~ Rapport de ZHPDiag v2013.9.8.161 - Nicolas Coolman (08/09/2013) ~ Lancé par admin (08/09/2013 08:59:08) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Traduit par Nicolas Coolman ~ Etat de la version : Nouvelle version disponible ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Activate by user ---\\ Navigateurs Internet MSIE: Internet Explorer v10.0.9200.16660 MFIE: Mozilla Firefox 23.0.1 (Defaut) GCIE: Google Chrome v29.0.1547.66 ---\\ Informations sur les produits Windows ~ Langage: Français Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 7QJB7 Windows License : OK ~ Windows Remaining Initializations Number : 2 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection du système avast! Antivirus 8.0.1483.72 v8.0.1483.72 Malwarebytes Anti-Malware version 1.75.0.1300 Windows Defender W7 ---\\ Logiciels d'optimisation du système ---\\ Logiciels de partage PeerToPeer Pando Media Booster v2.6.0.9 µTorrent v2.2.1 =>P2P.µTorrent ---\\ Surveillance de Logiciels Adobe Flash Player 11 Plugin Adobe Reader XI Java 7 Update 25 Java 7 Update 25 ---\\ Informations sur le système ~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 3947 MB (66% free) System Restore: Activé (Enable) System drive C: has 105 GB (11%) free of 913 GB ---\\ Mode de connexion au système ~ Computer Name: ADMIN-PC ~ User Name: admin ~ All Users Names: UpdatusUser, Administrateur, admin, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppData% : C:\Users\admin\AppData\Roaming\ ~ %Desktop% : C:\Users\admin\Desktop\ ~ %Favorites% : C:\Users\admin\Favorites\ ~ %LocalAppData% : C:\Users\admin\AppData\Local\ ~ %StartMenu% : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C:\ Hard drive, Flash drive, Thumb drive (Free 105 Go of 913 Go) D:\ CD-ROM drive (Not Inserted) E:\ CD-ROM drive (Not Inserted) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 34 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.14/07/2011 - 02:30:29.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.AC155DD9BD1E6D3B740826A4D1C68AAE] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/07/2013 - 02:13:37.) -- C:\Windows\System32\wininet.dll [2241024] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.21/11/2010 - 00:24:29.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 00:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 00:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.14/07/2011 - 02:33:59.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 00:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 11:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 00:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/1880 ~ Mes musiques (My Musics) : 3/31250 ~ Mes Videos (My Videos) : 1/69229 ~ Mes Favoris (My Favorites) : 1/20 ~ Mes Documents (My Documents) : 3/7247 ~ Mon Bureau (My Desktop) : 1/51 ~ Menu demarrer (Programs) : 1/35 ~ Hidden Files: Scanned in 00mn 51s ---\\ Processus lancés au démarrage du système [MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.3008] [MD5.DE5E31A393C7F10DDD32EE2251999736] - (.NVIDIA Corporation - NVIDIA Update COM object.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe [1205024] [PID.1084] [MD5.D5D8D0D64F410B9F05E2BC00EC92EFC2] - (.CyberLink Corp. - clear.fi Resident Program.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [120104] [PID.3396] [MD5.61B6FB932CF78CAB7A1EF9F118A1A38E] - (.CyberLink - DMREngine.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [169352] [PID.3908] [MD5.9ABC4E3B00CFA3A47D5569F5B49FE42F] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1103440] [PID.4864] [MD5.3F11B20D12D89365D7721BDC860CE5F0] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4858968] [PID.4960] [MD5.A824317EA303679481EF1039A5D66212] - (.Dritek System Inc. - Launch Manager Worker.) -- C:\Program Files (x86)\Launch Manager\LMworker.exe [343632] [PID.4344] [MD5.B4CF3FB7E9B8EA69757541DCE6CA20ED] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [276376] [PID.5680] [MD5.D474767D4805CEF801AF6D4AEED1F9E3] - (.CyberLink Corp. - clear.fi Movie Resident Program.) -- C:\PROGRAM FILES (X86)\ACER\CLEAR.FI\MOVIE\CLEAR.FIMOVIESERVICE.exe [177448] [PID.3788] [MD5.9D51EA92A612B37E76E5E4621650C50A] - (.Renesas Electronics Corporation - USB 3.0 Monitor.) -- C:\PROGRAM FILES (X86)\RENESAS ELECTRONICS\USB 3.0 HOST CONTROLLER DRIVER\APPLICATION\NUSB3MON.exe [113288] [PID.4124] [MD5.4A80B3C030178E65CF0BECFF1BB20905] - (.Egis Technology Inc. - SuiteTray.) -- C:\PROGRAM FILES (X86)\EGISTEC MYWINLOCKERSUITE\X86\SUITETRAY.exe [341360] [PID.3280] [MD5.384366C69DF4C11133915C3315F541CC] - (.NVIDIA Corporation - NVIDIA NvTmru Application.) -- C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVIDIA UPDATE CORE\NVTMRU.exe [1028896] [PID.5332] [MD5.78185A1C861FA7AD6BE016D54D050119] - (.IObit - ASCTray.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe [491840] [PID.6012] [MD5.A4396FDB34ECCE391705AB2BB7410801] - (.IObit - Advanced SystemCare 6.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASC.exe [4057920] [PID.1592] [MD5.C47545C4941F205DA99ABD4259C63F94] - (.IObit - Monitors and Optimizes memory usage to incr.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\Suo10_SmartRAM.exe [547648] [PID.6328] [MD5.9F4D4DE9AEB879EC99ED65E27859E0C3] - (.IObit - Advanced SystemCare 6 Monitor.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe [732992] [PID.4684] [MD5.AE1000342401A81F2C2679E78C053F94] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7914496] [PID.3036] [MD5.28D6701C710AD7BA3CB95E75F8F1A9AA] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808] [PID.1360] [MD5.C2009C6A452BD07B30D773349589B762] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [137960] [PID.1488] [MD5.ADDA5E1951B90D3D23C56D3CF0622ADC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640] [PID.2028] [MD5.9DD3A22F804697606C2B7FF9E912FF6B] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe [353360] [PID.1384] [MD5.21ACFD2B4BF6C0F4D9080A437E400E88] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe [418896] [PID.1468] [MD5.C9B2D1D3F86FD3673EF847DEF73B6F9E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [36456] [PID.1088] [MD5.93B73DED2BC688F140C6AE2FBAD45789] - (.Acer Incorporated - Updater Service.) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe [255376] [PID.2064] [MD5.65085456FD9A74D7F1A999520C299ECB] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376] [PID.2132] [MD5.E0D7732F2D2E24B2DB3F67B6750295B8] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512] [PID.2152] [MD5.7EBD1C0DFB45AA88338572AF06A249AC] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\Windows\SysWOW64\NLSSRV32.exe [70152] [PID.2208] [MD5.1873214666F6F0A883742DF91FBC48C9] - (.NTI Corporation - Backup Manager Module.