 15:35:01 - [0,812] ----D C:\Program Files (x86)\XviD
O43 - CFD: 24/05/2011 - 15:18:09 - [0,568] ----D C:\Program Files (x86)\Yahoo!  =>Toolbar.Yahoo
O43 - CFD: 07/11/2011 - 12:18:06 - [2,284] ----D C:\Program Files (x86)\YAMAHA
O43 - CFD: 07/05/2011 - 09:53:50 - [20,350] ----D C:\Program Files (x86)\Yass 0.9.2
O43 - CFD: 11/05/2011 - 19:19:21 - [25,826] ----D C:\Program Files (x86)\Yass Along 0.9.9
O43 - CFD: 30/08/2013 - 14:06:33 - [16,489] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 01/09/2011 - 16:48:12 - [2,576] ----D C:\Program Files (x86)\ZX Games
O43 - CFD: 29/07/2013 - 09:28:59 - [528,896] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 25/04/2012 - 12:02:02 - [38,049] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 25/04/2012 - 18:01:34 - [0,069] ----D C:\Program Files (x86)\Common Files\Adobe Systems Shared
O43 - CFD: 04/11/2011 - 21:15:35 - [115,286] ----D C:\Program Files (x86)\Common Files\Ahead
O43 - CFD: 02/04/2013 - 14:08:21 - [2,618] ----D C:\Program Files (x86)\Common Files\Aimersoft
O43 - CFD: 02/07/2012 - 11:25:12 - [0] ----D C:\Program Files (x86)\Common Files\AVSMedia
O43 - CFD: 21/04/2011 - 11:34:52 - [0,082] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 13/07/2013 - 11:19:35 - [4,388] ----D C:\Program Files (x86)\Common Files\Doblon
O43 - CFD: 20/05/2011 - 16:22:09 - [16,775] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 13/04/2011 - 12:02:38 - [13,160] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 24/07/2011 - 15:19:06 - [0,283] ----D C:\Program Files (x86)\Common Files\InterVideo
O43 - CFD: 03/11/2011 - 14:26:23 - [1,201] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 01/01/2013 - 14:24:11 - [48,001] ----D C:\Program Files (x86)\Common Files\LogiShrd
O43 - CFD: 27/06/2011 - 14:02:11 - [4,999] ----D C:\Program Files (x86)\Common Files\LWS
O43 - CFD: 08/11/2011 - 19:42:52 - [11,220] ----D C:\Program Files (x86)\Common Files\MAGIX Services
O43 - CFD: 25/05/2011 - 20:52:38 - [1,700] ----D C:\Program Files (x86)\Common Files\MAGIX Shared
O43 - CFD: 01/02/2013 - 13:19:12 - [249,708] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 10/08/2012 - 11:40:48 - [65,195] ----D C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 21/04/2011 - 11:30:28 - [0] ----D C:\Program Files (x86)\Common Files\Pinnacle
O43 - CFD: 13/04/2011 - 12:08:07 - [0,155] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 27/07/2013 - 15:38:19 - [4,625] ----D C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 09/05/2011 - 17:30:04 - [0,201] ----D C:\Program Files (x86)\Common Files\ScanSoft Shared
O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 15/04/2011 - 16:14:27 - [0,360] ----D C:\Program Files (x86)\Common Files\Sonic Shared
O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 09/11/2011 - 17:06:51 - [16,773] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 24/07/2011 - 15:18:14 - [31,712] ----D C:\Program Files (x86)\Common Files\Ulead Systems
O43 - CFD: 26/07/2011 - 19:19:00 - [1,773] ----D C:\Program Files (x86)\Common Files\Vbox
O43 - CFD: 19/07/2011 - 14:39:48 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 20/05/2011 - 16:28:50 - [4,371] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 02/04/2013 - 16:30:27 - [0] ----D C:\ProgramData\4Videosoft Studio
O43 - CFD: 29/07/2013 - 09:29:04 - [307,913] ----D C:\ProgramData\Adobe
O43 - CFD: 04/05/2012 - 09:41:47 - [0,006] ----D C:\ProgramData\Adobe Systems
O43 - CFD: 04/11/2011 - 21:15:57 - [0,000] ----D C:\ProgramData\Ahead
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 13/04/2011 - 16:02:16 - [0,000] ----D C:\ProgramData\ATI
O43 - CFD: 21/04/2011 - 11:37:13 - [0] ----D C:\ProgramData\AVAST Software
O43 - CFD: 02/07/2012 - 11:18:20 - [0] ----D C:\ProgramData\AVS4YOU
O43 - CFD: 13/04/2011 - 11:48:59 - [0] --H-D C:\ProgramData\Bureau
O43 - CFD: 13/04/2011 - 14:41:52 - [0] ----D C:\ProgramData\Canneverbe Limited
O43 - CFD: 13/04/2011 - 16:50:08 - [18,361] --H-D C:\ProgramData\CanonBJ
O43 - CFD: 11/12/2012 - 15:40:21 - [0,000] --H-D C:\ProgramData\Common Files
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 04/07/2012 - 16:51:12 - [0,002] ----D C:\ProgramData\DivX
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 11/06/2012 - 09:54:22 - [0,345] ----D C:\ProgramData\DVD Shrink
O43 - CFD: 31/01/2012 - 15:03:33 - [0] ----D C:\ProgramData\dvdfab
O43 - CFD: 15/04/2011 - 16:19:18 - [0,344] ----D C:\ProgramData\eSellerate
O43 - CFD: 13/04/2011 - 11:48:59 - [0] --H-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 04/07/2012 - 16:59:27 - [9,964] ----D C:\ProgramData\Freemake
O43 - CFD: 13/02/2012 - 13:30:53 - [0,311] ----D C:\ProgramData\hps
O43 - CFD: 20/07/2011 - 12:03:02 - [189,710] ----D C:\ProgramData\Installations
O43 - CFD: 09/05/2011 - 17:30:18 - [0,000] ----D C:\ProgramData\InstallShield
O43 - CFD: 13/04/2011 - 12:18:42 - [0,001] ----D C:\ProgramData\Intel
O43 - CFD: 24/07/2011 - 15:18:54 - [0,831] ----D C:\ProgramData\InterVideo
O43 - CFD: 30/08/2013 - 12:14:32 - [1032,317] ----D C:\ProgramData\Kaspersky Lab
O43 - CFD: 21/04/2011 - 11:43:36 - [0] ----D C:\ProgramData\Kaspersky Lab Setup Files
O43 - CFD: 27/06/2011 - 14:08:39 - [0,000] ----D C:\ProgramData\LogiShrd
O43 - CFD: 27/06/2011 - 14:02:24 - [20,162] ----D C:\ProgramData\Logitech
O43 - CFD: 12/11/2011 - 17:29:52 - [191,159] ----D C:\ProgramData\MAGIX
O43 - CFD: 08/11/2011 - 18:08:07 - [0,240] ----D C:\ProgramData\MakeMusic
O43 - CFD: 13/04/2011 - 14:16:46 - [7,522] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 13/04/2011 - 11:48:59 - [0] --H-D C:\ProgramData\Menu D�marrer
O43 - CFD: 03/03/2012 - 19:13:50 - [0,000] ----D C:\ProgramData\Micro Application
O43 - CFD: 13/07/2013 - 14:03:37 - [350,708] -S-AD C:\ProgramData\Microsoft
O43 - CFD: 13/04/2011 - 11:48:59 - [0] --H-D C:\ProgramData\Mod�les
O43 - CFD: 11/07/2013 - 08:37:26 - [0,000] ----D C:\ProgramData\Mozilla
O43 - CFD: 10/08/2012 - 11:40:49 - [8,995] ----D C:\ProgramData\Nero
O43 - CFD: 13/06/2012 - 15:09:29 - [0,002] ----D C:\ProgramData\PACE Anti-Piracy
O43 - CFD: 20/07/2011 - 12:04:36 - [0] ----D C:\ProgramData\PC Suite
O43 - CFD: 17/08/2011 - 18:56:22 - [0,375] ----D C:\ProgramData\Pinnacle
O43 - CFD: 21/04/2011 - 11:29:29 - [0,035] ----D C:\ProgramData\Pinnacle Studio Ultimate
O43 - CFD: 28/07/2013 - 13:48:21 - [0] ----D C:\ProgramData\Real
O43 - CFD: 17/03/2013 - 15:18:10 - [3,497] ----D C:\ProgramData\Recisio
O43 - CFD: 13/06/2012 - 15:32:08 - [0,007] ----D C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 09/05/2011 - 17:30:06 - [0,128] ----D C:\ProgramData\ScanSoft
O43 - CFD: 25/07/2011 - 18:39:45 - [473,267] ----D C:\ProgramData\SmartSound Software Inc
O43 - CFD: 14/01/2013 - 19:21:15 - [2,969] ----D C:\ProgramData\Sony
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 21/04/2011 - 11:22:23 - [1737,099] ----D C:\ProgramData\Studio14Trial
O43 - CFD: 13/04/2011 - 14:16:54 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 27/08/2012 - 08:52:37 - [0] ---AD C:\ProgramData\TEMP
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 13/02/2012 - 13:17:46 - [0,001] ----D C:\ProgramData\tmp
O43 - CFD: 11/12/2012 - 15:40:34 - [0,324] ----D C:\ProgramData\TuneUp Software
O43 - CFD: 17/08/2011 - 15:12:33 - [0,090] ----D C:\ProgramData\Ulead Systems
O43 - CFD: 05/09/2011 - 17:08:44 - [0,006] ----D C:\ProgramData\VideoConverter
O43 - CFD: 24/03/2013 - 15:25:49 - [51,952] ----D C:\ProgramData\VSO
O43 - CFD: 13/03/2013 - 21:24:35 - [0,000] ----D C:\ProgramData\vsosdk
O43 - CFD: 09/05/2011 - 08:51:42 - [0,002] ----D C:\ProgramData\Windows Genuine Advantage
O43 - CFD: 01/01/2012 - 12:28:19 - [0,003] ----D C:\ProgramData\Yahoo! Companion  =>Toolbar.Yahoo
O43 - CFD: 11/12/2012 - 15:40:21 - [23,027] -SH-D C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
O43 - CFD: 29/07/2013 - 09:28:53 - [-1520,711] ----D C:\Users\utilisateur\AppData\Roaming\Adobe
O43 - CFD: 30/08/2013 - 11:34:48 - [56,580] ----D C:\Users\utilisateur\AppData\Roaming\Aegisub
O43 - CFD: 29/12/2011 - 12:13:57 - [0,565] ----D C:\Users\utilisateur\AppData\Roaming\Ahead
O43 - CFD: 22/07/2011 - 20:30:10 - [0,663] ----D C:\Users\utilisateur\AppData\Roaming\Anuman Interactive
O43 - CFD: 13/04/2011 - 16:02:16 - [0] ----D C:\Users\utilisateur\AppData\Roaming\ATI
O43 - CFD: 13/04/2011 - 14:42:32 - [0,274] ----D C:\Users\utilisateur\AppData\Roaming\Auslogics
O43 - CFD: 09/08/2013 - 10:26:05 - [0] ----D C:\Users\utilisateur\AppData\Roaming\AVI ReComp
O43 - CFD: 03/04/2012 - 17:29:57 - [0,026] ----D C:\Users\utilisateur\AppData\Roaming\avidemux
O43 - CFD: 02/07/2012 - 11:18:20 - [0] ----D C:\Users\utilisateur\AppData\Roaming\AVS4YOU
O43 - CFD: 10/08/2011 - 17:26:42 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Belle Nuit Montage
O43 - CFD: 22/02/2012 - 12:54:18 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\CAD-KAS
O43 - CFD: 13/04/2011 - 14:41:52 - [0,002] ----D C:\Users\utilisateur\AppData\Roaming\Canneverbe Limited
O43 - CFD: 27/04/2013 - 09:22:03 - [20,503] ----D C:\Users\utilisateur\AppData\Roaming\Canon
O43 - CFD: 25/04/2011 - 19:07:55 - [60,703] ----D C:\Users\utilisateur\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O43 - CFD: 25/04/2012 - 12:02:09 - [0,010] ----D C:\Users\utilisateur\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
O43 - CFD: 17/03/2013 - 16:53:21 - [0,667] ----D C:\Users\utilisateur\AppData\Roaming\Doblon
O43 - CFD: 07/08/2013 - 12:10:28 - [0,028] ----D C:\Users\utilisateur\AppData\Roaming\DVD Flick
O43 - CFD: 23/08/2013 - 17:36:49 - [0,002] ----D C:\Users\utilisateur\AppData\Roaming\dvdcss
O43 - CFD: 19/07/2012 - 18:26:25 - [0,002] ----D C:\Users\utilisateur\AppData\Roaming\DVDFab
O43 - CFD: 25/04/2012 - 10:38:30 - [0,007] ----D C:\Users\utilisateur\AppData\Roaming\FastStone
O43 - CFD: 05/08/2013 - 09:52:18 - [1,480] ----D C:\Users\utilisateur\AppData\Roaming\fontconfig
O43 - CFD: 19/05/2013 - 10:06:58 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\Free-PDF-to-Word.com
O43 - CFD: 02/09/2012 - 10:37:04 - [0,001] ----D C:\Users\utilisateur\AppData\Roaming\FreeScreenToVideo
O43 - CFD: 02/05/2012 - 13:13:14 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\FreeVideoConverter
O43 - CFD: 24/05/2012 - 12:03:33 - [0,136] ----D C:\Users\utilisateur\AppData\Roaming\Garmin
O43 - CFD: 16/02/2012 - 20:19:46 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\gtk-2.0
O43 - CFD: 31/03/2012 - 09:28:49 - [0,062] ----D C:\Users\utilisateur\AppData\Roaming\HandBrake
O43 - CFD: 05/08/2011 - 17:30:35 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\Help
O43 - CFD: 13/04/2011 - 11:49:11 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Identities
O43 - CFD: 13/04/2011 - 12:08:03 - [0] ----D C:\Users\utilisateur\AppData\Roaming\InstallShield
O43 - CFD: 21/07/2013 - 09:37:00 - [0,004] ----D C:\Users\utilisateur\AppData\Roaming\Jubler
O43 - CFD: 13/07/2013 - 11:38:51 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\Karaoke Builder
O43 - CFD: 16/02/2012 - 19:03:09 - [0,001] ----D C:\Users\utilisateur\AppData\Roaming\KC Softwares
O43 - CFD: 27/06/2011 - 14:03:37 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\Leadertech
O43 - CFD: 13/04/2011 - 14:35:44 - [1,506] ----D C:\Users\utilisateur\AppData\Roaming\LibreOffice
O43 - CFD: 13/04/2011 - 14:23:31 - [0,001] ----D C:\Users\utilisateur\AppData\Roaming\Macromedia
O43 - CFD: 08/07/2011 - 11:43:04 - [0,002] ----D C:\Users\utilisateur\AppData\Roaming\Mael
O43 - CFD: 12/11/2011 - 17:29:52 - [0,045] ----D C:\Users\utilisateur\AppData\Roaming\MAGIX
O43 - CFD: 08/11/2011 - 19:18:10 - [0,259] ----D C:\Users\utilisateur\AppData\Roaming\MakeMusic
O43 - CFD: 13/04/2011 - 14:16:54 - [68,512] ----D C:\Users\utilisateur\AppData\Roaming\Malwarebytes
O43 - CFD: 21/11/2010 - 08:29:25 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Media Center Programs
O43 - CFD: 16/01/2012 - 11:59:42 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\Media Player Classic
O43 - CFD: 29/07/2013 - 09:19:56 - [30,073] -S--D C:\Users\utilisateur\AppData\Roaming\Microsoft
O43 - CFD: 21/03/2013 - 19:03:55 - [0] ----D C:\Users\utilisateur\AppData\Roaming\mkvtoolnix
O43 - CFD: 24/03/2013 - 19:46:42 - [16,047] ----D C:\Users\utilisateur\AppData\Roaming\Mozilla
O43 - CFD: 26/06/2012 - 15:17:17 - [0] ----D C:\Users\utilisateur\AppData\Roaming\NCH Software
O43 - CFD: 27/08/2012 - 08:50:10 - [0,664] ----D C:\Users\utilisateur\AppData\Roaming\Nero
O43 - CFD: 18/11/2011 - 10:53:06 - [0,011] ----D C:\Users\utilisateur\AppData\Roaming\NetMedia Providers
O43 - CFD: 20/07/2011 - 12:14:53 - [0,001] ----D C:\Users\utilisateur\AppData\Roaming\Nokia
O43 - CFD: 29/01/2012 - 18:20:05 - [0,004] ----D C:\Users\utilisateur\AppData\Roaming\ObviousIdea
O43 - CFD: 13/06/2012 - 15:09:29 - [0,002] ----D C:\Users\utilisateur\AppData\Roaming\PACE Anti-Piracy
O43 - CFD: 20/07/2011 - 12:04:36 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\PC Suite
O43 - CFD: 13/07/2013 - 12:03:19 - [0,420] ----D C:\Users\utilisateur\AppData\Roaming\PCFix
O43 - CFD: 27/07/2013 - 19:10:59 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Pegasys Inc
O43 - CFD: 29/08/2013 - 12:03:44 - [0] ----D C:\Users\utilisateur\AppData\Roaming\PgcEdit
O43 - CFD: 12/11/2011 - 18:03:24 - [0,144] ----D C:\Users\utilisateur\AppData\Roaming\Publish Providers
O43 - CFD: 28/07/2013 - 13:48:21 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Real
O43 - CFD: 13/06/2012 - 14:57:09 - [0] ----D C:\Users\utilisateur\AppData\Roaming\ResourceCentral.E6E1B28A311BC518DB6C6883EA3757FDE0E90ADC.1
O43 - CFD: 09/05/2011 - 17:30:08 - [0] ----D C:\Users\utilisateur\AppData\Roaming\ScanSoft
O43 - CFD: 15/01/2013 - 11:53:17 - [0,939] ----D C:\Users\utilisateur\AppData\Roaming\Sony
O43 - CFD: 17/11/2011 - 20:58:41 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\Sony Creative Software
O43 - CFD: 08/05/2011 - 14:40:34 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Sony Creative Software Inc
O43 - CFD: 13/06/2012 - 16:12:26 - [0] ----D C:\Users\utilisateur\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 10/05/2013 - 07:41:15 - [1,470] ----D C:\Users\utilisateur\AppData\Roaming\Subtitle Edit
O43 - CFD: 11/12/2012 - 15:40:33 - [0,011] ----D C:\Users\utilisateur\AppData\Roaming\TuneUp Software
O43 - CFD: 03/08/2011 - 14:28:51 - [5,536] ----D C:\Users\utilisateur\AppData\Roaming\Ulead Systems
O43 - CFD: 04/05/2011 - 15:04:58 - [0,011] ----D C:\Users\utilisateur\AppData\Roaming\ultrastardx
O43 - CFD: 08/11/2012 - 12:56:09 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\Uniblue
O43 - CFD: 29/08/2013 - 18:55:52 - [3,317] ----D C:\Users\utilisateur\AppData\Roaming\vlc
O43 - CFD: 13/03/2013 - 19:37:04 - [0,006] ----D C:\Users\utilisateur\AppData\Roaming\Vso
O43 - CFD: 16/03/2013 - 20:11:31 - [0] ----D C:\Users\utilisateur\AppData\Roaming\WalaSoft
O43 - CFD: 17/03/2013 - 10:49:08 - [0,344] ----D C:\Users\utilisateur\AppData\Roaming\Winamp
O43 - CFD: 20/12/2012 - 13:29:50 - [0,000] ----D C:\Users\utilisateur\AppData\Roaming\WinRAR
O43 - CFD: 02/07/2012 - 19:27:45 - [3,165] ----D C:\Users\utilisateur\AppData\Roaming\XnView
O43 - CFD: 02/04/2013 - 16:33:08 - [0] ----D C:\Users\utilisateur\AppData\Local\4Videosoft Studio
O43 - CFD: 13/06/2012 - 15:09:29 - [0,001] --H-D C:\Users\utilisateur\AppData\Local\a7xAPaRHu
O43 - CFD: 29/07/2013 - 09:27:41 - [16,732] ----D C:\Users\utilisateur\AppData\Local\Adobe
O43 - CFD: 28/07/2013 - 13:49:31 - [6,235] ----D C:\Users\utilisateur\AppData\Local\Aegisub
O43 - CFD: 13/06/2012 - 15:09:29 - [0,001] --H-D C:\Users\utilisateur\AppData\Local\AeQSrQPjzRWT
O43 - CFD: 15/01/2012 - 11:27:28 - [4,296] ----D C:\Users\utilisateur\AppData\Local\Ahead
O43 - CFD: 02/04/2013 - 14:08:23 - [0,000] ----D C:\Users\utilisateur\AppData\Local\Aimersoft
O43 - CFD: 13/04/2011 - 11:49:03 - [0] ----D C:\Users\utilisateur\AppData\Local\Application Data
O43 - CFD: 29/01/2013 - 16:50:23 - [0] ----D C:\Users\utilisateur\AppData\Local\Apps
O43 - CFD: 13/04/2011 - 16:02:16 - [0,058] ----D C:\Users\utilisateur\AppData\Local\ATI
O43 - CFD: 30/08/2013 - 09:56:07 - [3,195] ----D C:\Users\utilisateur\AppData\Local\Diagnostics
O43 - CFD: 21/04/2011 - 11:30:10 - [10,029] ----D C:\Users\utilisateur\AppData\Local\Downloaded Installations
O43 - CFD: 20/05/2013 - 12:11:29 - [0] ----D C:\Users\utilisateur\AppData\Local\ElevatedDiagnostics
O43 - CFD: 25/04/2012 - 10:38:30 - [0,007] ----D C:\Users\utilisateur\AppData\Local\FastStone
O43 - CFD: 11/12/2012 - 15:59:25 - [0,000] ----D C:\Users\utilisateur\AppData\Local\FreeOCR
O43 - CFD: 19/01/2012 - 12:24:22 - [821,480] ----D C:\Users\utilisateur\AppData\Local\Google
O43 - CFD: 05/08/2011 - 17:19:26 - [0,010] ----D C:\Users\utilisateur\AppData\Local\Help
O43 - CFD: 13/04/2011 - 11:49:03 - [0] ----D C:\Users\utilisateur\AppData\Local\Historique
O43 - CFD: 30/01/2013 - 14:03:54 - [0] --HAD C:\Users\utilisateur\AppData\Local\MAFGyZUfxnu
O43 - CFD: 27/05/2011 - 18:22:32 - [0,118] ----D C:\Users\utilisateur\AppData\Local\MAGIX
O43 - CFD: 03/03/2012 - 19:19:00 - [8,230] ----D C:\Users\utilisateur\AppData\Local\Micro Application
O43 - CFD: 03/12/2012 - 17:50:42 - [1074,617] ----D C:\Users\utilisateur\AppData\Local\Microsoft
O43 - CFD: 02/03/2012 - 19:51:29 - [0,006] ----D C:\Users\utilisateur\AppData\Local\Micro_Application
O43 - CFD: 24/03/2013 - 19:35:30 - [180,982] ----D C:\Users\utilisateur\AppData\Local\Mozilla
O43 - CFD: 31/07/2011 - 13:20:25 - [1,288] ----D C:\Users\utilisateur\AppData\Local\Nero
O43 - CFD: 31/07/2011 - 13:20:25 - [0,001] ----D C:\Users\utilisateur\AppData\Local\Nero_AG
O43 - CFD: 13/06/2012 - 15:09:29 - [0] ----D C:\Users\utilisateur\AppData\Local\PACE Anti-Piracy
O43 - CFD: 30/08/2013 - 12:33:59 - [0] ----D C:\Users\utilisateur\AppData\Local\Paint.NET
O43 - CFD: 24/04/2011 - 17:38:43 - [0,000] ----D C:\Users\utilisateur\AppData\Local\Pinnacle
O43 - CFD: 13/03/2013 - 19:22:10 - [0] ----D C:\Users\utilisateur\AppData\Local\Programs
O43 - CFD: 28/07/2013 - 13:48:21 - [0] ----D C:\Users\utilisateur\AppData\Local\Real
O43 - CFD: 09/05/2011 - 18:45:47 - [0] ----D C:\Users\utilisateur\AppData\Local\Scansoft
O43 - CFD: 28/12/2011 - 10:47:04 - [0,002] ----D C:\Users\utilisateur\AppData\Local\Sheldon_Solutions
O43 - CFD: 14/01/2013 - 19:22:07 - [8,540] ----D C:\Users\utilisateur\AppData\Local\Sony
O43 - CFD: 21/04/2013 - 18:07:05 - [0,042] ----D C:\Users\utilisateur\AppData\Local\SubtitleCreator
O43 - CFD: 30/08/2013 - 14:06:14 - [10,953] ----D C:\Users\utilisateur\AppData\Local\Temp
O43 - CFD: 13/04/2011 - 11:49:03 - [0] ----D C:\Users\utilisateur\AppData\Local\Temporary Internet Files
O43 - CFD: 26/03/2012 - 16:04:33 - [0,021] ----D C:\Users\utilisateur\AppData\Local\Video Converter
O43 - CFD: 05/06/2012 - 14:38:29 - [1412,653] ----D C:\Users\utilisateur\AppData\Local\VirtualStore
O43 - CFD: 17/10/2012 - 14:38:22 - [0,035] ----D C:\Users\utilisateur\AppData\Local\Windows Live
O43 - CFD: 27/05/2011 - 18:22:18 - [0,022] ----D C:\Users\utilisateur\AppData\Local\Xara
O43 - CFD: 31/03/2012 - 09:26:43 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AC3Filter
O43 - CFD: 14/07/2009 - 06:54:32 - [0,016] R---D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 15/05/2013 - 18:49:46 - [0,000] R---D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 13/07/2013 - 11:40:30 - [0,005] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AV Video Karaoke Maker
O43 - CFD: 27/03/2012 - 13:35:56 - [0,008] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVI ReComp
O43 - CFD: 31/03/2012 - 09:23:58 - [0,001] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5
O43 - CFD: 03/08/2012 - 16:14:38 - [0,004] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar
O43 - CFD: 31/05/2011 - 19:32:26 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CR-TEKnologies
O43 - CFD: 14/09/2011 - 09:56:17 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\dBpowerAMP
O43 - CFD: 21/04/2011 - 14:29:38 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\D�marrage
O43 - CFD: 25/05/2011 - 11:38:43 - [0,001] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\D�tection de l'application Winamp
O43 - CFD: 12/08/2011 - 11:59:24 - [0,004] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FairUse Wizard 2
O43 - CFD: 28/12/2011 - 10:52:14 - [0,004] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 04/07/2012 - 16:58:53 - [0,001] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
O43 - CFD: 02/06/2012 - 18:40:20 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GoldWave
O43 - CFD: 30/03/2012 - 18:59:36 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Handbrake
O43 - CFD: 02/09/2012 - 10:41:28 - [0,016] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
O43 - CFD: 09/08/2011 - 19:09:20 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\m4ng Codec Pack
O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 03/08/2012 - 11:12:43 - [0,003] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo
O43 - CFD: 03/03/2012 - 19:18:16 - [0,006] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Micro Application
O43 - CFD: 13/12/2011 - 15:49:02 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft GIF Animator
O43 - CFD: 31/03/2012 - 09:26:51 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Morgan Stream Switcher
O43 - CFD: 26/03/2012 - 16:00:15 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MPEG4E
O43 - CFD: 24/05/2011 - 14:47:13 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pvm
O43 - CFD: 24/02/2012 - 16:41:31 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ripp-it_am
O43 - CFD: 13/04/2011 - 14:12:08 - [0,012] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Satsuki Decoder Pack
O43 - CFD: 17/11/2011 - 11:55:24 - [0,003] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sqirlz Morph
O43 - CFD: 15/05/2013 - 18:49:46 - [0,004] R---D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 30/07/2011 - 15:59:22 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SubRip
O43 - CFD: 11/08/2011 - 14:34:23 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SubSync
O43 - CFD: 10/08/2011 - 17:29:41 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SubtitleCreator
O43 - CFD: 13/04/2011 - 12:24:36 - [0,008] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperCopier2
O43 - CFD: 28/03/2012 - 16:18:22 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TimeAdjuster
O43 - CFD: 04/05/2011 - 15:06:17 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UltraStar
O43 - CFD: 10/12/2011 - 12:27:50 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnFREEz 2.1
O43 - CFD: 01/07/2011 - 14:54:34 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\URUSoft
O43 - CFD: 01/06/2011 - 12:02:49 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vanBasco's Karaoke Player
O43 - CFD: 05/08/2011 - 17:18:07 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video Karaoke Player II PRO
O43 - CFD: 10/09/2011 - 15:24:15 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VisualSubSync
O43 - CFD: 31/03/2012 - 09:23:38 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VobSub
O43 - CFD: 16/03/2013 - 20:11:28 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Walaoke
O43 - CFD: 06/08/2013 - 20:21:25 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinDirStat
O43 - CFD: 21/04/2011 - 12:21:30 - [0,179] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Virtual PC
O43 - CFD: 20/12/2012 - 13:29:13 - [0,003] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 04/05/2011 - 15:08:56 - [0] ----D C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yass 0.9.2
~ Program Folder: 435 Scanned in 00mn 39s