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832] [PID.2368] [MD5.7BAB808957880CF38EFC6816FEF7276E] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1887520] [PID.2336] [MD5.3A2E85F7D90D15460C337CE80C2E3B29] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [76888] [PID.1764] [MD5.BB1842E3AA602B401F7692718B0D0F9A] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536] [PID.2756] [MD5.E79A8E33BD136D14BAE1FA20EB2EF124] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13592] [PID.3464] [MD5.D75C4B4A8FE6D7FD74A7EECDBAEC729F] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [326168] [PID.3436] [MD5.758C2CE427C343F780A205E28555C98D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2656280] [PID.5488] [MD5.9243229DFCCC99B5441750EBA49F1B14] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [574272] [PID.1016] ~ Processes Running: Scanned in 00mn 01s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G0 - GCSP: Preference [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preference [User Data\Default] http://www.google.com G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Store v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Documents Google v.0.5 (Activé) G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] GoogleDrive v.6.3 (Activé) G2 - GCE: Preference [User Data\Default] [bgfohalbfmchdecfepbgiiabmbfgejji] Search in New tab v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé) G2 - GCE: Preference [User Data\Default] [chmachfiimeggafocgeldapnchdnoiib] Striker Manager v.5 (Activé) G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé) G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock v.2.6.6, (Activé) G2 - GCE: Preference [User Data\Default] [jfppgkomfopklagggkjiaddgndkgopgl] GoogleTraduction pour Google+ v.1.1.7 (Activé) G2 - GCE: Preference [User Data\Default] [kigfdicgjnpjkhbnngdfgjfffmdaonfg] Hatsune Miku v.2 (Activé) G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [nfecfkjnlkbphobjbcnphimihniieehc] Advanced SystemCare Surfing Protection v.1.0.0 (Activé) G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Chrome In-App Payments service v.0.0.4.10 (Activé) G2 - GCE: Preference [User Data\Default] [okanipcmceoeemlbjnmnbdibhgpbllgc] GoogleQuickScroll v.2.1.2, (Activé) G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé) ~ Google Browser: 21 Scanned in 00mn 08s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\9vn8wrd9.default\prefs.js C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\ir9taqjk.default\prefs.js C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\twawqmas.default-1375835885467\prefs.js M0 - MFSP: prefs.js [admin - 9vn8wrd9.default] www.google.fr M2 - MFEP: prefs.js [admin - 9vn8wrd9.default\ascsurfingprotection@iobit.com] [] Advanced SystemCare Surfing Protection v1.0 (..) M2 - MFEP: prefs.js [admin - ir9taqjk.default\ascsurfingprotection@iobit.com] [] Advanced SystemCare Surfing Protection v1.0 (..) M2 - MFEP: prefs.js [admin - twawqmas.default-1375835885467\ascsurfingprotection@iobit.com] [] Advanced SystemCare Surfing Protection v1.0 (..) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.25.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Windows\system32\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.25.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.25.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20513.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.7] - (.VideoLAN - VLC media player Web Plugin 2.0.6.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKCU] [pandonetworks.com/PandoWebPlugin] - (.Pando Networks - Pando Web Plugin.) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll ~ Firefox Browser: 12 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)) -- C:\Windows\SysWOW64\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 16 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: IESpeakDoc [64Bits] - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} . (.Atheros Commnucations - Bluetooth IE PlugIn.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Programme d’aide de l’Assistant de connexion au compte Microsoft [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Advanced SystemCare Browser Protection [64Bits] - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} . (.IObit - Pas de description.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASCPlugin_Protection.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: (no name) [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline ~ BHO: 10 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [IntelTBRunOnce] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.) O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe O4 - HKLM\..\Run: [RtHDVBg_Dolby] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe O4 - HKLM\..\Run: [Power Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe O4 - HKLM\..\Run: [AtherosBtStack] . (.Atheros Communications - Serveur Stack Bluetooth.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\btvstack.exe O4 - HKLM\..\Run: [AthBtTray] . (.Atheros Commnucations - Bluetooth Tray.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\athbttray.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O4 - HKCU\..\Run: [Advanced SystemCare 6] . (.IObit - ASCTray.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe O4 - HKLM\..\Wow6432Node\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] . (.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-19\..\RunOnce: [IsMyWinLockerReboot] . (.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [IsMyWinLockerReboot] . (.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe O4 - HKUS\S-1-5-21-1442920633-1222716461-456443989-1007\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-1442920633-1222716461-456443989-1007\..\Run: [Advanced SystemCare 6] . (.IObit - ASCTray.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe O4 - HKUS\S-1-5-21-1442920633-1222716461-456443989-1007\..\Run: [NeXuS] c:\program files (x86)\winstep\nexus.exe (.not file.) O4 - HKUS\S-1-5-21-1442920633-1222716461-456443989-1007\..\Run: [Rainlendar2] c:\program files (x86)\rainlendar2\rainlendar2.exe (.not file.) O4 - HKUS\S-1-5-21-1442920633-1222716461-456443989-1007\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O4 - HKUS\S-1-5-21-1442920633-1222716461-456443989-1007\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper (buildbot_winslav.) -- C:\Program Files (x86)\Steam\Steam.exe O4 - HKUS\S-1-5-21-1442920633-1222716461-456443989-1007\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-1442920633-1222716461-456443989-1007\..\RunOnce: [ScrSav] . (.Pas de propriétaire - run_NB Application.) -- C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe ~ Application: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: Advanced SystemCare 6.lnk . (.IObit - Advanced SystemCare 6.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASC.exe O4 - GS\Desktop [Public]: AutoCAD 2010 - Français.lnk . (...) -- C:\Program Files (x86)\AutoCAD 2010\acad.exe (.not file.) O4 - GS\Desktop [Public]: Autodesk Design Review.lnk . (.Autodesk, Inc. - Autodesk Design Review.) -- C:\Program Files (x86)\Autodesk\Autodesk Design Review\DesignReview.exe O4 - GS\Desktop [Public]: DAEMON Tools Lite.lnk . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O4 - GS\Desktop [Public]: ExtremeCopy Pro.lnk . (...) -- C:\Program Files (x86)\Easersoft\ExtremeCopy\ExtremeCopy.exe (.not file.) O4 - GS\Desktop [Public]: Flash Renamer.lnk . (.RL Vision - Flash Renamer.) -- C:\Program Files (x86)\Flash Renamer\FlashRen.exe O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe O4 - GS\Desktop [Public]: Nitro Pro 8.lnk . (...) -- C:\Program Files (x86)\Nitro\Pro 8\NitroPDF.exe O4 - GS\Desktop [Public]: Play League of Legends.lnk . (...) -- C:\Riot Games\League of Legends\lol.launcher.exe O4 - GS\Desktop [Public]: Recuva.lnk . (.Piriform Ltd - Recuva.) -- C:\Program Files\Recuva\recuva64.exe O4 - GS\Desktop [Public]: Smart Defrag 2.lnk . (.IObit - Smart Defrag v2.) -- C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe O4 - GS\Desktop [Public]: Speccy.lnk . (.Piriform Ltd - Speccy.) -- C:\Program Files\Speccy\Speccy64.exe O4 - GS\Desktop [Public]: Uninstaller.lnk . (.IObit - Uninstall Programs.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 6\Suc10_Uninstal.exe O4 - GS\Desktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.0.7.) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe O4 - GS\Desktop [Public]: WinRAR.lnk . (.Alexander Roshal - WinRAR archiver.) -- C:\Program Files (x86)\WinRAR\WinRAR.exe O4 - GS\Desktop [Public]: World of Warcraft.lnk . (.Blizzard Entertainment - World of Warcraft Setup.) -- C:\Program Files (x86)\World of Warcraft\World of Warcraft Launcher.exe O4 - GS\Desktop [Public]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe O4 - GS\Desktop [Public]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe O4 - GS\Programs [UpdatusUser]: Microsoft SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive Setup.) -- C:\Program Files (x86)\Microsoft SkyDrive\SkyDriveSetup.exe O4 - GS\Accessories [UpdatusUser]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe O4 - GS\SendTo [UpdatusUser]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe O4 - GS\Desktop [UpdatusUser]: THE Rename.lnk . (.Hervé Thouzard - Give you the possibility to rename files wi.) -- C:\Program Files (x86)\THE Rename\rename.exe O4 - GS\Desktop [UpdatusUser]: Virtual DJ Pro.lnk . (.Atomix Productions - VirtualDJ.) -- C:\Program Files (x86)\VirtualDJ\virtualdj_pro.exe O4 - GS\TaskBar [admin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\TaskBar [admin]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\TaskBar [admin]: jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) -- C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\TaskBar [admin]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\TaskBar [admin]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) -- C:\Program Files (x86)\Acer\Welcome Center\OEMWelcomeCenter.exe O4 - GS\TaskBar [admin]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe O4 - GS\TaskBar [admin]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O4 - GS\Programs [admin]: DC Universe Online.lnk . (.Sony Online Entertainment - Sony Online Entertainment LaunchPad.) -- C:\Users\Public\Sony Online Entertainment\Installed Games\DC Universe Online\LaunchPad.exe O4 - GS\Programs [admin]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Programs [admin]: Microsoft SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\admin\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe O4 - GS\Programs [admin]: Update Checker.lnk . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe O4 - GS\QuickLaunch [admin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\QuickLaunch [admin]: jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) -- C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\QuickLaunch [admin]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch [admin]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent O4 - GS\Accessories [admin]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Accessories [admin]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe O4 - GS\SendTo [admin]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe O4 - GS\SendTo [admin]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O4 - GS\Desktop [admin]: Any Video Converter Ultimate.lnk . (.Any-Video-Converter.com - Any Video Converter Ultimate.) -- C:\Program Files (x86)\AnvSoft\Any Video Converter Ultimate\AVCUltimate.exe O4 - GS\Desktop [admin]: DC Universe Online.lnk . (.Sony Online Entertainment - Sony Online Entertainment LaunchPad.) -- C:\Users\Public\Sony Online Entertainment\Installed Games\DC Universe Online\LaunchPad.exe O4 - GS\Desktop [admin]: Microsoft Office Word 2007.lnk . (...) -- C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe O4 - GS\Desktop [admin]: Paragon Partition Manager™ 12 Free.lnk . (.Paragon Software Group - A part of Paragon System Utilities.) -- C:\Program Files (x86)\Paragon Software\Partition Manager 12 Free\program\launcher.exe O4 - GS\Desktop [admin]: Passware Kit Professional 11.1.lnk . (.Passware - All-in-one password recovery and encryption.) -- C:\Program Files (x86)\Passware\Passware Kit 11\PasswareKitProfessional.exe O4 - GS\Desktop [admin]: PeerBlock.lnk . (.PeerBlock, LLC - PeerBlock.) -- C:\Program Files\PeerBlock\peerblock.exe O4 - GS\Desktop [admin]: THE Rename.lnk . (.Hervé Thouzard - Give you the possibility to rename files wi.) -- C:\Program Files (x86)\THE Rename\rename.exe O4 - GS\Desktop [admin]: TweaksLogon - Raccourci.lnk . (.Advanced PC Media LLC - Tweaks.com Logon Changer for Windows 7.) -- C:\Users\admin\Documents\LOGICIELS\Affichage\TweaksLogon.exe O4 - GS\Desktop [admin]: virtual DJ.lnk . (.Atomix Productions - VirtualDJ.) -- C:\Program Files (x86)\VirtualDJ\virtualdj_pro.exe O4 - GS\Desktop [admin]: Wondershare Media Converter.lnk . (.Wondershare - Media Converter.) -- C:\Program Files (x86)\Wondershare\Media Converter\MediaConverter.exe ~ Global Startup: Scanned in 00mn 01s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll ~ Winsock: 8 Scanned in 00mn 00s ---\\ Site dans la Zone de confiance d'Internet Explorer (O15) O15 - Trusted Zone: [HKCU\...\Domains] *.clonewarsadventures.com O15 - Trusted Zone: [HKCU\...\Domains] *.freerealms.com O15 - Trusted Zone: [HKCU\...\Domains] *.soe.com O15 - Trusted Zone: [HKCU\...\Domains] *.sony.com ~ IE Zone Confiance: Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{2E563508-511D-4109-A9C8-A1DA8ADFFA22}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{A3B3B17A-3EBC-4F7C-AF43-CC229899CC77}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{2E563508-511D-4109-A9C8-A1DA8ADFFA22}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{A3B3B17A-3EBC-4F7C-AF43-CC229899CC77}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{2E563508-511D-4109-A9C8-A1DA8ADFFA22}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{A3B3B17A-3EBC-4F7C-AF43-CC229899CC77}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Titr_HJT34=Protocole additionnel (O18) O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 320.) - C:\Windows\system32\nvinitx.dll ~ AppInit DLL: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) . (.IObit - Advanced SystemCare Service.) - C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: avast! Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: Live Updater Service (Live Updater Service) . (.Acer Incorporated - Updater Service.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\Windows\SysWOW64\NLSSRV32.exe O23 - Service: Norton Online Backup (NOBU) . (.Symantec Corporation - Norton Online Backup Service.) - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NTI Corporation - Backup Manager Module.) - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 320.4.) - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\SysWOW64\PnkBstrA.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: Intel(R) Management and Security Applica (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe ~ Services: 24 Scanned in 00mn 10s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1062] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1066] [MD5.48BE298F7FD1BEF4D8FBACB04D8D95C4] [APT] [Adobe ARM] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576] [MD5.476BB014F3F68C0C15EDDD5B444DA8FF] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [257416] [MD5.00000000000000000000000000000000] [APT] [Adobe Reader Speed Launcher] (...) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (.not file.) [0] [MD5.5CE2C1433B9B634591F0A1C4C1203A0B] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [251784] [MD5.F4E1FE4312D350A6198DBF6E0EAE22A8] [APT] [clear.fi] (.Acer Incorporated.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [264760] [MD5.D5D8D0D64F410B9F05E2BC00EC92EFC2] [APT] [clear.fiAgent] (.CyberLink Corp..) -- C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [120104] [MD5.61B6FB932CF78CAB7A1EF9F118A1A38E] [APT] [DMREngine] (.CyberLink.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [169352] [MD5.9834D0C33581BE9975783BFD56E2242C] [APT] [EgisUpdate] (.Egis Technology Inc..) -- C:\Program Files\EgisTec IPS\EgisUpdate.exe [207728] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.0285670FD75CB7626EE51B0B32ED0769] [APT] [PMMUpdate] (.Egis Technology Inc..) -- C:\Program Files\EgisTec IPS\PMMUpdate.exe [452976] [MD5.8EB5CB60390C1FEAD4EE674D466BBDAD] [APT] [{AD53E4B1-BDB0-4DFE-87BA-43BA81AAF9E5}] (...) -- C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe [1324115] [MD5.0BBC54D5C41C2754F22DD2016B1EB53E] [APT] [Burn Notification] (.Acer.) -- C:\Program Files\Acer\Acer eRecovery Management\NotificationCenter\Notification.exe [701832] ~ Scheduled Task: 22 Scanned in 00mn 03s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 10 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (dtsoftbus01) . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (mwlPSDFilter) . (.Egis Technology Inc. - PSD Mini Filter Driver.) - C:\Windows\System32\DRIVERS\mwlPSDFilter.sys O41 - Driver: (mwlPSDNServ) . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) - C:\Windows\System32\DRIVERS\mwlPSDNServ.sys O41 - Driver: (mwlPSDVDisk) . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) - C:\Windows\System32\DRIVERS\mwlPSDVDisk.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Drivers: 75 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: Acer Backup Manager - (.NTI Corporation.) [HKLM][64Bits] -- InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270} O42 - Logiciel: Acer Crystal Eye Webcam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: Acer Crystal Eye Webcam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: Acer Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent acer Master Uninstall O42 - Logiciel: Acer Registration - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Registration O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Screensaver O42 - Logiciel: Acer Updater - (.Acer Incorporated.) [HKLM][64Bits] -- {EE171732-BEB4-4576-887D-CB62727F01CA} O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM][64Bits] -- {3DB0448D-AD82-4923-B305-D001E521A964} O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9} O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader XI (11.0.03) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Advanced SystemCare 6 - (.IObit.) [HKLM][64Bits] -- Advanced SystemCare 6_is1 O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WTA-43bff694-3e2e-4d32-bda3-0a66cd611db9 O42 - Logiciel: Any Video Converter Ultimate 4.3.9 - (.Any-Video-Converter.com.) [HKLM][64Bits] -- Any Video Converter Ultimate_is1 O42 - Logiciel: Any Video Converter Ultimate Crack version 4.3.9 - (.Anvsoft.) [HKLM][64Bits] -- {2C9EF00C-4A3D-41B2-A1B3-D05A3EB0B193}_is1 O42 - Logiciel: AutoCAD 2010 - Français - (.Autodesk.) [HKLM][64Bits] -- AutoCAD 2010 - Français O42 - Logiciel: AutoCAD 2010 - Français - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-8001-040C-0102-0060B0CE6BBA} O42 - Logiciel: Autodesk Design Review 2009 - (.Autodesk, Inc..) [HKLM][64Bits] -- Autodesk Design Review 2009 O42 - Logiciel: Avast License by ZeNiX [2012-06-29] - (...) [HKLM][64Bits] -- Avast_2050_ZeNiX [2012-06-29]_is1 O42 - Logiciel: Backup Manager V3 - (.NTI Corporation.) [HKLM][64Bits] -- {0B61BBD5-DA3C-409A-8730-0C3DC3B0F270} O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-6dfeac5f-1a2c-4322-8cbd-8e4e22c6b327 O42 - Logiciel: Broadcom Card Reader Driver Installer - (.Broadcom Corporation.) [HKLM][64Bits] -- {4710662C-8204-4334-A977-B1AC9E547819} O42 - Logiciel: Broadcom NetLink Controller - (.Broadcom Corporation.) [HKLM][64Bits] -- {C91DCB72-F5BB-410D-A91A-314F5D1B4284} O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-ef5d4cc9-aac3-4c68-8194-e74d5b98346c O42 - Logiciel: Crazy Chicken Kart 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-deb6075f-0586-4c96-9785-0f5c6fe1b135 O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite O42 - Logiciel: DC Universe Online - (.Sony Online Entertainment.) [HKCU][64Bits] -- soe-DC Universe Online O42 - Logiciel: DC Universe Online Live - (.Sony Online Entertainment.) [HKCU][64Bits] -- SOE-DC Universe Online Live O42 - Logiciel: Dolby Advanced Audio v2 - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613} O42 - Logiciel: ETDWare PS/2-X64 8.0.6.3_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech O42 - Logiciel: ExtremeCopy - (.Easersoft.) [HKLM][64Bits] -- {DA819004-F00F-493E-BB7D-E1AB2A4A0570} O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WTA-be6a7cca-a253-469d-b186-0e1aa3f87f69 O42 - Logiciel: FileHippo.com Update Checker - (...) [HKLM][64Bits] -- FileHippo.com O42 - Logiciel: Final Drive: Nitro - (.WildTangent.) [HKLM][64Bits] -- WTA-36e7a554-5cd8-4782-bb3c-bd00edbd76d1 O42 - Logiciel: Flash Renamer 6.72 - (.RL Vision.) [HKLM][64Bits] -- Flash Renamer_is1 O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {0FD66C6F-4023-4C74-AF8E-9B8B2053868E} O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {AEA7CE08-09DC-4186-99FD-66A26F3B8B21} O42 - Logiciel: Fotogalerija - (.Microsoft Corporation.) [HKLM][64Bits] -- {BE2DE42A-6696-4EE7-9E59-B9385F339DD3} O42 - Logiciel: Fotogalleri - (.Microsoft Corporation.) [HKLM][64Bits] -- {92E22997-3614-4ED9-9D53-C6C09B105BE9} O42 - Logiciel: Fotogalleriet - (.Microsoft Corporation.) [HKLM][64Bits] -- {F38BCC33-D42A-44EB-B62F-B3BB89B29FAF} O42 - Logiciel: Fotogaléria - (.Microsoft Corporation.) [HKLM][64Bits] -- {08466673-3905-4437-93E8-34A221B7CA4E} O42 - Logiciel: Fotograf Galerisi - (.Microsoft Corporation.) [HKLM][64Bits] -- {06738361-EB60-40D7-84BC-7807ED7EF282} O42 - Logiciel: Fotótár - (.Microsoft Corporation.) [HKLM][64Bits] -- {8D977EAA-DF3E-4054-A98D-F27AEB0248DD} O42 - Logiciel: Galeria de Fotografias - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DFF6F1B-F876-4007-AC82-42D5DDF0E090} O42 - Logiciel: Galeria de Fotos - (.Microsoft Corporation.) [HKLM][64Bits] -- {1998BD95-54C6-4F31-8D85-FE9FCF5DE51D} O42 - Logiciel: Galeria fotografii - (.Microsoft Corporation.) [HKLM][64Bits] -- {207DA277-6A6D-4863-B535-129931D2BB21} O42 - Logiciel: Galeria fotogràfica - (.Microsoft Corporation.) [HKLM][64Bits] -- {0942F310-B35F-4E01-BA7C-75055AAEC710} O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {F4D99A13-F63A-4FC1-8799-CFFDB78DDFB3} O42 - Logiciel: Galerie foto - (.Microsoft Corporation.) [HKLM][64Bits] -- {FCF46EBE-4637-4A0D-8CE2-C39897A2D7E1} O42 - Logiciel: Galerija fotografija - (.Microsoft Corporation.) [HKLM][64Bits] -- {FD5D64EB-DC61-4026-AF47-585B39F19341} O42 - Logiciel: Galería de fotos - (.Microsoft Corporation.) [HKLM][64Bits] -- {F7314CA2-F900-46D7-9EA1-FBDD9D73F765} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM][64Bits] -- Identity Card O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-7682670d-dc3a-4ec7-933e-77c96fa588a5 O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} O42 - Logiciel: Java 7 Update 25 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417025FF} O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF} O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-f0170656-d99e-4967-a857-eed48e45de12 O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM][64Bits] -- WTA-4e19487e-983c-4715-bc44-18504f4caeca O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WTA-dce6a0ca-e9b5-4cf7-9134-180d271f6a60 O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {F6F30C28-38AA-4DBA-AE0B-7E30238E61BB} O42 - Logiciel: K-Lite Codec Pack 9.7.5 (Full) - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM][64Bits] -- LManager O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 3.0.0 O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {79BF4901-1EC4-4726-B3C2-A7859706C6E7} O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {92606477-9366-4D3B-8AE3-6BE4B29727AB} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- SkyDriveSetup.exe O42 - Logiciel: Mises à jour NVIDIA 6.4.23 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update O42 - Logiciel: Moniteur de la technologie Intel® Turbo Boost 2.0 - (.Intel.) [HKLM][64Bits] -- {B77EFA0B-9BD3-4122-9F9A-15A963B5EA24} O42 - Logiciel: Mozilla Firefox 23.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 23.0.1 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: MyWinLocker - (.Egis Technology Inc..) [HKLM][64Bits] -- {0B78ECB0-1A6B-4E6D-89D7-0E7CE77F0427} O42 - Logiciel: MyWinLocker 4 - (.Egis Technology Inc..) [HKLM][64Bits] -- {39F15B50-A977-4CA6-B1C3-6A8724CDA025} O42 - Logiciel: MyWinLocker Suite - (.Egis Technology Inc..) [HKLM][64Bits] -- InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE} O42 - Logiciel: MyWinLocker Suite - (.Egis Technology Inc..) [HKLM][64Bits] -- {17DF9714-60C9-43C9-A9C2-32BCAED44CBE} O42 - Logiciel: Mystery of Mortlake Mansion - (.WildTangent.) [HKLM][64Bits] -- WTA-efeae637-1418-4082-b434-888e19a71a87 O42 - Logiciel: NTI Media Maker 9 - (.NTI Corporation.) [HKLM][64Bits] -- InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44} O42 - Logiciel: NVIDIA GeForce Experience 1.5.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.0604 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {3282FBE1-35FC-48D8-98CA-115A5EF1F9B4} O42 - Logiciel: NVIDIA Pilote graphique 320.49 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: Nitro Pro 8 - (.Nitro.) [HKLM][64Bits] -- {2184866B-24FC-421F-90AF-99AB47E1B2D3} O42 - Logiciel: Norton Online Backup - (.Symantec Corporation.) [HKLM][64Bits] -- {40A66DF6-22D3-44B5-A7D3-83B118A2C0DC} O42 - Logiciel: Pando Media Booster - (.Pando Networks Inc..) [HKLM][64Bits] -- {980A182F-E0A2-4A40-94C1-AE0C1235902E} O42 - Logiciel: Paragon Partition Manager™ 12 Free - (.Paragon Software.) [HKLM][64Bits] -- {47E5588F-C3A0-11DE-9857-005056C00008} O42 - Logiciel: Passware Kit Professional 11.1 - (.Passware.) [HKLM][64Bits] -- {A56D0602-1968-4136-B925-B91007BEC614} O42 - Logiciel: PeerBlock 1.1 (r518) - (.PeerBlock, LLC.) [HKLM][64Bits] -- {015C5B35-B678-451C-9AEE-821E8D69621C}_is1 O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WTA-99c4cbd9-bc5a-4573-ae55-10d3b7ae7fc4 O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-ff966cb5-2707-4c56-a052-d0e7648d2161 O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-e6022fd4-9d61-4beb-85ca-4c4701f89164 O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc O42 - Logiciel: Qualcomm Atheros WLAN and Bluetooth Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} O42 - Logiciel: Raccolta foto - (.Microsoft Corporation.) [HKLM][64Bits] -- {FA6BC7A5-85B3-4DC2-825C-D508E386151A} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva O42 - Logiciel: Remo Repair MOV - (.Remo Software.) [HKLM][64Bits] -- {8DD5B1BF-E1BB-43DB-965C-DC6180A19518}_is1 O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- {5442DAB8-7177-49E1-8B22-09A049EA5996} O42 - Logiciel: SES Driver - (.Western Digital.) [HKLM][64Bits] -- {D8CC254C-C671-4664-9A38-FA368D1E2C97} O42 - Logiciel: Shredder - (.Egis Technology Inc..) [HKLM][64Bits] -- {C2695E83-CF1D-43D1-84FE-B3BEC561012A} O42 - Logiciel: Skype™ 6.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: Smart Defrag 2 - (.IObit.) [HKLM][64Bits] -- Smart Defrag 2_is1 O42 - Logiciel: Speccy - (.Piriform.) [HKLM][64Bits] -- Speccy O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} O42 - Logiciel: THE Rename 2.1.6 - (.Hervé Thouzard.) [HKLM][64Bits] -- THE Rename_is1 O42 - Logiciel: Torchlight - (.WildTangent.) [HKLM][64Bits] -- WTA-8dc37d2d-b04c-4a7f-8052-a87bd2787b7f O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App O42 - Logiciel: VLC media player 2.0.7 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: Valokuvavalikoima - (.Microsoft Corporation.) [HKLM][64Bits] -- {245C4CCD-8829-469C-9278-2BA330BEB8F4} O42 - Logiciel: Virtual DJ Pro Full - Atomix Productions - (...) [HKLM][64Bits] -- Virtual DJ Pro Full - Atomix Productions O42 - Logiciel: Virtual Villagers 4 - The Tree of Life - (.WildTangent.) [HKLM][64Bits] -- WTA-1550e994-6a35-42e9-ac04-8bbe316c66ef O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WTA-6fdec019-be87-4c0d-9b2f-2aef13bebaec O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Welcome Center O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: WinRAR 4.20 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (0 - (.Western Digital Technologies.) [HKLM][64Bits] -- 4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20 O42 - Logiciel: Wondershare Media Converter(Build 1.3.6.0) - (.Wondershare Software.) [HKLM][64Bits] -- Wondershare Media Converter_is1 O42 - Logiciel: World of Warcraft - (.Blizzard Entertainment.) [HKLM][64Bits] -- World of Warcraft O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-b112216e-fd04-4479-9068-343b665c94af O42 - Logiciel: avast! Antivirus 8.0.1483.72 v8.0.1483.72 - (.Alwil_Soft.) [HKLM][64Bits] -- avast! Antivirus 8.0.1483.72 O42 - Logiciel: avast! Internet Security v8.0.1489.0 - (.AVAST Software.) [HKLM][64Bits] -- avast O42 - Logiciel: clear.fi - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761} O42 - Logiciel: clear.fi - (.CyberLink Corp..) [HKLM][64Bits] -- {14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C} O42 - Logiciel: clear.fi - (.CyberLink Corp..) [HKLM][64Bits] -- {2637C347-9DAD-11D6-9EA2-00055D0CA761} O42 - Logiciel: clear.fi - (.CyberLink Corp..) [HKLM][64Bits] -- {B906C11A-D193-4143-9FA7-E2EE8A5A8F21} O42 - Logiciel: clear.fi Client - (.Acer Incorporated.) [HKLM][64Bits] -- {43AAE145-83CF-4C96-9A5E-756CEFCE879F} O42 - Logiciel: eBay Worldwide - (.OEM.) [HKLM][64Bits] -- {D3E5A972-9A15-427D-AE78-8181A5FD943C} O42 - Logiciel: jetAudio Basic VX - (.COWON.) [HKLM][64Bits] -- {DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A} O42 - Logiciel: newsXpresso - (.esobi Inc..) [HKLM][64Bits] -- InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF} O42 - Logiciel: newsXpresso - (.esobi Inc..) [HKLM][64Bits] -- {613C0AC5-3A67-4B94-8B13-9176AD83F5BF} O42 - Logiciel: µTorrent - (...) [HKLM][64Bits] -- uTorrent =>P2P.µTorrent O42 - Logiciel: S?????? f?t???af??? - (.Microsoft Corporation.) [HKLM][64Bits] -- {032CB0D7-FDBF-4CA9-901B-A4C1B01B1777} O42 - Logiciel: ?????????? - (.Microsoft Corporation.) [HKLM][64Bits] -- {CE4EEFE0-85E0-436E-95C5-BCB2EE30C976} O42 - Logiciel: ??????????? - (.Microsoft Corporation.) [HKLM][64Bits] -- {87E79A55-EBF1-472F-BCAD-4A631B9A69A5} O42 - Logiciel: ?????????? (????????????? ??????) - (.Microsoft Corporation.) [HKLM][64Bits] -- {234BD64C-99F4-42B5-837F-82F00E37A7E1} O42 - Logiciel: ?????? ??????? - (.Microsoft Corporation.) [HKLM][64Bits] -- {B1AC8AF0-2979-4DF8-AE26-B1D543F3543F} O42 - Logiciel: ???? ????? - (.Microsoft Corporation.) [HKLM][64Bits] -- {6F77C156-7660-4CEC-8793-97D80D5BFEC0} O42 - Logiciel: ???? - (.Microsoft Corporation.) [HKLM][64Bits] -- {7DB15F28-5E38-476A-A773-EA07EAEAB1B3} ~ Logic: 223 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\Acer] [HKCU\Software\Adobe] [HKCU\Software\AnvSoft] [HKCU\Software\AppDataLow\Software\Autodesk] [HKCU\Software\AppDataLow\Software\JavaSoft] [HKCU\Software\AppDataLow] [HKCU\Software\Atheros] [HKCU\Software\Autodesk] [HKCU\Software\Avast Software] [HKCU\Software\BitTorrent] =>P2P.BitTorrent [HKCU\Software\Blizzard Entertainment] [HKCU\Software\Bugsplat] [HKCU\Software\COWON] [HKCU\Software\ClassesB] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Cyberlink] [HKCU\Software\DT Soft] [HKCU\Software\Disc Soft] [HKCU\Software\Dritek] [HKCU\Software\Easersoft] [HKCU\Software\Elantech] [HKCU\Software\FileHippo.com] [HKCU\Software\FileOpen] [HKCU\Software\GNU] [HKCU\Software\Gabest] [HKCU\Software\Google] [HKCU\Software\Haali] [HKCU\Software\Hensense.com] [HKCU\Software\IM Providers] [HKCU\Software\INCAInternet] [HKCU\Software\Icaros] [HKCU\Software\Infernum] [HKCU\Software\Intel] [HKCU\Software\JavaSoft] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Logitech] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MediaInfo] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\Netscape] [HKCU\Software\Nitro PDF] [HKCU\Software\Nitro] [HKCU\Software\ODBC] [HKCU\Software\OEM] [HKCU\Software\Pando Networks] [HKCU\Software\Passware] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\Skype] [HKCU\Software\Trolltech] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\Valve] [HKCU\Software\VirtualDJ] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\WinSTEP2000] [HKCU\Software\Wow6432Node] [HKCU\Software\WsAudio_DeviceS(1)] [HKCU\Software\WsAudio_Device] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\gPotato] [HKCU\Software\madshi] [HKCU\Software\remote] [HKLM\Software\AGEIA Technologies] [HKLM\Software\ATHEROS] [HKLM\Software\ATI