---\\ Derniers fichiers modifi�s ou cr�es sous Windows et System32 (O44)
O44 - LFC:[MD5.F9B231BFB56A5F4CF6F318AFB419202D] - 30/08/2013 - 10:03:55 ---A- . (...) -- C:\Windows\WindowsUpdate.log   [1853404]
O44 - LFC:[MD5.946BDBACC689DA5AC62675DF502D5948] - 30/08/2013 - 09:59:45 ---A- . (...) -- C:\Windows\setupact.log   [167037]
O44 - LFC:[MD5.1FAEDAB994FEA3ED4680B132CACF7620] - 30/08/2013 - 09:59:45 -S-A- . (...) -- C:\Windows\bootstat.dat   [67584]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 30/08/2013 - 09:59:44 RSHAD . (...) -- C:\Windows\System32\Drivers\lvuvc.hs   [0]
O44 - LFC:[MD5.5B8D3311ADFB362BB759AD8FCD04AECA] - 29/08/2013 - 14:51:45 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI   [1551096]
O44 - LFC:[MD5.5B0A434BB44CA8AA903A1B3173EED9A3] - 29/08/2013 - 14:51:45 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat   [107254]
O44 - LFC:[MD5.AE7077AB8EFEBFA6FD58DD01B7D1DA77] - 29/08/2013 - 14:51:45 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat   [131708]
O44 - LFC:[MD5.7307A455181F337BDCA7AD2487130276] - 29/08/2013 - 14:51:45 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat   [616874]
O44 - LFC:[MD5.3BEC8B0597EF859C00427DCE10D89C85] - 29/08/2013 - 14:51:45 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat   [706614]
O44 - LFC:[MD5.5B8D3311ADFB362BB759AD8FCD04AECA] - 29/08/2013 - 14:51:45 RSHAD . (...) -- C:\Windows\System32\PerfStringBackup.INI   [1551096]
O44 - LFC:[MD5.5B0A434BB44CA8AA903A1B3173EED9A3] - 29/08/2013 - 14:51:45 RSHAD . (...) -- C:\Windows\System32\perfc009.dat   [107254]
O44 - LFC:[MD5.AE7077AB8EFEBFA6FD58DD01B7D1DA77] - 29/08/2013 - 14:51:45 RSHAD . (...) -- C:\Windows\System32\perfc00C.dat   [131708]
O44 - LFC:[MD5.7307A455181F337BDCA7AD2487130276] - 29/08/2013 - 14:51:45 RSHAD . (...) -- C:\Windows\System32\perfh009.dat   [616874]
O44 - LFC:[MD5.3BEC8B0597EF859C00427DCE10D89C85] - 29/08/2013 - 14:51:45 RSHAD . (...) -- C:\Windows\System32\perfh00C.dat   [706614]
~ Files: 14 Scanned in 00mn 11s