Technologies] [HKLM\Software\Acer] [HKLM\Software\Autodesk] [HKLM\Software\CBSTEST] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Cyberlink] [HKLM\Software\DTS] [HKLM\Software\Dolby] [HKLM\Software\EgisTec IPS] [HKLM\Software\EgisTec Shredder] [HKLM\Software\IM Providers] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\Khronos] [HKLM\Software\Macromedia] [HKLM\Software\Macrovision] [HKLM\Software\McAfee.com] [HKLM\Software\McAfee] [HKLM\Software\McFPDetect] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\Nitro] [HKLM\Software\ODBC] [HKLM\Software\OEM] [HKLM\Software\OOBEOffer] [HKLM\Software\OemSetup] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\Qualcomm Atheros Fast Reconnect] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SRS Labs] [HKLM\Software\SiteAdvisor] [HKLM\Software\SonicFocus] [HKLM\Software\Sonic] [HKLM\Software\Symantec] [HKLM\Software\VideoLAN] [HKLM\Software\Waves Audio] [HKLM\Software\WinRAR] [HKLM\Software\Wow6432Node\AGEIA Technologies] [HKLM\Software\Wow6432Node\ATHEROS] [HKLM\Software\Wow6432Node\AVAST Software] [HKLM\Software\Wow6432Node\Acer Incorporated] [HKLM\Software\Wow6432Node\Activision] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\Apple Computer, Inc.] [HKLM\Software\Wow6432Node\Autodesk] [HKLM\Software\Wow6432Node\BioWare] [HKLM\Software\Wow6432Node\COWON] [HKLM\Software\Wow6432Node\Caphyon] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\CyberLink] [HKLM\Software\Wow6432Node\Disc Soft] [HKLM\Software\Wow6432Node\Dritek] [HKLM\Software\Wow6432Node\EgisTec IPS] [HKLM\Software\Wow6432Node\EgisTec MyWinLockerSuite] [HKLM\Software\Wow6432Node\EgisTec MyWinLocker] [HKLM\Software\Wow6432Node\EgisTec Shredder] [HKLM\Software\Wow6432Node\Even Balance] [HKLM\Software\Wow6432Node\GNU] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\HaaliMkx] [HKLM\Software\Wow6432Node\Herve Thouzard] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\IObit] [HKLM\Software\Wow6432Node\Icaros] [HKLM\Software\Wow6432Node\InstallShield] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\KLCodecPack] [HKLM\Software\Wow6432Node\Khronos] [HKLM\Software\Wow6432Node\LAV] [HKLM\Software\Wow6432Node\Licenses] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Macrovision] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\McAfee] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\NVIDIA Corporation] [HKLM\Software\Wow6432Node\Nalpeiron] [HKLM\Software\Wow6432Node\NewTech Infosystems] [HKLM\Software\Wow6432Node\Nitro] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\OEM] [HKLM\Software\Wow6432Node\Pando Networks] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\Qualcomm Atheros WLAN and Bluetooth Client Installation Program] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Remo Software] [HKLM\Software\Wow6432Node\Riot Games] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\Trolltech] [HKLM\Software\Wow6432Node\Valve] [HKLM\Software\Wow6432Node\VideoLAN] [HKLM\Software\Wow6432Node\VirtualDJ] [HKLM\Software\Wow6432Node\VirualDiskRedist] [HKLM\Software\Wow6432Node\Vittalia] [HKLM\Software\Wow6432Node\Volatile] [HKLM\Software\Wow6432Node\WildTangent] [HKLM\Software\Wow6432Node\WinRAR] [HKLM\Software\Wow6432Node\Wondershare] [HKLM\Software\Wow6432Node\mozilla.org] [HKLM\Software\Wow6432Node] ~ Key Software: 254 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 08/10/2011 - 14:45:00 - [350,755] ----D C:\Program Files (x86)\Acer O43 - CFD: 30/06/2013 - 20:36:08 - [434,818] ----D C:\Program Files (x86)\Acer Games O43 - CFD: 13/06/2013 - 19:49:43 - [0] ----D C:\Program Files (x86)\Activision O43 - CFD: 15/06/2013 - 11:47:03 - [120,489] ----D C:\Program Files (x86)\Adobe O43 - CFD: 02/07/2013 - 13:46:25 - [0] ----D C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 31/05/2013 - 15:53:53 - [0,102] ----D C:\Program Files (x86)\Alwil_Soft O43 - CFD: 24/06/2013 - 09:47:04 - [107,159] ----D C:\Program Files (x86)\AnvSoft O43 - CFD: 31/08/2013 - 21:31:29 - [110,391] ----D C:\Program Files (x86)\Autodesk O43 - CFD: 01/09/2013 - 20:15:23 - [407,637] ----D C:\Program Files (x86)\Common Files O43 - CFD: 08/10/2011 - 14:38:55 - [0,064] ----D C:\Program Files (x86)\Cyberlink O43 - CFD: 10/07/2013 - 10:35:48 - [26,777] ----D C:\Program Files (x86)\DAEMON Tools Lite O43 - CFD: 12/08/2011 - 05:50:44 - [3,489] ----D C:\Program Files (x86)\EgisTec IPS O43 - CFD: 12/08/2011 - 05:50:51 - [19,986] ----D C:\Program Files (x86)\EgisTec MyWinLocker O43 - CFD: 12/08/2011 - 05:50:17 - [2,563] ----D C:\Program Files (x86)\EgisTec MyWinLockerSuite O43 - CFD: 12/08/2011 - 05:51:15 - [5,335] ----D C:\Program Files (x86)\EgisTec Shredder O43 - CFD: 05/06/2013 - 18:34:43 - [0] ----D C:\Program Files (x86)\Electronic Arts O43 - CFD: 30/06/2013 - 20:47:12 - [0,421] ----D C:\Program Files (x86)\FileHippo.com O43 - CFD: 08/08/2013 - 22:00:13 - [8,373] ----D C:\Program Files (x86)\Flash Renamer O43 - CFD: 28/05/2013 - 23:01:21 - [385,669] ----D C:\Program Files (x86)\Google O43 - CFD: 31/08/2013 - 05:29:44 - [371,708] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 08/10/2011 - 14:25:07 - [36,641] ----D C:\Program Files (x86)\Intel O43 - CFD: 15/08/2013 - 03:19:31 - [4,886] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 06/07/2013 - 13:32:19 - [260,202] ----D C:\Program Files (x86)\IObit O43 - CFD: 19/07/2013 - 11:56:41 - [124,161] ----D C:\Program Files (x86)\Java O43 - CFD: 03/06/2013 - 12:51:48 - [69,661] ----D C:\Program Files (x86)\JetAudio O43 - CFD: 29/05/2013 - 20:26:01 - [69,886] ----D C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 08/10/2011 - 14:18:59 - [8,896] ----D C:\Program Files (x86)\Launch Manager O43 - CFD: 29/05/2013 - 03:19:26 - [-783,910] ----D C:\Program Files (x86)\League of Legends O43 - CFD: 08/06/2013 - 08:29:00 - [13,397] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 30/05/2013 - 17:34:11 - [0] ----D C:\Program Files (x86)\Microsoft O43 - CFD: 31/08/2013 - 21:33:21 - [564,501] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 11/07/2013 - 02:57:20 - [81,258] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 30/05/2013 - 18:20:36 - [5,397] ----D C:\Program Files (x86)\Microsoft SkyDrive O43 - CFD: 30/05/2013 - 19:41:06 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 01/06/2013 - 14:55:20 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 30/05/2013 - 18:13:28 - [1,323] ----D C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 01/06/2013 - 15:01:22 - [3,554] ----D C:\Program Files (x86)\Microsoft Works O43 - CFD: 01/06/2013 - 14:54:34 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 21/08/2013 - 13:41:05 - [47,928] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 18/08/2013 - 01:06:38 - [0,327] ----D C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 01/06/2013 - 14:55:34 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 30/05/2013 - 17:24:11 - [0,176] ----D C:\Program Files (x86)\MSECache O43 - CFD: 12/08/2011 - 05:59:11 - [6,828] ----D C:\Program Files (x86)\newsXpresso O43 - CFD: 19/06/2013 - 17:37:02 - [126,196] ----D C:\Program Files (x86)\Nitro O43 - CFD: 08/10/2011 - 14:33:52 - [1976,565] ----D C:\Program Files (x86)\NTI O43 - CFD: 02/07/2013 - 13:44:32 - [96,504] ----D C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 27/12/2011 - 02:32:16 - [0,105] ----D C:\Program Files (x86)\OEM O43 - CFD: 28/05/2013 - 23:31:46 - [8,373] ----D C:\Program Files (x86)\Pando Networks O43 - CFD: 29/05/2013 - 11:06:38 - [58,617] ----D C:\Program Files (x86)\Paragon Software O43 - CFD: 21/08/2013 - 18:26:29 - [80,508] ----D C:\Program Files (x86)\Passware O43 - CFD: 31/08/2013 - 05:32:29 - [80,288] ----D C:\Program Files (x86)\Qualcomm Atheros O43 - CFD: 21/08/2013 - 13:57:09 - [0] ----D C:\Program Files (x86)\RAR Password Unlocker O43 - CFD: 08/10/2011 - 14:25:49 - [14,671] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 02:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 01/07/2013 - 18:35:02 - [20,168] ----D C:\Program Files (x86)\Remo Repair MOV 2.0 O43 - CFD: 08/10/2011 - 14:21:18 - [0,987] ----D C:\Program Files (x86)\Renesas Electronics O43 - CFD: 01/09/2013 - 20:19:45 - [19,224] R---D C:\Program Files (x86)\Skype O43 - CFD: 09/07/2013 - 19:45:21 - [321,065] ----D C:\Program Files (x86)\Steam O43 - CFD: 12/08/2011 - 05:52:44 - [6,154] ----D C:\Program Files (x86)\Symantec O43 - CFD: 30/06/2013 - 20:09:51 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 04/08/2013 - 11:13:12 - [2,941] ----D C:\Program Files (x86)\THE Rename O43 - CFD: 23/07/2013 - 23:51:47 - [0] ----D C:\Program Files (x86)\Ubisoft O43 - CFD: 14/07/2009 - 01:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 28/05/2013 - 23:31:06 - [0,381] ----D C:\Program Files (x86)\uTorrent =>P2P.