---\\ Derniers fichiers cr��s dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.6DB23B60D2BEC8938B89CC0C9860B4D4] - 25/08/2013 - 09:14:37 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf
O45 - LFCP:[MD5.1A90BBAAA8FB8FEF326AE0AB9C58A060] - 28/08/2013 - 15:44:55 ---A- - C:\Windows\Prefetch\SHOWTIME.EXE-67535B30.pf
O45 - LFCP:[MD5.82B5D42CF0F39D66579DF6DF9BD15716] - 28/08/2013 - 15:45:11 ---A- - C:\Windows\Prefetch\FREEMAKEVIDEOCONVERTER.EXE-60CAA5BB.pf
O45 - LFCP:[MD5.BAD5B92E503F68DDCFE71360DA098534] - 28/08/2013 - 15:45:13 ---A- - C:\Windows\Prefetch\FREEMAKEVC.EXE-50CE5925.pf
O45 - LFCP:[MD5.26B1879A70661297F7B7197C9040EB6C] - 28/08/2013 - 15:45:15 ---A- - C:\Windows\Prefetch\NMBGMONITOR.EXE-B625CBE3.pf
O45 - LFCP:[MD5.CC95FEA1E482B045DB8BC6EDA751A670] - 28/08/2013 - 15:45:20 ---A- - C:\Windows\Prefetch\NMINDEXSTORESVR.EXE-4236641E.pf
O45 - LFCP:[MD5.B8983D1E58C05A3F8C6DD46520843B3A] - 28/08/2013 - 15:47:23 ---A- - C:\Windows\Prefetch\NERO.EXE-2E9DB97D.pf
O45 - LFCP:[MD5.3C146D6FE6A8160410E8006FAFFFC0DE] - 28/08/2013 - 15:52:22 ---A- - C:\Windows\Prefetch\TASKMGR.EXE-5F5F473D.pf
O45 - LFCP:[MD5.6AA4ECB01F74EAC4B25FB06191DD4CFD] - 28/08/2013 - 15:52:50 ---A- - C:\Windows\Prefetch\FREEMAKEERRORREPORTER.EXE-7CA8C7FD.pf
O45 - LFCP:[MD5.47F798C8752F6C2AA710BAA6919B8639] - 28/08/2013 - 17:09:32 ---A- - C:\Windows\Prefetch\CSC.EXE-4C85A8F6.pf
O45 - LFCP:[MD5.4D5E76758943579D45C738D8B7BDE0A0] - 28/08/2013 - 17:09:32 ---A- - C:\Windows\Prefetch\CVTRES.EXE-CDAB491C.pf
O45 - LFCP:[MD5.36F90C5A4A5C23DB061C4BD583DD05E9] - 28/08/2013 - 17:11:18 ---A- - C:\Windows\Prefetch\MEDIAINFO.EXE-BFE3007E.pf
O45 - LFCP:[MD5.3DD4BA827E46B5C77C1DF77423AA0DD2] - 28/08/2013 - 17:12:48 ---A- - C:\Windows\Prefetch\DVDAUTHOR.EXE-D43D74DD.pf
O45 - LFCP:[MD5.EF7AAED3A6F14C78C188B938F494DA46] - 28/08/2013 - 17:18:27 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-254441E9.pf
O45 - LFCP:[MD5.B2063B428C905C00A13F602EA3C604D5] - 28/08/2013 - 17:18:37 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf
O45 - LFCP:[MD5.1D8768EB2DAEE000F147FCC3EFF88456] - 28/08/2013 - 17:49:30 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-97743AA9.pf
O45 - LFCP:[MD5.79B1E2C2147113CC8F7FAB06E6244675] - 28/08/2013 - 17:50:02 ---A- - C:\Windows\Prefetch\ADOBEARM.EXE-7105D3A2.pf
O45 - LFCP:[MD5.BB6B4F195EFA6506CDCEB770EA4FB624] - 28/08/2013 - 18:20:37 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf
O45 - LFCP:[MD5.6B0F522B7EF3EB6D3BDC0BC587A81B69] - 29/08/2013 - 08:59:04 ---A- - C:\Windows\Prefetch\WINRAR.EXE-D8B532BF.pf
O45 - LFCP:[MD5.F9051715ED9C23108BBED37FD99704A0] - 29/08/2013 - 09:46:48 ---A- - C:\Windows\Prefetch\SETUP_WM.EXE-D33FD27D.pf
O45 - LFCP:[MD5.1916F2B5306B9977A83DCC897C3EAD8D] - 29/08/2013 - 10:24:35 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf
O45 - LFCP:[MD5.75F72F9A8480EAE99FFE152FB2BF3E4D] - 29/08/2013 - 10:24:42 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7AC6742A.pf
O45 - LFCP:[MD5.60A7419DD57165D0451E09E36996419C] - 29/08/2013 - 11:03:58 ---A- - C:\Windows\Prefetch\PGCEDIT.EXE-3464D591.pf
O45 - LFCP:[MD5.216834E4F369FD5E3E5A21AA35B2D078] - 29/08/2013 - 11:12:37 ---A- - C:\Windows\Prefetch\VOBMERGE.EXE-80196CCD.pf
O45 - LFCP:[MD5.A16620C4EABB795AB97CF633F4335827] - 29/08/2013 - 11:32:04 ---A- - C:\Windows\Prefetch\IFOEDIT.EXE-0941AA48.pf
O45 - LFCP:[MD5.454D34C87EFE15D255692BDB245D2F98] - 29/08/2013 - 14:12:52 ---A- - C:\Windows\Prefetch\IOCTLSVC.EXE-89AABB3F.pf
O45 - LFCP:[MD5.36F572C66A80A4B897715877A2346635] - 29/08/2013 - 14:12:52 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-3AB35CA7.pf
O45 - LFCP:[MD5.064C082C1FC1E927F140AE8F4A1B4017] - 29/08/2013 - 14:12:52 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-61AE5AB6.pf
O45 - LFCP:[MD5.7FFBA714D53B729B711351CEFF7A1C07] - 29/08/2013 - 14:12:52 ---A- - C:\Windows\Prefetch\WLIDSVC.EXE-5514E75E.pf
O45 - LFCP:[MD5.2F7A762B59799F75DCDB824A68BEE95E] - 29/08/2013 - 14:12:52 ---A- - C:\Windows\Prefetch\WLIDSVCM.EXE-A6EF5B2F.pf
O45 - LFCP:[MD5.7916FAD608267EA45DED62C0350FC92E] - 29/08/2013 - 14:47:59 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf
O45 - LFCP:[MD5.6BDA9D98AF0F6D6DD85B0EDD71E32F23] - 29/08/2013 - 14:48:06 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf
O45 - LFCP:[MD5.134E23D85A61117A1DCA11E309FDA630] - 29/08/2013 - 14:48:06 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf
O45 - LFCP:[MD5.77F666CA25D3ADB6806755C062B88C6A] - 29/08/2013 - 14:49:15 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-E2C2633A.pf
O45 - LFCP:[MD5.AFDD7A7D8E3EC8D86D6F58B273AA48E7] - 29/08/2013 - 15:14:25 ---A- - C:\Windows\Prefetch\CNMSE94.EXE-41BDEDA4.pf
O45 - LFCP:[MD5.CAA069020DF48E59088DAE74D439583F] - 29/08/2013 - 15:14:35 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-62D0AAE1.pf
O45 - LFCP:[MD5.523757A39B47847F7E6D878BCDB444E0] - 29/08/2013 - 15:45:21 ---A- - C:\Windows\Prefetch\REJIG.EXE-13DAC3F6.pf
O45 - LFCP:[MD5.D9304599A946B48358EDBDF331ECD8C5] - 29/08/2013 - 15:50:01 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-DE9673F9.pf
O45 - LFCP:[MD5.AF0B23694B1AD3DAD39E62739345A80C] - 29/08/2013 - 15:50:02 ---A- - C:\Windows\Prefetch\DEVICEDISPLAYOBJECTPROVIDER.E-17410B90.pf
O45 - LFCP:[MD5.2BCFA2351F8439187B75C283EDD5E49D] - 29/08/2013 - 15:50:06 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-91B4EF54.pf
O45 - LFCP:[MD5.86179A5B6A0BDAEE3B76C98F5D47459F] - 29/08/2013 - 16:33:07 ---A- - C:\Windows\Prefetch\Layout.ini
O45 - LFCP:[MD5.DD62C1E435CF7760DBB0C0EB82E77779] - 29/08/2013 - 17:53:46 ---A- - C:\Windows\Prefetch\VIRTUALDUBMOD.EXE-052832DA.pf
O45 - LFCP:[MD5.081B802D3F76F9B8228954FAE5A8C981] - 29/08/2013 - 17:55:52 ---A- - C:\Windows\Prefetch\VLC.EXE-CC6F4A79.pf
O45 - LFCP:[MD5.4D1299B5CB550240D63FA2A57517338E] - 29/08/2013 - 17:56:22 ---A- - C:\Windows\Prefetch\PGCDEMUX.EXE-EC84452D.pf
O45 - LFCP:[MD5.8BFAA90A54775D172C1D876668319FD8] - 29/08/2013 - 17:57:09 ---A- - C:\Windows\Prefetch\VOBEDIT.EXE-A1670377.pf
O45 - LFCP:[MD5.1D584F6AF150E50E4501B2421F1CAFE4] - 29/08/2013 - 19:25:26 ---A- - C:\Windows\Prefetch\SNDVOL.EXE-5D4CC7D6.pf
O45 - LFCP:[MD5.041FF0C48987A9B5B44CFF844088DF7C] - 29/08/2013 - 19:25:49 ---A- - C:\Windows\Prefetch\SUBTITLEWORKSHOP.EXE-52B1CD7F.pf
O45 - LFCP:[MD5.6F5036FD801F1C0042FDFA1BA3282E36] - 30/08/2013 - 06:38:47 ---A- - C:\Windows\Prefetch\CNSLMAIN.EXE-45AEDFDB.pf
O45 - LFCP:[MD5.5A70664CC67CAC4F34E33EF6BAF253E5] - 30/08/2013 - 06:38:55 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-0E293DD6.pf
O45 - LFCP:[MD5.40AD574B76F8F79BD2E88C54D741E278] - 30/08/2013 - 06:42:47 ---A- - C:\Windows\Prefetch\MPAS-D_BD_1.157.478.0.EXE-892DE87D.pf
O45 - LFCP:[MD5.99C19F65FC9B91F193195BF50F67B7BD] - 30/08/2013 - 06:42:47 ---A- - C:\Windows\Prefetch\MPMINISIGSTUB.EXE-FF959AB5.pf
O45 - LFCP:[MD5.C63EFB72FA0F6EE4C53D8EBF14F65055] - 30/08/2013 - 06:42:47 ---A- - C:\Windows\Prefetch\MPSIGSTUB.EXE-6CB27A06.pf
O45 - LFCP:[MD5.A2516DFAC04286D06F1492B187990A51] - 30/08/2013 - 06:42:49 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf
O45 - LFCP:[MD5.DEECF31CC90ACD83530ED597E8E76263] - 30/08/2013 - 06:48:02 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-4899FCB1.pf
O45 - LFCP:[MD5.E2A5BF95C023F857529AEEC2999C24E7] - 30/08/2013 - 07:44:50 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf
O45 - LFCP:[MD5.458A1ED83042B07E00F250DDE2217EB0] - 30/08/2013 - 08:16:43 ---A- - C:\Windows\Prefetch\PRINTISOLATIONHOST.EXE-E0CD10A9.pf
O45 - LFCP:[MD5.7908CA6BD8C88EDE0903B0E3CA1FC167] - 30/08/2013 - 08:16:47 ---A- - C:\Windows\Prefetch\WIAWOW64.EXE-D86558F8.pf
O45 - LFCP:[MD5.7BE73FD0DC251346A10B03C4CF118725] - 30/08/2013 - 08:16:48 ---A- - C:\Windows\Prefetch\WUDFHOST.EXE-AFFEF87C.pf
O45 - LFCP:[MD5.C6F763FA309C47569B0DDFCC2CA05172] - 30/08/2013 - 08:17:21 ---A- - C:\Windows\Prefetch\MPNSCAN.EXE-2A4A2F84.pf
O45 - LFCP:[MD5.9B2C58541BE47B79AF0B82AA0983F8D7] - 30/08/2013 - 08:17:31 ---A- - C:\Windows\Prefetch\MPNEX10.EXE-670A7D81.pf
O45 - LFCP:[MD5.4C578E97BA6944F7CBE70E8C17B7FCF4] - 30/08/2013 - 08:36:29 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F6346133.pf
O45 - LFCP:[MD5.645E9F6A5F0373AAC840DFC9C4C0F6A3] - 30/08/2013 - 08:37:07 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F5A08CEB.pf
O45 - LFCP:[MD5.2BD24CBA11F0BAEC012BE5CC49396F4E] - 30/08/2013 - 08:41:09 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pf
O45 - LFCP:[MD5.7C5B2AB562E0E50CEEA88617AE3A82BC] - 30/08/2013 - 08:41:09 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf
O45 - LFCP:[MD5.74CA101FBF3B1FBCEEDBDA9A90DA1D74] - 30/08/2013 - 08:56:22 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-FAA072DE.pf
O45 - LFCP:[MD5.DA95C734C7BD947964B84AC3BB20DE08] - 30/08/2013 - 08:56:23 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-75FE9CE0.pf
O45 - LFCP:[MD5.6EEFD91079D0F400815D0942CB937C78] - 30/08/2013 - 08:56:34 ---A- - C:\Windows\Prefetch\NEROBURNRIGHTS.EXE-0EFF7D89.pf
O45 - LFCP:[MD5.42EFBEC181B7908BFC947174E38A653E] - 30/08/2013 - 08:57:01 ---A- - C:\Windows\Prefetch\HELPPANE.EXE-FEDC965B.pf
O45 - LFCP:[MD5.C6A85DD0E6C90602B9600FA92B86437E] - 30/08/2013 - 09:02:39 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-28BF826E.pf
O45 - LFCP:[MD5.43392F2703493AABAC824209905CCF68] - 30/08/2013 - 09:02:43 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-ECB71776.pf
O45 - LFCP:[MD5.413BB1F29B9C9FE63B0CEF8C15BAA0A0] - 30/08/2013 - 09:03:27 ---A- - C:\Windows\Prefetch\IPCONFIG.EXE-912F3D5B.pf
O45 - LFCP:[MD5.AA79265B651923DE7992EAAE0F976228] - 30/08/2013 - 09:03:27 ---A- - C:\Windows\Prefetch\MAKECAB.EXE-0F1704A4.pf
O45 - LFCP:[MD5.869093B0FE5BB84B9C91BF8C0B94CF9E] - 30/08/2013 - 09:03:27 ---A- - C:\Windows\Prefetch\ROUTE.EXE-5E3D06CB.pf
O45 - LFCP:[MD5.97F4B610F11843CBB45CFEF20FB9D381] - 30/08/2013 - 09:04:52 ---A- - C:\Windows\Prefetch\MSDT.EXE-09841468.pf
O45 - LFCP:[MD5.91F780239EF3189D05DF39224B2869D4] - 30/08/2013 - 09:04:52 ---A- - C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf
O45 - LFCP:[MD5.52143C61C7D7F1ED5649BB034C6BA71A] - 30/08/2013 - 09:51:08 ---A- - C:\Windows\Prefetch\FIREFOX.EXE-18ACFCFF.pf
O45 - LFCP:[MD5.29277BDE5920F6168A992504B7B98D65] - 30/08/2013 - 09:56:54 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf
O45 - LFCP:[MD5.7AB4481BB7D289F5BF9C422D6C7E4AF5] - 30/08/2013 - 09:57:01 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin
O45 - LFCP:[MD5.AC88035B42E821F76E5CA21F301D48A4] - 30/08/2013 - 10:01:04 ---A- - C:\Windows\Prefetch\ADOBE GAMMA LOADER.EXE-46CBEC9D.pf
O45 - LFCP:[MD5.83ED5A56AD58797D7D616C40D8AB7C37] - 30/08/2013 - 10:01:04 ---A- - C:\Windows\Prefetch\SSBKGDUPDATE.EXE-5DA0A56F.pf
O45 - LFCP:[MD5.3A4148D7A8820F048E7F095543C91E4B] - 30/08/2013 - 10:01:15 ---A- - C:\Windows\Prefetch\OPWARESE4.EXE-DB968F18.pf
O45 - LFCP:[MD5.31CE38159AA4409C03C9A75AABC0852F] - 30/08/2013 - 10:01:16 ---A- - C:\Windows\Prefetch\LAUNCHERMA.EXE-15D8CC3F.pf
O45 - LFCP:[MD5.57921FB34936EC6DF753540E7EA26CB9] - 30/08/2013 - 10:01:18 ---A- - C:\Windows\Prefetch\RMCTRL.EXE-B590C598.pf
O45 - LFCP:[MD5.BE68D59D29DAB6DE4A12BCD61B24A1DD] - 30/08/2013 - 10:01:29 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf
O45 - LFCP:[MD5.9415C7F12364F1B165258E020872C9D1] - 30/08/2013 - 10:01:30 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf
O45 - LFCP:[MD5.60AF3A41AF230C2C49D60E038911DEFE] - 30/08/2013 - 10:01:32 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf
O45 - LFCP:[MD5.DA0B2AB161211A4A9EB00910F648F69E] - 30/08/2013 - 10:01:43 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf
O45 - LFCP:[MD5.FF7C1E218320230350655FBF82D6B086] - 30/08/2013 - 10:01:49 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf
O45 - LFCP:[MD5.E3BD5FAB73E157AF4D3F63077462CDC2] - 30/08/2013 - 10:01:57 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-C871F054.pf
O45 - LFCP:[MD5.6941594850676E6B5498475C2FACDA6E] - 30/08/2013 - 10:02:04 ---A- - C:\Windows\Prefetch\AgCx_SC4.db
O45 - LFCP:[MD5.08020CA9C364CE12EBEA2106E879B7B0] - 30/08/2013 - 10:02:28 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-40DD444D.pf
O45 - LFCP:[MD5.DF5CC92770ABFADCA634B4A96EAFC0DC] - 30/08/2013 - 10:02:30 ---A- - C:\Windows\Prefetch\WMI64.EXE-77258471.pf
O45 - LFCP:[MD5.1E27540320489B6DECAFDA1BA19E8CD6] - 30/08/2013 - 10:02:32 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf
O45 - LFCP:[MD5.9E89863D01D51EA52E811959003B194E] - 30/08/2013 - 10:02:33 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf
O45 - LFCP:[MD5.880E1878CB5D39F6159A883F36D4017B] - 30/08/2013 - 10:02:37 ---A- - C:\Windows\Prefetch\LMS.EXE-8C70F87D.pf
O45 - LFCP:[MD5.2FA56479DEBACAA49344C7B63A53C3A9] - 30/08/2013 - 10:02:38 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf
O45 - LFCP:[MD5.8AC6006069E63167EDD90B476632301C] - 30/08/2013 - 10:02:46 ---A- - C:\Windows\Prefetch\MBAM.EXE-80210E2F.pf
O45 - LFCP:[MD5.549C679A0AD43C39ED448FEB00BCDAAD] - 30/08/2013 - 10:03:09 ---A- - C:\Windows\Prefetch\UNS.EXE-E6E49771.pf
O45 - LFCP:[MD5.9361EA40B727805CC8B53AD75B6726C1] - 30/08/2013 - 10:04:01 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf
O45 - LFCP:[MD5.69F35E59E82D663B9BA28216DE1A2952] - 30/08/2013 - 10:11:59 ---A- - C:\Windows\Prefetch\FSCAPTURE.EXE-AD2C9BA1.pf
O45 - LFCP:[MD5.358C6D0BB983F4A952D423B4D9809A72] - 30/08/2013 - 10:12:13 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-37549B7E.pf
O45 - LFCP:[MD5.24BE43F2DA5E42C0D762D6F4A073910D] - 30/08/2013 - 10:13:50 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf
O45 - LFCP:[MD5.0BE474DC9378735AFA6D1094B835997B] - 30/08/2013 - 10:14:03 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-A3E35360.pf
O45 - LFCP:[MD5.E1FD194553069CB289734A53762408B9] - 30/08/2013 - 10:15:54 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E7777CC4.pf
O45 - LFCP:[MD5.1F55720F6BB8FBFB47A70C8CC7F0EB52] - 30/08/2013 - 10:15:59 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf
O45 - LFCP:[MD5.8BE56156AB2C0DF633328BD4520A4EB1] - 30/08/2013 - 10:32:45 ---A- - C:\Windows\Prefetch\AEGISUB32.EXE-96E57C87.pf
O45 - LFCP:[MD5.1CE2E515B8E99A65E7773AC2489C9637] - 30/08/2013 - 10:35:08 ---A- - C:\Windows\Prefetch\DVDSUBEDIT.EXE-8DDFB1DD.pf
O45 - LFCP:[MD5.5F915D5EC973EBDD3C631BE5E4937BE9] - 30/08/2013 - 11:01:54 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf
O45 - LFCP:[MD5.85A195B02B14CC0CE6AEE8EB11A083F5] - 30/08/2013 - 11:13:38 ---A- - C:\Windows\Prefetch\AVP.EXE-EA70C0B3.pf
O45 - LFCP:[MD5.F6C3F30E4F7113A3F7EBD256CD2C0DA3] - 30/08/2013 - 11:34:17 ---A- - C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf
O45 - LFCP:[MD5.5CE3E4FF9F9C643E07A3E7C5D505F4B6] - 30/08/2013 - 11:35:01 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf
O45 - LFCP:[MD5.0EFDB23F231820240B56E0CDC2092377] - 30/08/2013 - 12:22:59 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf
O45 - LFCP:[MD5.A229E41ED82A5660A695C112F4A95DE0] - 30/08/2013 - 12:24:11 ---A- - C:\Windows\Prefetch\TRIOGICAL.EXE-A9EF2B97.pf
O45 - LFCP:[MD5.843FAAB618B473CCD2B0729741C8D271] - 30/08/2013 - 12:25:53 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-1712745205-3725975212-2651975957-1000.db
O45 - LFCP:[MD5.92585D44DC4B3F07114881EFD3BB3198] - 30/08/2013 - 12:25:53 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-1712745205-3725975212-2651975957-1000.db
O45 - LFCP:[MD5.ED15DB47B45B9FE7A08EB69ED3BEA4DE] - 30/08/2013 - 12:26:23 ---A- - C:\Windows\Prefetch\EXCEL.EXE-D00E728A.pf
O45 - LFCP:[MD5.42DBF6368AC6F0929AAEF89F6A98D102] - 30/08/2013 - 12:26:50 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-26C72A86.pf
O45 - LFCP:[MD5.48A79BB7E4EDF38CAE05F6764BE66E7A] - 30/08/2013 - 12:39:13 ---A- - C:\Windows\Prefetch\KLWTBLFS.EXE-663D0EF3.pf
O45 - LFCP:[MD5.604BD5B2700B63CFA7B5CC015EA42305] - 30/08/2013 - 12:39:44 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf
O45 - LFCP:[MD5.9820460257AC9D73B4E4AB4FDBAF947F] - 30/08/2013 - 12:40:19 ---A- - C:\Windows\Prefetch\WINWORD.EXE-776D8A2F.pf
O45 - LFCP:[MD5.419139A8B328FC9CB576B32634181BA3] - 30/08/2013 - 12:40:21 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf
O45 - LFCP:[MD5.9CB216CE00218C92D6F829A7C0E5657B] - 30/08/2013 - 12:43:03 ---A- - C:\Windows\Prefetch\IGFXSRVC.EXE-96A493A4.pf
O45 - LFCP:[MD5.C4E70E5E2CDE415AA73D2AB54685E3EB] - 30/08/2013 - 12:46:02 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.F1CD6D63C29BC824B858AD18ACACF1A0] - 30/08/2013 - 12:46:02 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.ECA3EDB8B40720282217EEE52A90EF43] - 30/08/2013 - 12:46:02 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.A3712BB0F5D7A52353ACE5611103DB3D] - 30/08/2013 - 12:46:02 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.D24F469CEF6BD8AC07AE22A4523187EA] - 30/08/2013 - 13:03:28 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf
O45 - LFCP:[MD5.153BAB2703FE4CDDB8541446A92688D5] - 30/08/2013 - 13:03:33 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf
O45 - LFCP:[MD5.33FE4A7D3668CD4198CF27AB356C5E77] - 30/08/2013 - 13:03:48 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf
O45 - LFCP:[MD5.4F43D20F007EE7A61AC7B37C9C97955C] - 30/08/2013 - 13:03:58 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf
O45 - LFCP:[MD5.55F22040286A972E4CB76E8C7771E7B6] - 30/08/2013 - 13:04:08 ---A- - C:\Windows\Prefetch\CHROME.EXE-D999B1BA.pf
O45 - LFCP:[MD5.2DB9C76EC2CEB216C6D26E0B3072D383] - 30/08/2013 - 13:04:39 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-A8DE6D5B.pf
O45 - LFCP:[MD5.13FBED9FC761436C54460294A5E1E089] - 30/08/2013 - 13:05:10 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf
O45 - LFCP:[MD5.7C1D66EDA3170663751DD5482086A328] - 30/08/2013 - 13:06:24 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf
O45 - LFCP:[MD5.17F97EE3E36A4E23F5B4F09DC406E672] - 30/08/2013 - 13:06:24 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf
O45 - LFCP:[MD5.A323C8899DD3371212A53835A5FEC0C1] - 30/08/2013 - 13:06:28 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf
O45 - LFCP:[MD5.65675A4E42E47ED2183CB16F4BF9C617] - 30/08/2013 - 13:06:40 ---A- - C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf
O45 - LFCP:[MD5.1399F3AEB355A149D90839E32FCDDDBD] - 30/08/2013 - 13:06:42 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf
~ Prefetcher: 138 Scanned in 00mn 02s



---\\ D�ni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l��diteur de configuration de s�curit� Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de s�curit� Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ LSA: 9 Scanned in 00mn 00s



---\\ Contr�le du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 13 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"vidc.i420"="lvcod64.dll" . (.Logitech Inc. - Video Codec.) -- C:\Windows\System32\lvcod64.dll
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.ffds"="ff_vfw.dll" . (...) -- C:\Windows\System32\ff_vfw.dll
O52 - TDSD: \Drivers32\"msacm.lameacm"="LameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\Windows\System32\LameACM.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"LameACM.acm"="Lame ACM MP3 Codec" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\Windows\System32\LameACM.acm
~ TDSD: 6 Scanned in 00mn 00s



---\\ Enum�ration des cl�s de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enum�ration des cl�s de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPath"=1
~ MWPS: 18 Scanned in 00mn 00s



---\\ Enum�ration des cl�s de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoCDBurning"=0
~ MWPE Keys: 5 Scanned in 00mn 00s



---\\ Liste des pilotes du syst�me (SDL) (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys   [491088]
O58 - SDL:[MD5.19166026A93206F9C6A8CD3A1F010AE4] - 02/04/2009 - 13:30:14 ---A- . (...) -- C:\Windows\SysWOW64\drivers\ASUSHWIO.SYS   [10296]
O58 - SDL:[MD5.3DC0F24FC04312C4448A3CB39D908A4E] - 31/03/2012 - 11:34:40 RSHA- . (...) -- C:\Windows\SysWOW64\D64DA0C2B7.sys   [56]
~ Drivers: 18 Scanned in 00mn 00s