µTorrent O43 - CFD: 30/06/2013 - 20:08:02 - [101,906] ----D C:\Program Files (x86)\VideoLAN O43 - CFD: 20/06/2013 - 10:34:13 - [18,966] ----D C:\Program Files (x86)\VirtualDJ O43 - CFD: 16/08/2013 - 15:29:57 - [11,208] ----D C:\Program Files (x86)\WildTangent Games O43 - CFD: 11/07/2013 - 21:15:26 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 01/09/2013 - 20:15:30 - [435,193] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 09/10/2011 - 00:04:32 - [5,895] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 09/10/2011 - 00:04:32 - [4,791] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - 02:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 09/10/2011 - 00:04:32 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 21/11/2010 - 00:31:38 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 09/10/2011 - 00:04:32 - [7,008] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 03/07/2013 - 18:20:17 - [4,131] ----D C:\Program Files (x86)\WinRAR O43 - CFD: 18/06/2013 - 01:06:25 - [52,154] ----D C:\Program Files (x86)\Wondershare O43 - CFD: 03/07/2013 - 13:13:25 - [-455,470] ----D C:\Program Files (x86)\World of Warcraft O43 - CFD: 08/09/2013 - 09:00:18 - [21,724] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 15/06/2013 - 11:47:22 - [6,289] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 31/08/2013 - 05:31:19 - [0,067] ----D C:\Program Files (x86)\Common Files\Atheros O43 - CFD: 01/09/2013 - 12:42:14 - [22,534] ----D C:\Program Files (x86)\Common Files\Autodesk Shared O43 - CFD: 02/07/2013 - 20:14:01 - [1,872] ----D C:\Program Files (x86)\Common Files\Blizzard Entertainment O43 - CFD: 03/06/2013 - 12:51:45 - [13,719] ----D C:\Program Files (x86)\Common Files\COWON O43 - CFD: 31/08/2013 - 21:33:32 - [0,195] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 12/08/2011 - 05:50:42 - [0,165] ----D C:\Program Files (x86)\Common Files\EgisTec O43 - CFD: 08/10/2011 - 14:25:46 - [1,997] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 08/10/2011 - 14:09:57 - [13,612] ----D C:\Program Files (x86)\Common Files\Intel O43 - CFD: 12/08/2011 - 05:27:07 - [0,008] ----D C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 19/07/2013 - 11:57:23 - [1,189] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 08/10/2011 - 14:33:29 - [0,625] ----D C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 11/01/2012 - 23:20:24 - [0,784] ----D C:\Program Files (x86)\Common Files\mcafee O43 - CFD: 31/08/2013 - 21:33:21 - [244,774] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 19/06/2013 - 17:37:02 - [15,773] ----D C:\Program Files (x86)\Common Files\Nitro O43 - CFD: 08/10/2011 - 14:25:09 - [0,155] ----D C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 14/07/2009 - 00:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 01/09/2013 - 20:15:23 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - 00:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 14/06/2013 - 18:38:28 - [0,518] ----D C:\Program Files (x86)\Common Files\Steam O43 - CFD: 01/06/2013 - 14:45:37 - [42,254] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 12/08/2011 - 05:37:36 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 12/08/2011 - 05:36:45 - [1,003] ----D C:\ProgramData\Acer O43 - CFD: 15/06/2013 - 11:47:10 - [148,807] ----D C:\ProgramData\Adobe O43 - CFD: 29/05/2013 - 19:03:23 - [0,001] ----D C:\ProgramData\Alchemy Mindworks O43 - CFD: 14/07/2009 - 02:08:56 - [0] --H-D C:\ProgramData\Application Data O43 - CFD: 31/08/2013 - 05:38:00 - [0,000] ----D C:\ProgramData\Atheros O43 - CFD: 07/09/2013 - 15:02:16 - [34,688] ----D C:\ProgramData\Autodesk O43 - CFD: 31/05/2013 - 15:55:13 - [212,712] ----D C:\ProgramData\AVAST Software O43 - CFD: 12/08/2011 - 05:56:46 - [0,257] ----D C:\ProgramData\BackupManager O43 - CFD: 02/07/2013 - 20:12:40 - [139,031] ----D C:\ProgramData\Battle.net O43 - CFD: 02/07/2013 - 20:14:01 - [0,736] ----D C:\ProgramData\Blizzard Entertainment O43 - CFD: 27/12/2011 - 02:31:32 - [0] --H-D C:\ProgramData\Bureau O43 - CFD: 08/09/2013 - 08:09:04 - [0,142] ----D C:\ProgramData\clear.fi O43 - CFD: 08/10/2011 - 14:40:33 - [0,000] ----D C:\ProgramData\CLSK O43 - CFD: 18/02/2012 - 20:29:56 - [0,096] ----D C:\ProgramData\CyberLink O43 - CFD: 01/06/2013 - 22:01:51 - [0,001] ----D C:\ProgramData\DAEMON Tools Lite O43 - CFD: 14/07/2009 - 02:08:56 - [0] --H-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 02:08:56 - [0] --H-D C:\ProgramData\Documents O43 - CFD: 08/10/2011 - 14:13:06 - [0] ----D C:\ProgramData\EgisTec O43 - CFD: 08/10/2011 - 14:25:40 - [0,268] ----D C:\ProgramData\EgisTec IPS O43 - CFD: 29/05/2013 - 11:47:39 - [0] ----D C:\ProgramData\explauncher O43 - CFD: 27/12/2011 - 02:31:32 - [0] --H-D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 02:08:56 - [0] --H-D C:\ProgramData\Favorites O43 - CFD: 15/06/2013 - 14:08:21 - [0] ----D C:\ProgramData\FileOpen O43 - CFD: 01/09/2013 - 13:07:32 - [0,027] ----D C:\ProgramData\FLEXnet O43 - CFD: 08/10/2011 - 14:13:03 - [0,001] ----D C:\ProgramData\Intel O43 - CFD: 29/05/2013 - 16:00:20 - [0,001] ----D C:\ProgramData\IObit O43 - CFD: 29/05/2013 - 11:47:37 - [0] ----D C:\ProgramData\launcher O43 - CFD: 07/09/2013 - 14:13:15 - [0] ----D C:\ProgramData\LogSaver O43 - CFD: 08/06/2013 - 08:24:34 - [27,415] ----D C:\ProgramData\Malwarebytes O43 - CFD: 11/01/2012 - 23:20:24 - [0,003] ----D C:\ProgramData\McAfee O43 - CFD: 27/12/2011 - 02:31:32 - [0] --H-D C:\ProgramData\Menu Démarrer O43 - CFD: 01/06/2013 - 14:54:34 - [1806,941] -S--D C:\ProgramData\Microsoft O43 - CFD: 15/08/2013 - 01:31:13 - [0,062] ----D C:\ProgramData\Microsoft Help O43 - CFD: 30/05/2013 - 18:20:21 - [0] ----D C:\ProgramData\Microsoft SkyDrive O43 - CFD: 27/12/2011 - 02:31:32 - [0] --H-D C:\ProgramData\Modèles O43 - CFD: 28/05/2013 - 23:28:40 - [0,013] ----D C:\ProgramData\Mozilla O43 - CFD: 12/08/2011 - 05:59:14 - [0,000] ----D C:\ProgramData\newsXpresso O43 - CFD: 15/06/2013 - 14:06:47 - [2,448] ----D C:\ProgramData\Nitro O43 - CFD: 22/06/2013 - 19:59:26 - [0,068] ----D C:\ProgramData\NTI Launcher O43 - CFD: 02/07/2013 - 13:49:09 - [403,646] ----D C:\ProgramData\NVIDIA O43 - CFD: 02/07/2013 - 13:44:50 - [2,531] ----D C:\ProgramData\NVIDIA Corporation O43 - CFD: 27/12/2011 - 02:34:05 - [0,001] ----D C:\ProgramData\oem O43 - CFD: 10/06/2013 - 13:23:22 - [0,003] ----D C:\ProgramData\PMB Files =>P2P.Pando O43 - CFD: 31/08/2013 - 05:30:10 - [0,034] ----D C:\ProgramData\Qualcomm Atheros O43 - CFD: 07/09/2013 - 14:31:15 - [0] ----D C:\ProgramData\redistpart O43 - CFD: 08/08/2013 - 22:01:14 - [0,094] ----D C:\ProgramData\RL Vision O43 - CFD: 01/09/2013 - 20:19:47 - [67,780] ----D C:\ProgramData\Skype O43 - CFD: 14/07/2009 - 02:08:56 - [0] --H-D C:\ProgramData\Start Menu O43 - CFD: 19/06/2013 - 17:39:11 - [0,000] ----D C:\ProgramData\Sun O43 - CFD: 12/08/2011 - 05:52:44 - [0,045] ----D C:\ProgramData\Symantec O43 - CFD: 01/07/2013 - 18:35:48 - [0,801] ---AD C:\ProgramData\Temp O43 - CFD: 14/07/2009 - 02:08:56 - [0] --H-D C:\ProgramData\Templates O43 - CFD: 16/08/2013 - 15:29:58 - [1454,126] ----D C:\ProgramData\WildTangent