---\\ Derniers fichiers modifi�s ou cr�es (Utilisateur) (O61)
O61 - LFC: 06/07/2061 - 09:57:26 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autoback\srt21.ORIGINAL.srt   [154000]
O61 - LFC: 25/07/2050 - 13:09:04 ---A- . (.Acresso Software Inc..) -- C:\Users\utilisateur\Downloads\VSX3_Pro_TBYB.exe   [1244294648]
O61 - LFC: 27/08/2013 - 06:31:21 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\No smoking.xls.lnk   [607]
O61 - LFC: 27/08/2013 - 06:45:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\dvdcss\CACHEDIR.TAG   [203]
O61 - LFC: 27/08/2013 - 07:49:01 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\DVDSubEditLastFile2.txt   [36175]
O61 - LFC: 27/08/2013 - 08:38:39 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\dvd Bollywood DVD achet�s not�s.xls.lnk   [783]
O61 - LFC: 27/08/2013 - 08:47:24 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\anyporn.com\#kernelteam\preferences.sol   [61]
O61 - LFC: 27/08/2013 - 08:47:24 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\macromedia.com\support\flashplayer\sys\#anyporn.com\settings.sol   [81]
O61 - LFC: 27/08/2013 - 08:51:54 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\cdn1b.thumbnails.porntube.com\com.jeroenwijering.sol   [54]
O61 - LFC: 27/08/2013 - 08:57:23 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\anysex.com\#kernelteam\preferences.sol   [61]
O61 - LFC: 27/08/2013 - 08:57:23 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\macromedia.com\support\flashplayer\sys\#anysex.com\settings.sol   [80]
O61 - LFC: 27/08/2013 - 09:30:39 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Subtitle Edit\Settings.xml   [25631]
O61 - LFC: 27/08/2013 - 09:37:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T.AUTOSAVE.ass   [10628]
O61 - LFC: 27/08/2013 - 10:02:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T1.AUTOSAVE.ass   [10656]
O61 - LFC: 27/08/2013 - 10:11:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T2.AUTOSAVE.ass   [10720]
O61 - LFC: 27/08/2013 - 11:05:28 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T12.AUTOSAVE.ass   [10756]
O61 - LFC: 27/08/2013 - 13:08:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage   [3072]
O61 - LFC: 27/08/2013 - 13:08:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage-journal   [3608]
O61 - LFC: 27/08/2013 - 13:29:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\www.drtuber.com\player\videoplayer.swf\dat.sol   [37]
O61 - LFC: 27/08/2013 - 13:31:26 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\macromedia.com\support\flashplayer\sys\#www.winporn.com\settings.sol   [85]
O61 - LFC: 27/08/2013 - 13:31:26 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\www.winporn.com\player\videoplayer.swf\dat.sol   [41]
O61 - LFC: 27/08/2013 - 13:31:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\edge.player.gammae.com\swf\flowplayer.unlimited-3.2.7.swf\org.flowplayer.sol   [67]
O61 - LFC: 27/08/2013 - 13:40:55 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377607202.json   [46080]
O61 - LFC: 27/08/2013 - 13:44:08 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autoback\Dhoom machale T16.ORIGINAL.ass   [10818]
O61 - LFC: 27/08/2013 - 13:44:10 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377592286.json   [415446]
O61 - LFC: 27/08/2013 - 15:46:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Liens Bollywood.xls.lnk   [735]
O61 - LFC: 27/08/2013 - 15:58:35 ---A- . (.utilisateur.) -- C:\Users\utilisateur\Documents\no smoking review.doc   [407040]
O61 - LFC: 27/08/2013 - 16:00:17 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\static1.dmcdn.net\com.dm.player.sol   [244]
O61 - LFC: 27/08/2013 - 18:23:15 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\FastStone\FSC\fsrec.db   [1297]
O61 - LFC: 27/08/2013 - 18:23:15 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\FastStone\FSC\fsrec.db   [1297]
O61 - LFC: 28/08/2013 - 09:02:55 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.dailymotion.com_0.localstorage   [8192]
O61 - LFC: 28/08/2013 - 09:02:55 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.dailymotion.com_0.localstorage-journal   [8768]
O61 - LFC: 28/08/2013 - 11:12:06 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Aegisub\ffms2cache\C654A9CA5CDE93D3873CFC4E3A8AEF97.ffindex   [26918]
O61 - LFC: 28/08/2013 - 11:19:57 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T16.AUTOSAVE.ass   [10887]
O61 - LFC: 28/08/2013 - 11:32:57 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T18.AUTOSAVE.ass   [11133]
O61 - LFC: 28/08/2013 - 13:00:25 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\fr.pornoid.com\#kernelteam\preferences.sol   [70]
O61 - LFC: 28/08/2013 - 13:00:25 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\macromedia.com\support\flashplayer\sys\#fr.pornoid.com\settings.sol   [84]
O61 - LFC: 28/08/2013 - 13:00:58 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\macromedia.com\support\flashplayer\sys\#pornsharing.com\settings.sol   [85]
O61 - LFC: 28/08/2013 - 13:01:01 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pornsharing.com_0.localstorage   [3072]
O61 - LFC: 28/08/2013 - 13:01:01 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pornsharing.com_0.localstorage-journal   [3608]
O61 - LFC: 28/08/2013 - 13:01:01 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\pornsharing.com\tubeContextPlayer.sol   [59]
O61 - LFC: 28/08/2013 - 13:07:45 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\t01.pornoxo.com\com.jeroenwijering.sol   [64]
O61 - LFC: 28/08/2013 - 13:11:38 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\staticloads.com\com.jeroenwijering.sol   [64]
O61 - LFC: 28/08/2013 - 13:32:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T23.AUTOSAVE.ass   [11304]
O61 - LFC: 28/08/2013 - 13:37:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T26.AUTOSAVE.ass   [11354]
O61 - LFC: 28/08/2013 - 13:44:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T32.AUTOSAVE.ass   [11426]
O61 - LFC: 28/08/2013 - 13:46:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.amazon.fr_0.localstorage   [5120]
O61 - LFC: 28/08/2013 - 13:46:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.amazon.fr_0.localstorage-journal   [3608]
O61 - LFC: 28/08/2013 - 13:52:40 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\Paint.NET.3.5.11.Install.exe   [3765592]
O61 - LFC: 28/08/2013 - 13:57:19 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\aegisub tuto.doc.lnk   [613]
O61 - LFC: 28/08/2013 - 13:57:33 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Documents Word.lnk   [490]
O61 - LFC: 28/08/2013 - 13:57:33 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\TUTO de Ash pour Aegisub.doc.lnk   [649]
O61 - LFC: 28/08/2013 - 14:13:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T38.AUTOSAVE.ass   [12319]
O61 - LFC: 28/08/2013 - 14:16:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale T48.AUTOSAVE.ass   [12625]
O61 - LFC: 28/08/2013 - 14:26:00 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale Kara.AUTOSAVE.ass   [12748]
O61 - LFC: 28/08/2013 - 14:31:00 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale Karao.AUTOSAVE.ass   [12844]
O61 - LFC: 28/08/2013 - 14:34:43 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\catalog\Default.sty   [5291]
O61 - LFC: 28/08/2013 - 14:36:00 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale Karaoke Bleu 32.AUTOSAVE.ass   [13006]
O61 - LFC: 28/08/2013 - 14:37:00 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Dhoom machale Karaoke Orange1.AUTOSAVE.ass   [13044]
O61 - LFC: 28/08/2013 - 14:37:51 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autoback\Dhoom machale Karaoke Orange1.ORIGINAL.ass   [13054]
O61 - LFC: 28/08/2013 - 14:38:16 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377684716.json   [713578]
O61 - LFC: 28/08/2013 - 15:47:08 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Ahead\Nero Home\crawlercfg.dat   [2919]
O61 - LFC: 28/08/2013 - 15:47:08 ---A- . (...) -- C:\Users\utilisateur\AppData\default.pls   [121]
O61 - LFC: 28/08/2013 - 15:48:11 ---A- . (...) -- C:\Users\utilisateur\Documents\Freemake_do_not_remove_this_folder635133052323517174\Temp_do_not_remove_this_folder\movie_0.mpg   [205479936]
O61 - LFC: 28/08/2013 - 15:48:17 ---A- . (...) -- C:\Users\utilisateur\Documents\Freemake_do_not_remove_this_folder635133052323517174\Temp_do_not_remove_this_folder\fm_dvd_blank.VOB   [0]
O61 - LFC: 28/08/2013 - 15:48:17 ---A- . (...) -- C:\Users\utilisateur\Documents\Freemake_do_not_remove_this_folder635133052323517174\Temp_do_not_remove_this_folder\fm_dvd_blank.png   [2728]
O61 - LFC: 28/08/2013 - 17:40:57 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377708050.json   [43058]
O61 - LFC: 28/08/2013 - 17:46:51 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Adobe\Acrobat\10.0\TMDocs.sav   [36]
O61 - LFC: 28/08/2013 - 17:46:51 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Adobe\Acrobat\10.0\TMGrpPrm.sav   [54]
O61 - LFC: 28/08/2013 - 17:49:35 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Adobe\Acrobat\10.0\Security\CRLCache\A9B8213768ADC68AF64FCC6409E8BE414726687F.crl   [37213]
O61 - LFC: 28/08/2013 - 17:49:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Adobe\Acrobat\10.0\Security\CRLCache\48B76449F3D5FEFA1133AA805E420F0FCA643651.crl   [898]
O61 - LFC: 28/08/2013 - 17:57:32 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Adobe\Acrobat\10.0\JSCache\GlobSettings   [24]
O61 - LFC: 29/08/2013 - 08:12:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.groupon.fr_0.localstorage   [14336]
O61 - LFC: 29/08/2013 - 08:12:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.groupon.fr_0.localstorage-journal   [14960]
O61 - LFC: 29/08/2013 - 08:12:26 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.youtube.com_0.localstorage   [23552]
O61 - LFC: 29/08/2013 - 08:12:26 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.youtube.com_0.localstorage-journal   [16384]
O61 - LFC: 29/08/2013 - 08:44:09 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Bollywood filmfare awards 2003.xls.lnk   [667]
O61 - LFC: 29/08/2013 - 09:03:21 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\QuotaManager   [15360]
O61 - LFC: 29/08/2013 - 09:03:21 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\QuotaManager-journal   [8768]
O61 - LFC: 29/08/2013 - 09:13:34 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.amazon.in_0.localstorage   [3072]
O61 - LFC: 29/08/2013 - 09:13:34 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.amazon.in_0.localstorage-journal   [3608]
O61 - LFC: 29/08/2013 - 09:17:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.wikipedia.org_0.localstorage   [3072]
O61 - LFC: 29/08/2013 - 09:17:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.wikipedia.org_0.localstorage-journal   [3608]
O61 - LFC: 29/08/2013 - 09:42:24 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\BollyWHAT.doc.lnk   [1079]
O61 - LFC: 29/08/2013 - 09:42:24 ---A- . (.utilisateur.) -- C:\Users\utilisateur\Documents\BollyWHAT.doc   [1638912]
O61 - LFC: 29/08/2013 - 10:58:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\PGC Editor.doc.lnk   [699]
O61 - LFC: 29/08/2013 - 11:00:06 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Doc new.lnk   [582]
O61 - LFC: 29/08/2013 - 11:00:06 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\PgcEdit texte.doc.lnk   [708]
O61 - LFC: 29/08/2013 - 14:57:46 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\static.eplayer.performgroup.com\com.conviva.livePass.sol   [225]
O61 - LFC: 29/08/2013 - 15:02:42 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.uefa.com_0.localstorage   [3072]
O61 - LFC: 29/08/2013 - 15:02:42 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.uefa.com_0.localstorage-journal   [3608]
O61 - LFC: 29/08/2013 - 15:03:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lephoceen.fr_0.localstorage   [3072]
O61 - LFC: 29/08/2013 - 15:03:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lephoceen.fr_0.localstorage-journal   [3608]
O61 - LFC: 29/08/2013 - 15:03:13 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.eurosport.fr_0.localstorage   [3072]
O61 - LFC: 29/08/2013 - 15:03:13 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.eurosport.fr_0.localstorage-journal   [3608]
O61 - LFC: 29/08/2013 - 15:03:22 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\www.dailymotion.com\com.dm.player.sol   [185]
O61 - LFC: 29/08/2013 - 15:08:09 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\lIGUE CHAMPIONS 2013-14.xls.lnk   [646]
O61 - LFC: 29/08/2013 - 15:12:58 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\secure-uk.imrworldwide.com\_ggMCvar_1.sol   [385]
O61 - LFC: 29/08/2013 - 15:22:45 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\sunstatic.fuckandcdn.com\com.jeroenwijering.sol   [64]
O61 - LFC: 29/08/2013 - 15:23:11 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\net annuaire partition gratuites.xls.lnk   [786]
O61 - LFC: 29/08/2013 - 15:24:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.needtoporn.com_0.localstorage   [3072]
O61 - LFC: 29/08/2013 - 15:24:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.needtoporn.com_0.localstorage-journal   [3608]
O61 - LFC: 29/08/2013 - 15:24:54 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hardsextube.com_0.localstorage   [6144]
O61 - LFC: 29/08/2013 - 15:24:54 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hardsextube.com_0.localstorage-journal   [5672]
O61 - LFC: 29/08/2013 - 15:28:58 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\www.redtube.com\com.rtplayer.sol   [65]
O61 - LFC: 29/08/2013 - 15:30:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\design.yobt.com\flash\YobtPlayer_2.swf\avallon_audio.sol   [51]
O61 - LFC: 29/08/2013 - 15:30:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\macromedia.com\support\flashplayer\sys\#design.yobt.com\settings.sol   [85]
O61 - LFC: 29/08/2013 - 15:38:42 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Media Cache\data_0   [45056]
O61 - LFC: 29/08/2013 - 15:38:42 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Media Cache\data_1   [532480]
O61 - LFC: 29/08/2013 - 15:45:22 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377787506.json   [39300]
O61 - LFC: 29/08/2013 - 15:49:05 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\DVDSubEditLastFile1.txt   [895]
O61 - LFC: 29/08/2013 - 15:49:33 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autoback\Crazy timings.ORIGINAL.srt   [3188]
O61 - LFC: 29/08/2013 - 15:52:23 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Crazy timings.AUTOSAVE.ass   [4678]
O61 - LFC: 29/08/2013 - 16:00:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377787822.json   [177434]
O61 - LFC: 29/08/2013 - 18:02:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\History Index 2013-05   [45277184]
O61 - LFC: 29/08/2013 - 19:26:14 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\no smoking review.doc.lnk   [1119]
O61 - LFC: 29/08/2013 - 19:38:59 ---A- . (...) -- C:\Users\utilisateur\Dhoom 2 lyrics  Crazy.txt   [4070]  =>Adware.AddLyrics
O61 - LFC: 29/08/2013 - 19:40:04 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autoback\Crazy K.ORIGINAL.ass   [4904]
O61 - LFC: 29/08/2013 - 19:40:05 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377800706.json   [88522]
O61 - LFC: 30/08/2013 - 07:32:37 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-30 (07-51-03).txt   [2184]
O61 - LFC: 30/08/2013 - 07:37:05 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-30 (08-33-01).txt   [2132]
O61 - LFC: 30/08/2013 - 08:17:20 --H-- . (...) -- C:\Users\utilisateur\AppData\Roaming\Canon\MP Navigator EX V10\history\sc\hstr_1049.lnk   [988]
O61 - LFC: 30/08/2013 - 08:17:21 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\TWAIN.LOG   [1069]
O61 - LFC: 30/08/2013 - 08:17:21 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\Twain001.Mtx   [4]
O61 - LFC: 30/08/2013 - 08:17:21 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\Twunk001.MTX   [156]
O61 - LFC: 30/08/2013 - 08:28:06 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Offre 008KYXP.doc.lnk   [1099]
O61 - LFC: 30/08/2013 - 08:28:06 ---A- . (.utilisateur.) -- C:\Users\utilisateur\Documents\Offre 008KYXP.doc   [32256]
O61 - LFC: 30/08/2013 - 08:36:43 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\HTML Help\hh.dat   [35720]
O61 - LFC: 30/08/2013 - 08:45:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Top Sites   [843776]
O61 - LFC: 30/08/2013 - 08:45:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal   [16384]
O61 - LFC: 30/08/2013 - 08:47:50 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Winsock Fix For Windows 7.doc.lnk   [1159]
O61 - LFC: 30/08/2013 - 08:47:50 ---A- . (.utilisateur.) -- C:\Users\utilisateur\Documents\Winsock Fix For Windows 7.doc   [27648]
O61 - LFC: 30/08/2013 - 08:56:04 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.000\8F95D58A-A7E2-42F7-AC1C-6D6998AB4B93.Diagnose.0.etl   [327680]
O61 - LFC: 30/08/2013 - 08:56:06 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.000\NetworkConfiguration.cab   [1483]
O61 - LFC: 30/08/2013 - 08:56:07 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.000\NetworkDiagnostics.0.debugreport.xml   [74202]
O61 - LFC: 30/08/2013 - 08:56:07 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.000\results.xsl   [49097]
O61 - LFC: 30/08/2013 - 08:56:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.000\NetworkDiagnostics.1.debugreport.xml   [69683]
O61 - LFC: 30/08/2013 - 08:56:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.000\ResultReport.xml   [40483]
O61 - LFC: 30/08/2013 - 08:56:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.000\results.xml   [513]
O61 - LFC: 30/08/2013 - 08:56:25 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Nero\OnlineServices\7registrationinfo.xml   [240]
O61 - LFC: 30/08/2013 - 08:58:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.001\results.xsl   [49097]
O61 - LFC: 30/08/2013 - 08:58:46 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.001\9A02631B-98BB-431C-8948-CFB38DA0ABE9.Diagnose.0.etl   [327680]
O61 - LFC: 30/08/2013 - 08:58:47 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.001\NetworkConfiguration.cab   [1483]
O61 - LFC: 30/08/2013 - 09:01:25 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.001\NetworkDiagnostics.0.debugreport.xml   [68127]
O61 - LFC: 30/08/2013 - 09:01:25 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.001\ResultReport.xml   [38930]
O61 - LFC: 30/08/2013 - 09:01:25 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083007.001\results.xml   [513]
O61 - LFC: 30/08/2013 - 09:02:21 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\VB11.pip   [144]
O61 - LFC: 30/08/2013 - 09:02:22 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.000\E1D30781-4EC7-43B1-8E31-A81A6428438D.Diagnose.0.etl   [327680]
O61 - LFC: 30/08/2013 - 09:02:22 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.000\NetworkConfiguration.cab   [1486]
O61 - LFC: 30/08/2013 - 09:02:23 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.000\NetworkDiagnostics.0.debugreport.xml   [74241]
O61 - LFC: 30/08/2013 - 09:02:23 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.000\results.xsl   [49097]
O61 - LFC: 30/08/2013 - 09:02:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.000\NetworkDiagnostics.1.debugreport.xml   [69683]
O61 - LFC: 30/08/2013 - 09:02:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.000\ResultReport.xml   [40483]
O61 - LFC: 30/08/2013 - 09:02:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.000\results.xml   [513]
O61 - LFC: 30/08/2013 - 09:03:26 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.001\E1C2D53E-9007-4FA4-A5E4-FF310178783B.Diagnose.0.etl   [262144]
O61 - LFC: 30/08/2013 - 09:03:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.001\NetworkConfiguration.cab   [1483]
O61 - LFC: 30/08/2013 - 09:03:27 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.001\NetworkDiagnostics.0.debugreport.xml   [74200]
O61 - LFC: 30/08/2013 - 09:03:28 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.001\results.xsl   [49097]
O61 - LFC: 30/08/2013 - 09:03:35 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.001\NetworkDiagnostics.1.debugreport.xml   [69683]
O61 - LFC: 30/08/2013 - 09:03:35 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.001\ResultReport.xml   [40483]
O61 - LFC: 30/08/2013 - 09:03:35 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.001\results.xml   [513]
O61 - LFC: 30/08/2013 - 09:04:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.002\results.xsl   [49097]
O61 - LFC: 30/08/2013 - 09:04:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.002\NetworkDiagnostics.0.debugreport.xml   [3000]
O61 - LFC: 30/08/2013 - 09:04:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.002\ResultReport.xml   [38374]
O61 - LFC: 30/08/2013 - 09:04:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\2013083008.002\results.xml   [513]
O61 - LFC: 30/08/2013 - 09:04:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Diagnostics\1158610846\latest.cab   [12178]
O61 - LFC: 30/08/2013 - 09:06:06 ---A- . (...) -- C:\Users\utilisateur\Documents\Remote Assistance Logs\10053120130830.xml   [433]
O61 - LFC: 30/08/2013 - 09:16:42 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SVAELX6G\macromedia.com\support\flashplayer\sys\settings.sol   [1245]
O61 - LFC: 30/08/2013 - 09:27:06 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377850871.json   [39288]
O61 - LFC: 30/08/2013 - 09:27:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\FastStone\FSC\fsc.db   [5551]
O61 - LFC: 30/08/2013 - 09:27:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\FastStone\FSC\fsc.db   [5551]
O61 - LFC: 30/08/2013 - 09:46:35 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\~DFB0BEC1B8178634C4.TMP   [393216]
O61 - LFC: 30/08/2013 - 09:49:00 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\~DF109563F7E463FCC6.TMP   [376832]
O61 - LFC: 30/08/2013 - 09:52:51 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Nouveaux Excel.lnk   [603]
O61 - LFC: 30/08/2013 - 09:52:51 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\edoc annexes.xls.lnk   [726]
O61 - LFC: 30/08/2013 - 09:55:32 ---A- . (...) -- C:\Users\utilisateur\proxy.txt   [1276]
O61 - LFC: 30/08/2013 - 09:56:44 --HA- . (...) -- C:\Users\utilisateur\AppData\Local\IconCache.db   [14628487]
O61 - LFC: 30/08/2013 - 10:12:09 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\~WRD0001.doc   [1445]
O61 - LFC: 30/08/2013 - 10:12:49 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\ZHPDiag.doc.lnk   [1067]
O61 - LFC: 30/08/2013 - 10:12:49 ---A- . (.utilisateur.) -- C:\Users\utilisateur\Documents\ZHPDiag.doc   [25088]
O61 - LFC: 30/08/2013 - 10:13:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\zhpdiag.xls.lnk   [596]
O61 - LFC: 30/08/2013 - 10:33:06 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Aegisub\ffms2cache\EBF3C7024D621B91382ED66DEA6CB2D5.ffindex   [40799]
O61 - LFC: 30/08/2013 - 10:33:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\autosave\Crazy K.AUTOSAVE.ass   [4973]
O61 - LFC: 30/08/2013 - 10:34:19 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\shift_history.json   [116314]
O61 - LFC: 30/08/2013 - 10:34:29 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\mru.json   [3819]
O61 - LFC: 30/08/2013 - 10:34:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\config.json   [12663]
O61 - LFC: 30/08/2013 - 10:34:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Aegisub\log\1377855158.json   [61005]
O61 - LFC: 30/08/2013 - 10:35:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\DVDSubEditLastFile0.txt   [899]
O61 - LFC: 30/08/2013 - 11:31:03 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-30 (11-13-23).txt   [2176]
O61 - LFC: 30/08/2013 - 11:31:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-30 (12-31-30).txt   [2120]
O61 - LFC: 30/08/2013 - 11:32:54 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak   [960067]
O61 - LFC: 30/08/2013 - 11:33:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Archived History   [57397248]
O61 - LFC: 30/08/2013 - 11:33:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Archived History-journal   [16384]
O61 - LFC: 30/08/2013 - 11:33:53 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\History Index 2013-06   [38424576]
O61 - LFC: 30/08/2013 - 11:38:17 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists   [265880]
O61 - LFC: 30/08/2013 - 11:38:17 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\CRX_75DAF8CB7768\crl-set   [914]
O61 - LFC: 30/08/2013 - 11:38:17 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\CRX_75DAF8CB7768\manifest.json   [34]
O61 - LFC: 30/08/2013 - 11:38:49 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\History Index 2013-07   [42225664]
O61 - LFC: 30/08/2013 - 11:39:54 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Last Tabs   [28327]
O61 - LFC: 30/08/2013 - 11:39:55 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Last Session   [284756]
O61 - LFC: 30/08/2013 - 12:22:47 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\1890066761.data   [733]
O61 - LFC: 30/08/2013 - 12:22:47 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\2448194923.data   [760]
O61 - LFC: 30/08/2013 - 12:22:47 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\2448194923.quar   [1294528]
O61 - LFC: 30/08/2013 - 12:22:47 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5844888675.data   [752]
O61 - LFC: 30/08/2013 - 12:22:47 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5844888675.quar   [392552]
O61 - LFC: 30/08/2013 - 12:22:47 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6727666339.data   [751]
O61 - LFC: 30/08/2013 - 12:22:47 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6727666339.quar   [17335648]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-08-30 (12-39-56).txt   [4034]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\1890066761.quar   [277424]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5096732318.data   [708]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5096732318.quar   [1091123]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6383536953.data   [734]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6383536953.quar   [277480]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\7190191200.data   [736]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\7190191200.quar   [1294528]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\7217896464.data   [761]
O61 - LFC: 30/08/2013 - 12:22:48 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\7217896464.quar   [13481288]
O61 - LFC: 30/08/2013 - 12:26:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Biblioth�que.lnk   [1127]
O61 - LFC: 30/08/2013 - 12:26:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\EUROTOOL.XLA.lnk   [1264]
O61 - LFC: 30/08/2013 - 12:26:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Feuilles Excel.lnk   [490]
O61 - LFC: 30/08/2013 - 12:26:20 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Ziq pour Libert.xls.lnk   [622]
O61 - LFC: 30/08/2013 - 12:26:22 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Excel\Excel11.xlb   [23573]
O61 - LFC: 30/08/2013 - 12:26:23 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\Excel11.pip   [1668]
O61 - LFC: 30/08/2013 - 12:39:03 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extension State\CURRENT   [16]
O61 - LFC: 30/08/2013 - 12:39:03 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-004827   [757]
O61 - LFC: 30/08/2013 - 12:39:04 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000392   [562]
O61 - LFC: 30/08/2013 - 12:39:05 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT   [16]
O61 - LFC: 30/08/2013 - 12:39:06 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Bookmarks   [960067]
O61 - LFC: 30/08/2013 - 12:39:11 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Web Data   [1044480]
O61 - LFC: 30/08/2013 - 12:39:11 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal   [16384]
O61 - LFC: 30/08/2013 - 12:39:13 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Managed Mode Settings   [8]
O61 - LFC: 30/08/2013 - 12:42:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Safe Browsing Download   [689780]
O61 - LFC: 30/08/2013 - 12:42:14 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom   [8223496]
O61 - LFC: 30/08/2013 - 12:42:14 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Prefix Set   [1951580]
O61 - LFC: 30/08/2013 - 12:42:14 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Safe Browsing Csd Whitelist   [135132]
O61 - LFC: 30/08/2013 - 12:42:14 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Safe Browsing Download Whitelist   [19016]
O61 - LFC: 30/08/2013 - 12:43:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\Mes documents.lnk   [937]
O61 - LFC: 30/08/2013 - 12:43:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\maxou.doc.lnk   [1055]
O61 - LFC: 30/08/2013 - 12:43:52 ---A- . (.utilisateur.) -- C:\Users\utilisateur\Documents\maxou.doc   [137216]
O61 - LFC: 30/08/2013 - 12:43:52 --H-- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\R�cent\index.dat   [1807]
O61 - LFC: 30/08/2013 - 13:02:59 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Temp\wmplog00.sqm   [2016]
O61 - LFC: 30/08/2013 - 13:04:07 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dub122.mail.live.com_0.localstorage   [3072]
O61 - LFC: 30/08/2013 - 13:04:07 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dub122.mail.live.com_0.localstorage-journal   [3608]
O61 - LFC: 30/08/2013 - 13:04:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor   [431104]
O61 - LFC: 30/08/2013 - 13:04:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Shortcuts   [344064]
O61 - LFC: 30/08/2013 - 13:04:36 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal   [16384]
O61 - LFC: 30/08/2013 - 13:04:37 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor-journal   [16384]
O61 - LFC: 30/08/2013 - 13:04:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage   [5143552]
O61 - LFC: 30/08/2013 - 13:04:52 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage-journal   [16384]
O61 - LFC: 30/08/2013 - 13:04:54 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity   [2481]
O61 - LFC: 30/08/2013 - 13:05:00 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Favicons   [12748800]
O61 - LFC: 30/08/2013 - 13:05:00 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal   [16384]
O61 - LFC: 30/08/2013 - 13:05:00 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\History Index 2013-08   [42545152]
O61 - LFC: 30/08/2013 - 13:05:01 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\History Index 2013-08-journal   [16384]
O61 - LFC: 30/08/2013 - 13:05:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies   [6144]
O61 - LFC: 30/08/2013 - 13:05:12 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies-journal   [4640]
O61 - LFC: 30/08/2013 - 13:05:43 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.shared.live.com_0.localstorage   [5120]
O61 - LFC: 30/08/2013 - 13:05:43 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.shared.live.com_0.localstorage-journal   [5672]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Current Session   [222837]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Current Tabs   [70737]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\History   [21659648]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache   [430161]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\History-journal   [16384]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Preferences   [109378]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Sync Data\SyncData.sqlite3   [13447168]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Sync Data\SyncData.sqlite3-journal   [16384]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Visited Links   [2097040]
O61 - LFC: 30/08/2013 - 13:05:44 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Local State   [48278]
O61 - LFC: 30/08/2013 - 13:05:45 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Cookies   [1560576]
O61 - LFC: 30/08/2013 - 13:05:45 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal   [16384]
O61 - LFC: 30/08/2013 - 13:05:45 ---A- . (...) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt   [4]
O61 - LFC: 30/08/2013 - 13:06:14 ---A- . (...) -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Office\Word11.pip   [1860]
~ 10 Fichiers temporaires (Temporary files)
~ Files: 272 Scanned in 01mn 16s



---\\ Liste des outils de d�sinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ ADS:  Scanned in 00mn 00s



---\\ Liste les services legacy du registre (LALS) (O64)
O64 - Services: CurCS - 28/12/2011 - C:\Windows\system32\drivers\afd.sys (AFD)  .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
O64 - Services: CurCS - 11/12/2009 - C:\Windows\System32\DRIVERS\atipmdag.sys (amdkmdag)  .(.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) - LEGACY_AMDKMDAG
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep)  .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP
O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser)  .(.Microsoft Corporation - DLL du service Explorateur d�ordinateurs.) - LEGACY_BOWSER
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs)  .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS)  .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS
O64 - Services: CurCS - 24/08/2012 - C:\Windows\System32\Drivers\cng.sys (CNG)  .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC)  .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache)  .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE
O64 - Services: CurCS - 10/04/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl)  .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat)  .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo)  .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr)  .(.Microsoft Corporation - Gestionnaire de filtres de syst�me de fichi.) - LEGACY_FLTMGR
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\fvevol.sys (fvevol)  .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP)  .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy)  .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY
O64 - Services: CurCS - 04/03/2011 - C:\Windows\System32\DRIVERS\kl1.sys (kl1)  .(.Kaspersky Lab ZAO - Kaspersky Unified Driver.) - LEGACY_KL1
O64 - Services: CurCS - 04/03/2011 - C:\Windows\System32\DRIVERS\kl2.sys (kl2)  .(.Kaspersky Lab ZAO - Kaspersky Unified Driver.) - LEGACY_KL2
O64 - Services: CurCS - 29/10/2012 - C:\Windows\System32\DRIVERS\klif.sys (KLIF)  .(.Kaspersky Lab - Klif Mini-Filter [fre_wlh_amd64].) - LEGACY_KLIF
O64 - Services: CurCS - 10/03/2011 - C:\Windows\System32\DRIVERS\klim6.sys (KLIM6)  .(.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) - LEGACY_KLIM6
O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD)  .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD
O64 - Services: CurCS - 24/08/2012 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg)  .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio)  .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv)  .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV
O64 - Services: CurCS - 07/05/2010 - Pas de propri�taire (LVPr2M64)  .(...) - LEGACY_LVPR2M64
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr)  .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv)  .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\webclnt.dll (MRxDAV)  .(.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) - LEGACY_MRXDAV
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb)  .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10)  .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20)  .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv)  .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup)  .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP
O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS)  .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS)  .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT)  .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy)  .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw)  .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH)  .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH
O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched)  .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss)  .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD)  .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD)  .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP)  .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr)  .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR
O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv)  .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr)  .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\srvsvc.dll (srv)  .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\srvsvc.dll (srv2)  .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2
O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet)  .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip)  .(.Microsoft Corporation - Objets de configuration du r�seau.) - LEGACY_TCPIP
O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg)  .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx)  .(.Microsoft Corporation - Objets de configuration du r�seau.) - LEGACY_TDX
O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\DRIVERS\udfs.sys (udfs)  .(.Microsoft Corporation - UDF File System Driver.) - LEGACY_UDFS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave)  .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx)  .(.Microsoft Corporation - Pilote d�extension du gestionnaire de volum.) - LEGACY_VOLMGRX
O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap)  .(.Microsoft Corporation - Pilote de clich� instantan� du volume.) - LEGACY_VOLSNAP
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\vpcnfltr.sys (vpcnfltr)  .(.Microsoft Corporation - Virtual PC Network Filter Driver.) - LEGACY_VPCNFLTR
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6)  .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6
O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000)  .(.Microsoft Corporation - Runtime de l�infrastructure de pilotes en m.) - LEGACY_WDF01000
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf)  .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF
O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\WudfPf.sys (WudfPf)  .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF
~ Legacy: 75 Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
~ FASS Keys: 17 Scanned in 00mn 00s



---\\ Menu de d�marrage Internet (SMI) (O68)
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys:  Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {0D3A50C4-E24A-43DD-A5AC-C9C6644742AE} - (Yahoo! Search) - http://search.yahoo.com  =>Toolbar.Yahoo
~ Keys:  Scanned in 00mn 00s



---\\ Enum�re les service demarr�s par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Exp�rience d�application.) -- C:\Windows\System32\aelupsvc.dll   [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll   [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll   [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll   [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de strat�gie de groupe.) -- C:\Windows\System32\gpsvc.dll   [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll   [853504]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll   [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de num�rotation automatique d�acc�s distant.) -- C:\Windows\System32\rasauto.dll   [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d�acc�s distant.) -- C:\Windows\System32\rasmans.dll   [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d�interface dynamique.) -- C:\Windows\System32\mprdim.dll   [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d��v�nements syst�me (SENS).) -- C:\Windows\System32\sens.dll   [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l�application d�assistance � Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll   [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de t�l�phonie Microsoft� Windows(TM).) -- C:\Windows\System32\tapisrv.dll   [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur h�te de session Burea.) -- C:\Windows\System32\termsrv.dll   [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise � jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll   [2428952]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arri�re-plan.) -- C:\Windows\System32\qmgr.dll   [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll   [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivit� IPv6 sur un r�seau IPv4..) -- C:\Windows\System32\iphlpsvc.dll   [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d�ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll   [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d�application.) -- C:\Windows\System32\appinfo.dll   [70144]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de d�couverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll   [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multim�dias.) -- C:\Windows\System32\mmcss.dll   [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll   [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau � distance.) -- C:\Windows\System32\sessenv.dll   [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d�ordinateurs.) -- C:\Windows\System32\browser.dll   [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll   [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de t�ches.) -- C:\Windows\System32\schedsvc.dll   [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des cl�s.) -- C:\Windows\System32\kmsvc.dll   [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux probl�mes.) -- C:\Windows\System32\wercplsupport.dll   [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll   [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des th�mes Windows Shell.) -- C:\Windows\System32\themeservice.dll   [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll   [100864]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll   [193536]
~ Services: 33 Scanned in 00mn 00s



---\\ Recherche particuli�re � la racine du syst�me (SPRF) (O84)
[MD5.2454C2925CD337D3F3B75B3AC461321E] [SPRF][03/08/2011] (...) -- C:\ProgramData\B7C2A04DD6.sys   [88]
[MD5.8BA5DC34523A5311531F5F6ABE02AC44] [SPRF][03/08/2011] (...) -- C:\ProgramData\KGyGaAvL.sys   [5642]
[MD5.3168B86DCC7F39D688C75E78BFEFBB73] [SPRF][13/04/2011] (...) -- C:\ProgramData\NTUser.dat   [262144]
[MD5.3D45CE835587EA768A7F92AAB44EE9A1] [SPRF][28/08/2013] (.Pas de propri�taire - Installs Paint.NET..) -- C:\Users\utilisateur\AppData\Local\Temp\Paint.NET.3.5.11.Install.exe   [3765592]
[MD5.6FEFE556B83978570FD67DE8E70BC3B9] [SPRF][11/08/2013] (...) -- C:\Users\utilisateur\AppData\Local\Temp\s3r0rrdg.dll   [8192]
[MD5.BD60D250244F1333EC5906EA9B3F1309] [SPRF][16/07/2013] (.Datastead Sarl - Datastead TVideoGrabber Temp Data.) -- C:\Users\utilisateur\AppData\Local\Temp\vg8.5.2.47390.dat   [319488]
[MD5.16E53BFC96CE14021C0E07EB1C198478] [SPRF][13/03/2013] (...) -- C:\Users\utilisateur\AppData\Roaming\inst.exe   [99384]
[MD5.AF7CE12C4F3DC8CB2B07685C916BBCFE] [SPRF][13/03/2013] (.VSO Software - low level access layer for CD/DVD/BD devices.) -- C:\Users\utilisateur\AppData\Roaming\pcouffin.sys   [82816]
[MD5.AED97403AB4B396AAE9714B3B00ABE61] [SPRF][04/12/2012] (.Pas de propri�taire - Visualiser la taille des dossiers.) -- C:\Users\utilisateur\Desktop\TailleDoss.exe   [903641]
[MD5.EB24EDF485BA800603E93389F7EB0FE2] [SPRF][30/08/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\utilisateur\Desktop\ZHPDiag2.exe   [5076950]
[MD5.3FEA9D2EDF23B0283C7A66C8DEA380BD] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll   [24576]
[MD5.CDBE35EA59BC9223E4F800BD1DB82D27] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe   [196608]
[MD5.F1CD64DD3702BDCDFB0531BB21C6BEFC] [SPRF][21/06/2011] (.Adobe Systems, Inc. - Adobe� Flash� Player Installer/Uninstaller 10.3 r181.) -- C:\Windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe   [3123872]
[MD5.3F4413DCD8D3BBABF08F68F25E6D60E1] [SPRF][16/02/2005] (.InstallShield Software Corporation - InstallShield Update Service Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll   [401408]
~ Files: 14 Scanned in 00mn 00s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance � distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance � distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d�assistance � distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d�assistance � distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance � distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance � distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contr�leur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contr�leur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-syst�me spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-syst�me spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage imm�diat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage imm�diat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage imm�diat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage imm�diat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "NetPres-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus h�te de l�infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus h�te de l�infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe
O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe
O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe
O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe
O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe
O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe
O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteDesktop-UserMode-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-PeerDist-WSD-In" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-PeerDist-WSD-Out" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "SPPSVC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de la plateforme de protection logicielle Microsoft.) -- C:\Windows\system32\sppsvc.exe
O87 - FAEL: "SPPSVC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de la plateforme de protection logicielle Microsoft.) -- C:\Windows\system32\sppsvc.exe
O87 - FAEL: "VirtualPC-In-UDP-1" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te Virtual PC.) -- C:\Windows\System32\vpc.exe
O87 - FAEL: "VirtualPC-In-UDP-2" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te Virtual PC.) -- C:\Windows\System32\vpc.exe
O87 - FAEL: "VirtualPC-In-TCP-1" | In - None - P6 - TRUE | .(.Microsoft Corporation - Processus h�te Virtual PC.) -- C:\Windows\System32\vpc.exe
O87 - FAEL: "{971127C1-E378-4F1C-8BDE-69BEF4FF989D}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-syst�me spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "{59634EF3-82AE-4611-8E54-CC6829491922}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{79F7038E-993B-4C4F-841C-D7BF3729016C}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{0583A439-8F24-4866-B16F-51CF96E11491}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
O87 - FAEL: "{DBED4259-FA7F-4389-9704-3541651ACE58}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "{A2BC9314-E6B9-4565-B645-991AB9147FD6}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "{2A119240-7018-4CA3-89AB-6E07A36ABA88}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "{725572A5-30F0-4C5B-9321-6413B0BEED0D}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{1FE12840-BF7A-40A9-8A73-62076ED7586A}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{006AFA61-0DAF-485D-AAF5-803148641E1C}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{A40E4276-6362-452C-AFDD-379D577FB48D}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{43633B30-E203-4F25-B6FC-F9AA3B6BA432}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{D8E4CF58-3C45-4729-B187-516B81AD496E}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{85616B51-7152-48FF-B484-C73BFD9A48BC}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "{537BCA36-9D40-40B0-8480-B5901C91E726}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "{BF139CD6-3F8E-45B9-9DB8-26F0B886A8E7}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O87 - FAEL: "{3B580A27-282B-413E-8D52-834F8A2F1B9C}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{7C9E30EA-F023-4DE3-A4DD-1BE393A68646}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{0E6A2001-E9E3-4585-BAAB-37BD5D64254E}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{0011AB8A-073A-4F07-83B2-0FC60D63AC35}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{1B68697E-548A-4867-8589-90F95585D6A4}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{15431B06-5F77-49D9-9A55-8FCF92722D62}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{941E44D6-03D8-43AE-8F7F-80D6A9817533}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{28C808BF-FA60-45B5-998C-7CA1C7C7C774}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Installateur Windows�.) -- C:\Windows\SysWOW64\msiexec.exe
O87 - FAEL: "{FE27501A-F66C-4CB9-9C0A-7FD4ED7B13D9}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Installateur Windows�.) -- C:\Windows\SysWOW64\msiexec.exe
O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
~ Firewall: 201 Scanned in 00mn 01s



---\\ Enum�re les codes produits des logiciels (PUC) (O90)
O90 - PUC: "000021090200C0400000000000F01FEC" . (.Module de compatibilit� pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe
O90 - PUC: "05F188C7986AB0943950810DA1B6B0DB" . (.MAGIX Speed burnR (MSI).) -- C:\Windows\Installer\{7C881F50-A689-490B-9305-18D01A6B0BBD}\ProgramIcon.exe
O90 - PUC: "0A1149233F91047478F47104B021F672" . (.Nero Vision 10 Help (CHM).) -- C:\Windows\Installer\{329411A0-19F3-4740-874F-17400B126F27}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "0D00C83EB86A81348A6A7F4D5B1BFDE0" . (.Windows Media Encoder 9 Series.) -- C:\Windows\Installer\{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}\ARPIcon
O90 - PUC: "0D7146E5A06981C4C98BDD6787DB8B0D" . (.Srt2Sup a4.03.) -- C:\Windows\Installer\{5E6417D0-960A-4C18-9CB8-DD7678BDB8D0}\ARPPRODUCTICON.exe
O90 - PUC: "121E2D80A6F7BE3479DF26B944094330" . (.Microsoft_VC90_CRT_x86.) -- C:\Windows\Installer\{08D2E121-7F6A-43EB-97FD-629B44903403}\ARPPRODUCTICON.exe
O90 - PUC: "19DA96544F74E9D4F89C17E73CD2A71E" . (.Microsoft_VC80_CRT_x86_x64.) -- C:\Windows\Installer\{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}\ARPPRODUCTICON.exe
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "1EDA038853D12E117BAC0FD42AA3C585" . (.Vegas Pro 12.0 (64-bit).) -- C:\Windows\Installer\{8830ADE1-1D35-11E2-B7CA-F04DA23A5C58}\vegas.ico
O90 - PUC: "20B91A1DE71869244AB57058F37DD475" . (.Microsoft_VC80_MFC_x86.) -- C:\Windows\Installer\{D1A19B02-817E-4296-A45B-07853FD74D57}\ARPPRODUCTICON.exe
O90 - PUC: "25BBB29DFF28DE24A8C3E460F249A47B" . (.Microsoft_VC80_MFCLOC_x86.) -- C:\Windows\Installer\{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}\ARPPRODUCTICON.exe
O90 - PUC: "28C52CBBE8EF43A9709B1F2878E944DC" . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{BBC25C82-FE8E-9A34-07B9-F182879E44CD}\ARPPRODUCTICON.exe
O90 - PUC: "2CB371567E068ED46AD18AF1BC69EE39" . (.Pinnacle Studio Ultimate Plugins.) -- C:\Windows\Installer\{65173BC2-60E7-4DE8-A61D-A81FCB96EE93}\ARPPRODUCTICON.exe
O90 - PUC: "31D29AA7A7B89B841BD8465546AF2D85" . (.Nero Vision Xtra.) -- C:\Windows\Installer\{7AA92D13-8B7A-48B9-B18D-645564FAD258}\ARPPRODUCTICON.exe
O90 - PUC: "349DB9C8710267E79D54FD20FD19D969" . (.Catalyst Control Center Core Implementation.) -- C:\Windows\Installer\{8C9BD943-2017-7E76-D945-DF02DF919D96}\ARPPRODUCTICON.exe
O90 - PUC: "36CC4731025Bf3f4898E9E20B00FC1FF" . (.Windows XP Mode.) -- C:\Windows\Installer\{1374CC63-B520-4f3f-98E8-E9020BF01CFF}\vxp_ico
O90 - PUC: "377E84760AD591D4A85A72B314330AB9" . (.SmartSound Quicktracks for Premiere Elements 9.0.) -- C:\Windows\Installer\{6748E773-5DA0-4D19-8AA5-273B4133A09B}\ARPPRODUCTICON.exe
O90 - PUC: "395A99D2148C7A347B9C6D3FEA077B65" . (.Nokia Connectivity Cable Driver.) -- C:\Windows\Installer\{2D99A593-C841-43A7-B7C9-D6F3AE70B756}\ARPPRODUCTICON.exe
O90 - PUC: "3B9F2E15279A85F44BFED469679D5F1D" . (.Nero RescueAgent.) -- C:\Windows\Installer\{51E2F9B3-A972-4F58-B4EF-4D9676D9F5D1}\ARPPRODUCTICON.exe
O90 - PUC: "467B7D4A04144D1188BE0005AD53970C" . (.Nero - Burning Rom.) -- C:\Windows\Installer\{A4D7B764-4140-11D4-88EB-0050DA3579C0}\ARPPRODUCTICON.exe
O90 - PUC: "4C7F373C2D507404691DA63F60166CAA" . (.PC Connectivity Solution.) -- C:\Windows\Installer\{C373F7C4-05D2-4047-96D1-6AF30661C6AA}\ARPPRODUCTICON.exe
O90 - PUC: "4CA0853C728C23349B53A982E25DBB79" . (.Nero Dolby Files 10.) -- C:\Windows\Installer\{C3580AC4-C827-4332-B935-9A282ED5BB97}\ARPPRODUCTICON.exe
O90 - PUC: "4E9B274AFFA0B7F42BD56FF4E829A8BA" . (.Microsoft_VC90_MFC_x86_x64.) -- C:\Windows\Installer\{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}\ARPPRODUCTICON.exe
O90 - PUC: "528F497B6ABBBB4C974CCC56C71A03AA" . (.Catalyst Control Center Graphics Previews Vista.) -- C:\Windows\Installer\{B794F825-BBA6-C4BB-79C4-CC657CA130AA}\ARPPRODUCTICON.exe
O90 - PUC: "5426BE430D8CA8D48B8DEEFB7F9A4158" . (.Firebird SQL Server - MAGIX Edition.) -- C:\Windows\Installer\{34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}\ProgramIcon.exe
O90 - PUC: "5DAB1C8C6E456414DA70A3A83D56963C" . (.Microsoft_VC80_MFC_x86_x64.) -- C:\Windows\Installer\{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}\ARPPRODUCTICON.exe
O90 - PUC: "5F30FE2770501684A9449DF94D4C4181" . (.Paint.NET v3.5.11.) -- C:\Windows\Installer\{72EF03F5-0507-4861-9A44-D99FD4C41418}\_853F67D554F05449430E7E.exe
O90 - PUC: "627A71AF922B61147B392ABAA1E4EAE2" . (.Adobe Premiere Pro 2.0.) -- C:\Windows\Installer\{FA17A726-B229-4116-B793-A2AB1A4EAE2E}\ARPPRODUCTICON.exe
O90 - PUC: "62D1BF45F8BCC7B2B12243A41A98F61E" . (.Catalyst Control Center Graphics Full Existing.) -- C:\Windows\Installer\{54FB1D26-CB8F-2B7C-1B22-344AA1896FE1}\ARPPRODUCTICON.exe
O90 - PUC: "68AB67CA7DA76301B744AA0100000010" . (.Adobe Reader X (10.1.4) - Fran�ais.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SC_Reader.ico
O90 - PUC: "6D755E54172231F418106C024B82A50B" . (.Kaspersky Internet Security 2012.) -- C:\Windows\Installer\{45E557D6-2271-4F13-8101-C620B4285AB0}\setup2.ico
O90 - PUC: "72097071A8BE6C24B98F28B58788F9A6" . (.Garmin Communicator Plugin.) -- C:\Windows\Installer\{17079027-EB8A-42C6-9BF8-825B78889F6A}\GarminSetup.ico
O90 - PUC: "72788EEDB9779A74CAFE8FC75A9FA256" . (.ScanSoft OmniPage SE 4.) -- C:\Windows\Installer\{DEE88727-779B-47A9-ACEF-F87CA5F92A65}\ARPPRODUCTICON.exe
O90 - PUC: "7D2BEC16B3D874247BE59AF566999BA0" . (.Adobe After Effects 6.5.) -- C:\Windows\Installer\{61CEB2D7-8D3B-4247-B75E-A95F6699B90A}\ARPPRODUCTICON.exe
O90 - PUC: "7D40C8B42E74B0BA5B3756988363DA01" . (.ccc-core-static.) -- C:\Windows\Installer\{4B8C04D7-47E2-AB0B-B573-65893836AD10}\ARPPRODUCTICON.exe
O90 - PUC: "811CF9E1D156439479EB5EC3EAC5D754" . (.Microsoft_VC80_MFCLOC_x86_x64.) -- C:\Windows\Installer\{1E9FC118-651D-4934-97BE-E53CAE5C7D45}\ARPPRODUCTICON.exe
O90 - PUC: "824E4CCCE11450645B5113D705BA4D77" . (.Ulead DVD MovieFactory 6.) -- C:\Windows\Installer\{CCC4E428-411E-4605-B515-317D50ABD477}\ARPPRODUCTICON.exe
O90 - PUC: "82A5116C772F28E40B76482DB82F0163" . (.Nero 7 Premium.) -- C:\Windows\Installer\{C6115A28-F277-4E82-B067-84D28BF21036}\ARPPRODUCTICON.exe
O90 - PUC: "854CC80EBF145BB4B980C238BD555A9B" . (.Nero BackItUp and Burn.) -- C:\Windows\Installer\{E08CC458-41FB-4BB5-9B08-2C83DB55A5B9}\ARPPRODUCTICON.exe
O90 - PUC: "85A5AC4B9572FCF7F49159E250BF4A39" . (.ATI AVIVO64 Codecs.) -- C:\Windows\Installer\{B4CA5A58-2759-7FCF-4F19-952E05FBA493}\ARPPRODUCTICON.exe
O90 - PUC: "88A43AC7B13269D4EA21BD0E44916DD2" . (.MAGIX Goya burnR (MSI).) -- C:\Windows\Installer\{7CA34A88-231B-4D96-AE12-DBE04419D62D}\ProgramIcon.exe
O90 - PUC: "8DCAE3347474A6A428A6FF9A3FB9D004" . (.Elements 9 Organizer.) -- C:\Windows\Installer\{433EACD8-4747-4A6A-826A-FFA9F39B0D40}\ARPPRODUCTICON.exe
O90 - PUC: "8F5599BEC764CF74098F21DCD56F483C" . (.Adobe Premiere Elements 9.) -- C:\Windows\Installer\{EB9955F8-467C-47FC-90F8-12CD5DF684C3}\ARPPRODUCTICON.exe
O90 - PUC: "8F7463F0D15ECCF48826A9D8C0A5FC52" . (.Microsoft_VC80_ATL_x86.) -- C:\Windows\Installer\{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}\ARPPRODUCTICON.exe
O90 - PUC: "915681EC43D95AB3C4BAC843751DF856" . (.Catalyst Control Center Graphics Full New.) -- C:\Windows\Installer\{CE186519-9D34-3BA5-4CAB-8C3457D18F65}\ARPPRODUCTICON.exe
O90 - PUC: "91785D291CBB3CC40AB8659C8E48CCC2" . (.Microsoft_VC80_CRT_x86.) -- C:\Windows\Installer\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}\ARPPRODUCTICON.exe
O90 - PUC: "9322D015E2C6B754590984E55C259DD4" . (.Garmin USB Drivers.) -- C:\Windows\Installer\{510D2239-6C2E-457B-9590-485EC552D94D}\GarminSetup.ico
O90 - PUC: "9B8BD42DC6BB43346991ABC156E0313D" . (.Microsoft Primary Interoperability Assemblies 2005.) -- C:\Windows\Installer\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}\[SystemFolder]msiexec.exe
O90 - PUC: "9F2FDFE0D6387BE43AD230B83D1FBFA2" . (.Security Update for CAPICOM (KB931906).) -- C:\Windows\Installer\{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}\folder.ico
O90 - PUC: "9F745687BB953AF42B8D23F71F1F8407" . (.Adobe Flash Player 9 ActiveX.) -- C:\Windows\Installer\{786547F9-59BB-4FA3-B2D8-327FF1F14870}\ARPPRODUCTICON.exe
O90 - PUC: "A9A9BC85BFE18AE45BC003797E45CA12" . (.High-Definition Video Playback.) -- C:\Windows\Installer\{58CB9A9A-1EFB-4EA8-B50C-3097E754AC21}\ARPPRODUCTICON.exe
O90 - PUC: "B1B2B325BD8D14B409FF4C7D992E57A8" . (.Nero ControlCenter 10 Help (CHM).) -- C:\Windows\Installer\{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "B5DEF536D6C2EB94786EA7F6DC22CBA5" . (.Microsoft_VC90_MFC_x86.) -- C:\Windows\Installer\{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}\ARPPRODUCTICON.exe
O90 - PUC: "B850D529A465A3444B2BE7096C34E255" . (.Microsoft_VC80_ATL_x86_x64.) -- C:\Windows\Installer\{925D058B-564A-443A-B4B2-7E90C6432E55}\ARPPRODUCTICON.exe
O90 - PUC: "B8D5DAF22E65D4C18EE4DE61C2234D5C" . (.Catalyst Control Center Graphics Light.) -- C:\Windows\Installer\{2FAD5D8B-56E2-1C4D-E84E-ED162C32D4C5}\ARPPRODUCTICON.exe
O90 - PUC: "BAE3AA36BB322B84A90D448F87706540" . (.Nero 10 Menu TemplatePack Basic.) -- C:\Windows\Installer\{63AA3EAB-23BB-48B2-9AD0-44F878075604}\ARPPRODUCTICON.exe
O90 - PUC: "C040211900063D11C8EF10054038389C" . (.Microsoft Office Standard Edition 2003.) -- C:\Windows\Installer\{9112040C-6000-11D3-8CFE-0150048383C9}\misc.exe,6
O90 - PUC: "C468AE28C97EDCC4B925CEF61762380C" . (.TMPGEnc Authoring Works 5 Trial Version.) -- C:\Windows\Installer\{82EA864C-E79C-4CCD-9B52-EC6F712683C0}\TAW5Main
O90 - PUC: "C59F0240FF1120E49B76C62CB281F8F9" . (.Nero BackItUp.) -- C:\Windows\Installer\{0420F95C-11FF-4E02-B967-6CC22B188F9F}\ARPPRODUCTICON.exe
O90 - PUC: "C739C79E12EAD354680A2A130557341D" . (.ACID Music Studio 8.0.) -- C:\Windows\Installer\{E97C937C-AE21-453D-86A0-A231507543D1}\musicstudio80.ico
O90 - PUC: "C7937558D24AF684793B2ABC2C735239" . (.Microsoft_VC90_ATL_x86_x64.) -- C:\Windows\Installer\{8557397C-A42D-486F-97B3-A2CBC2372593}\ARPPRODUCTICON.exe
O90 - PUC: "CA7FC3C60BA59D24390C8661A675FA6B" . (.Nero Express.) -- C:\Windows\Installer\{6C3CF7AC-5AB0-42D9-93C0-68166A57AFB6}\ARPPRODUCTICON.exe
O90 - PUC: "CEEF540E626EB5843A16D25ACC6260AD" . (.MAGIX Screenshare.) -- C:\Windows\Installer\{E045FEEC-E626-485B-A361-2DA5CC2606DA}\ProgramIcon.exe
O90 - PUC: "D043B4370C3DA4282EA6BB7BE8211AA6" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{734B340D-D3C0-824A-E26A-BBB78E12A16A}\ARPPRODUCTICON.exe
O90 - PUC: "D0AC3A29DC55D5C4AB59C562002CF062" . (.Microsoft_VC90_CRT_x86_x64.) -- C:\Windows\Installer\{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}\ARPPRODUCTICON.exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "DD7870663B8676E40937A466DDA71D39" . (.ASUS VGA Driver.) -- C:\Windows\Installer\{660787DD-68B3-4E67-9073-4A66DD7AD193}\ARPPRODUCTICON.exe
O90 - PUC: "DDD814BE56351834786F8DBB2BC11CAC" . (.Garmin Communicator Plugin x64.) -- C:\Windows\Installer\{EB418DDD-5365-4381-87F6-D8BBB21CC1CA}\GarminSetup.ico
O90 - PUC: "DF3AB8F29AF197246B6917A2BB210FF9" . (.SmartSound Quicktracks 5.) -- c:\Windows\Installer\{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}\ARPPRODUCTICON.exe
O90 - PUC: "DF6C169A385C6F540A4AE534672CE914" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{A961C6FD-C583-45F6-A0A4-5E4376C29E41}\ARPPRODUCTICON.exe
O90 - PUC: "E5E5DF7FC0F31394AAB1AE8B83CB20BD" . (.ACID Pro 7.0.) -- C:\Windows\Installer\{F7FD5E5E-3F0C-4931-AA1B-EAB838BC02DB}\acid70.ico
O90 - PUC: "E873E3303DA65DA4DBBEBC6DB91340C6" . (.Microsoft_VC90_ATL_x86.) -- C:\Windows\Installer\{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}\ARPPRODUCTICON.exe
O90 - PUC: "E9682A8BAC035C04C98FDB37455EE78F" . (.SmartSound Common Data.) -- c:\Windows\Installer\{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}\ARPPRODUCTICON.exe
O90 - PUC: "EA615793EFD709F4480EDB16D6554943" . (.Nero BurnRights.) -- C:\Windows\Installer\{397516AE-7DFE-4F90-84E0-BD616D559434}\ARPPRODUCTICON.exe
O90 - PUC: "EB10EA04092ABFF4D8BA6C421CD78CE7" . (.Vegas Movie Studio HD Platinum 10.0.) -- C:\Windows\Installer\{40AE01BE-A290-4FFB-8DAB-C624C17DC87E}\vegasmoviestudiope.ico
O90 - PUC: "EB57730A6CA8E8E48AA01D213E376D2E" . (.Movie Joiner v4.) -- C:\Windows\Installer\{A03775BE-8AC6-4E8E-A80A-D112E373D6E2}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "F228BC5F563B1D34CB0CF4ADA102717A" . (.Nero 10 Movie ThemePack Basic.) -- C:\Windows\Installer\{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}\ARPPRODUCTICON.exe
O90 - PUC: "F44BAC9188F21BCB78C3A0AA042EEC17" . (.ccc-utility64.) -- C:\Windows\Installer\{19CAB44F-2F88-BCB1-873C-0AAA40E2CE71}\ARPPRODUCTICON.exe
O90 - PUC: "F8AACF203D95891428E231C516EEF4B0" . (.NeroKwikMedia Help (CHM).) -- C:\Windows\Installer\{02FCAA8F-59D3-4198-822E-135C61EE4F0B}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "F998BFD62A710F845A33DED88666FC83" . (.Nero Control Center 10.) -- C:\Windows\Installer\{6DFB899F-17A2-48F0-A533-ED8D6866CF38}\ARPPRODUCTICON.exe
O90 - PUC: "FC59644464DDFD11F8400005650C0080" . (.ACID Xpress 7.0.) -- C:\Windows\Installer\{444695CF-DD46-11DF-8F04-005056C00008}\acidxpress70.ico
~ Update Products: 159 Scanned in 00mn 00s



---\\ Enum�re les donn�es de la cl� NameSpace (MNS) (O92)
O92 - MNS: Dossier partag� de l'Environnement Prot�g� - {047DDC7E-F9C2-11DD-A093-79D855D89593}
~ MNS: 1 Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.4A17F9353769A5A78126266967182591] [WIS][21/09/2012] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\166d2b.msi   [25600]
[MD5.331AE887B363263F0E05A4BB0FBAD9D7] [WIS][20/07/2013] (.Default Manufacturer - Substation Alpha 4.08.) -- C:\Windows\Installer\4bb4b4.msi   [2310144]
[MD5.343AB689356F9743410D4F5CA67DA8C3] [WIS][27/07/2013] (.Pegasys Inc. - TMPGEnc Authoring Works 5 Trial Version Installer.) -- C:\Windows\Installer\997729.msi   [216215552]
[MD5.3E83558BBB628DE256FAF0939F789418] [WIS][28/07/2012] (.Dejan Pelzel - Kijio Subtitle Editor.) -- C:\Windows\Installer\c671db.msi   [214528]
~ WIS: 22 Scanned in 00mn 05s



---\\ Etat g�n�ral des services not Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 25/04/2012 72704 |  (Adobe LM Service) . (.Adobe Systems.) - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
SR - | Auto 30/09/2010 169408 |  (AdobeActiveFileMonitor9.0) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
SR - | Auto 27/07/2012 63960 |  (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 11/12/2009 202752 |  (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 29/10/2012 206448 |  (AVP) . (.Kaspersky Lab ZAO.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
SR - | Auto 11/08/2006 200704 |  (Capture Device Service) . (.InterVideo Inc..) - C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
SR - | Auto 27/08/2009 1253376 |  (Fabs) . (.MAGIX AG.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
SS - | Demand 07/08/2008 3276800 |  (FirebirdServerMAGIXInstance) . (.MAGIX�.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe
SR - | Auto 07/09/2012 100864 |  (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
SS - | Auto 00\00\0000 0 |  (gupdate) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 00\00\0000 0 |  (gupdatem) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 03/04/2005 69632 |  (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
SR - | Auto 20/12/2010 325656 |  (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SS - | Demand 18/06/2013 117144 |  (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 08/04/2008 800040 |  (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
SS - | Demand 22/01/2008 275752 |  (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
SR - | Auto 19/12/2006 81920 |  (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc..) - C:\Windows\SysWOW64\IoctlSvc.exe
SS - | Demand 08/06/2011 633856 |  (ServiceLayer) . (.Nokia.) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
SR - | Auto 18/01/2012 450848 |  (UMVPFSrv) . (.Logitech Inc..) - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
SR - | Auto 20/12/2010 2656280 |  (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 00\00\0000 0 |  (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services:  Scanned in 00mn 07s



---\\ Recherche dinfection sur le Master Boot Record (MBR)(O80)
Run by utilisateur at 30/08/2013 14:09:43
~ OS 64 not supported by MBR tool
~ MBR: 0 Scanned in 00mn 00s



---\\ Recherche dinfection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by utilisateur at 30/08/2013 14:09:45

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR:  Scanned in 00mn 02s



---\\ Scan Additionnel (O88)
Database Version : v2.12869 - (29/08/2013)
Cl�s trouv�es (Keys found) : 4
Valeurs trouv�es (Values found) : 0
Dossiers trouv�s  (Folders found) : 2
Fichiers trouv�s  (Files found) : 3

[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion]   =>Toolbar.Yahoo^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375]   =>Toolbar.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5]   =>Toolbar.Tarma
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion]   =>Toolbar.Yahoo
C:\Program Files (x86)\Yahoo!   =>Toolbar.Yahoo^
C:\ProgramData\Yahoo! Companion   =>Toolbar.Yahoo^
[HKCU\Software\yahoo]   =>Toolbar.Yahoo^
[HKLM\Software\Wow6432Node\Yahoo]   =>Toolbar.Yahoo^
C:\Users\utilisateur\Dhoom 2 lyrics  Crazy.txt   =>Adware.AddLyrics^
~ Additionnel Scan: 359656 Items scanned in 00mn 17s



---\\ R�capitulatif des d�tections trouv�es sur votre station
~ http://nicolascoolman.webs.com26611092-adware-bandoo  =>Adware.Bandoo
~ http://nicolascoolman.webs.com30319724-pup-searchresults   =>PUP.SearchResults
~ http://nicolascoolman.webs.com30268689-toolbar-yahoo   =>Toolbar.Yahoo
~ http://nicolascoolman.webs.com26601058-adware-addlyrics  =>Adware.AddLyrics
~ http://nicolascoolman.webs.com29637859-toolbar-tarma   =>Toolbar.Tarma
~ MSI: 5 link(s) detected in 00mn 17s



End of the scan (2557 lines in 03mn 48s)(0)