O43 - CFD: 02/08/2013 - 10:53:23 - [0] ----D C:\ProgramData\xml_param O43 - CFD: 31/05/2013 - 16:09:40 - [0,002] --H-D C:\Users\admin\AppData\Roaming\8C05ECBE O43 - CFD: 12/05/2012 - 03:46:35 - [1,019] ----D C:\Users\admin\AppData\Roaming\Adobe O43 - CFD: 24/06/2013 - 09:49:16 - [0] ----D C:\Users\admin\AppData\Roaming\AnvSoft O43 - CFD: 30/05/2013 - 18:47:08 - [0,078] ----D C:\Users\admin\AppData\Roaming\Apple Computer O43 - CFD: 31/08/2013 - 05:31:37 - [0] ----D C:\Users\admin\AppData\Roaming\Atheros O43 - CFD: 07/09/2013 - 15:02:17 - [9,505] ----D C:\Users\admin\AppData\Roaming\Autodesk O43 - CFD: 18/06/2013 - 01:21:58 - [0,997] ----D C:\Users\admin\AppData\Roaming\COWON O43 - CFD: 18/02/2012 - 20:29:56 - [0] ----D C:\Users\admin\AppData\Roaming\CyberLink O43 - CFD: 24/07/2013 - 02:02:59 - [1,564] ----D C:\Users\admin\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 22/08/2013 - 00:05:15 - [0,073] ----D C:\Users\admin\AppData\Roaming\dmplogs O43 - CFD: 19/06/2013 - 17:29:52 - [454,470] ----D C:\Users\admin\AppData\Roaming\Downloaded Installations O43 - CFD: 29/05/2013 - 11:27:21 - [0,000] ----D C:\Users\admin\AppData\Roaming\ExtremeCopy O43 - CFD: 15/06/2013 - 14:08:21 - [0,000] ----D C:\Users\admin\AppData\Roaming\FileOpen O43 - CFD: 21/08/2013 - 04:26:06 - [0] ----D C:\Users\admin\AppData\Roaming\Gygan O43 - CFD: 06/08/2013 - 21:28:32 - [0] ----D C:\Users\admin\AppData\Roaming\Hensense.com O43 - CFD: 27/12/2011 - 02:33:44 - [0] ----D C:\Users\admin\AppData\Roaming\Identities O43 - CFD: 06/07/2013 - 13:32:22 - [21,590] ----D C:\Users\admin\AppData\Roaming\IObit O43 - CFD: 29/05/2013 - 15:09:22 - [0,000] ----D C:\Users\admin\AppData\Roaming\LolClient O43 - CFD: 27/12/2011 - 02:34:05 - [0,009] ----D C:\Users\admin\AppData\Roaming\Macromedia O43 - CFD: 08/06/2013 - 08:24:55 - [81,204] ----D C:\Users\admin\AppData\Roaming\Malwarebytes O43 - CFD: 21/11/2010 - 04:16:41 - [0] ----D C:\Users\admin\AppData\Roaming\Media Center Programs O43 - CFD: 08/09/2013 - 08:42:14 - [0] ----D C:\Users\admin\AppData\Roaming\Media Player Classic O43 - CFD: 29/08/2013 - 16:13:11 - [7,746] -S--D C:\Users\admin\AppData\Roaming\Microsoft O43 - CFD: 28/05/2013 - 23:28:49 - [73,656] ----D C:\Users\admin\AppData\Roaming\Mozilla O43 - CFD: 30/08/2013 - 11:26:12 - [7,471] ----D C:\Users\admin\AppData\Roaming\Nitro O43 - CFD: 07/09/2013 - 18:39:56 - [0,004] ----D C:\Users\admin\AppData\Roaming\Nitro PDF O43 - CFD: 21/08/2013 - 18:30:15 - [1,114] ----D C:\Users\admin\AppData\Roaming\NVIDIA O43 - CFD: 21/08/2013 - 18:26:44 - [0,134] ----D C:\Users\admin\AppData\Roaming\Passware O43 - CFD: 13/08/2013 - 19:54:03 - [0,014] ----D C:\Users\admin\AppData\Roaming\PowerCinema O43 - CFD: 21/08/2013 - 03:26:54 - [1,315] ----D C:\Users\admin\AppData\Roaming\Riot Games O43 - CFD: 08/09/2013 - 08:09:55 - [4,250] ----D C:\Users\admin\AppData\Roaming\Skype O43 - CFD: 23/07/2013 - 22:52:40 - [0] ----D C:\Users\admin\AppData\Roaming\Ubisoft O43 - CFD: 08/09/2013 - 08:42:14 - [7,723] ----D C:\Users\admin\AppData\Roaming\uTorrent =>P2P.µTorrent O43 - CFD: 04/08/2013 - 16:59:06 - [3,002] ----D C:\Users\admin\AppData\Roaming\vlc O43 - CFD: 16/08/2013 - 15:30:00 - [2,978] ----D C:\Users\admin\AppData\Roaming\WildTangent O43 - CFD: 29/05/2013 - 19:32:02 - [0] ----D C:\Users\admin\AppData\Roaming\Windows Live Writer O43 - CFD: 29/05/2013 - 07:54:22 - [1,180] ----D C:\Users\admin\AppData\Roaming\WinRAR O43 - CFD: 27/12/2011 - 02:33:36 - [0,018] ----D C:\Users\admin\AppData\Local\Acer O43 - CFD: 10/07/2013 - 11:31:26 - [14,578] ----D C:\Users\admin\AppData\Local\Adobe O43 - CFD: 27/12/2011 - 02:31:40 - [0] ----D C:\Users\admin\AppData\Local\Application Data O43 - CFD: 28/05/2013 - 22:58:17 - [1,594] ----D C:\Users\admin\AppData\Local\Apps O43 - CFD: 01/09/2013 - 12:41:05 - [3,320] ----D C:\Users\admin\AppData\Local\Autodesk O43 - CFD: 13/08/2013 - 19:48:07 - [0] ----D C:\Users\admin\AppData\Local\Cyberlink O43 - CFD: 28/05/2013 - 22:58:41 - [0] ----D C:\Users\admin\AppData\Local\Deployment O43 - CFD: 31/08/2013 - 22:10:42 - [1,228] ----D C:\Users\admin\AppData\Local\Diagnostics O43 - CFD: 27/12/2011 - 02:50:35 - [0,000] ----D C:\Users\admin\AppData\Local\EgisTec IPS O43 - CFD: 31/08/2013 - 04:25:31 - [0,368] ----D C:\Users\admin\AppData\Local\ElevatedDiagnostics O43 - CFD: 28/05/2013 - 23:01:40 - [19,768] ----D C:\Users\admin\AppData\Local\Google O43 - CFD: 27/12/2011 - 02:31:40 - [0] ----D C:\Users\admin\AppData\Local\Historique O43 - CFD: 29/05/2013 - 12:40:20 - [0] ----D C:\Users\admin\AppData\Local\Macromedia O43 - CFD: 31/08/2013 - 04:03:59 - [1292,747] ----D C:\Users\admin\AppData\Local\Microsoft O43 - CFD: 23/08/2013 - 11:25:38 - [1,396] ----D C:\Users\admin\AppData\Local\Microsoft Games O43 - CFD: 30/05/2013 - 17:13:27 - [0] ----D C:\Users\admin\AppData\Local\Microsoft Help O43 - CFD: 28/05/2013 - 23:28:44 - [42,984] ----D C:\Users\admin\AppData\Local\Mozilla O43 - CFD: 09/06/2013 - 13:02:14 - [0,012] ----D C:\Users\admin\AppData\Local\NVIDIA O43 - CFD: 10/06/2013 - 13:23:23 - [0,334] ----D C:\Users\admin\AppData\Local\PMB Files =>P2P.Pando O43 - CFD: 15/08/2013 - 06:10:57 - [31,244] ----D C:\Users\admin\AppData\Local\PowerCinema O43 - CFD: 29/05/2013 - 20:24:08 - [0] ----D C:\Users\admin\AppData\Local\Programs O43 - CFD: 23/07/2013 - 23:40:51 - [0,403] ----D C:\Users\admin\AppData\Local\PunkBuster O43 - CFD: 09/08/2013 - 12:37:30 - [0] ----D C:\Users\admin\AppData\Local\SCE O43 - CFD: 13/06/2013 - 20:20:00 - [0,000] ----D C:\Users\admin\AppData\Local\SKIDROW O43 - CFD: 05/06/2013 - 18:40:52 - [0,000] ----D C:\Users\admin\AppData\Local\SWTORPerf O43 - CFD: 08/09/2013 - 09:00:11 - [94,402] ----D C:\Users\admin\AppData\Local\Temp O43 - CFD: 27/12/2011 - 02:31:40 - [0] ----D C:\Users\admin\AppData\Local\Temporary Internet Files O43 - CFD: 23/07/2013 - 23:53:30 - [0,000] ----D C:\Users\admin\AppData\Local\Ubisoft Game Launcher O43 - CFD: 03/07/2013 - 13:03:48 - [1107,288] ----D C:\Users\admin\AppData\Local\VirtualStore O43 - CFD: 03/07/2013 - 18:07:10 - [0,031] ----D C:\Users\admin\AppData\Local\Windows Live O43 - CFD: 29/05/2013 - 19:32:12 - [0,618] ----D C:\Users\admin\AppData\Local\Windows Live Writer O43 - CFD: 14/07/2009 - 01:54:32 - [0,014] R---D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 29/05/2013 - 08:10:18 - [0,000] R---D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 31/08/2013 - 05:31:35 - [0,000] R---D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices O43 - CFD: 02/06/2013 - 10:19:09 - [0,000] ----D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 14/07/2009 - 01:49:38 - [0,001] R---D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 29/05/2013 - 11:06:54 - [0,003] ----D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Paragon Partition Manager™ 12 Free O43 - CFD: 21/08/2013 - 18:26:31 - [0,002] ----D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Passware O43 - CFD: 29/05/2013 - 08:10:18 - [0,000] R---D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 20/06/2013 - 10:34:08 - [0] ----D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Virtual DJ O43 - CFD: 03/07/2013 - 18:22:08 - [0,003] ----D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ 2 Dossiers CLSID vides (CLSID Empty Folders) ~ Program Folder: 235 Scanned in 00mn 15s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.689AA260204FCF6147FB6DBCD64E3C6F] - 08/09/2013 - 08:41:21 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1178590] O44 - LFC:[MD5.CCC92369C89A133F2D191CE5320E9F97] - 08/09/2013 - 08:27:57 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1661710] O44 - LFC:[MD5.E28AA8D00393162A59285F591A1992CF] - 08/09/2013 - 08:27:57 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [121080] O44 - LFC:[MD5.F122BD59EB0134F9FCE10C17FC69B189] - 08/09/2013 - 08:27:57 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [148792] O44 - LFC:[MD5.22E487183D789D50B7307A8BE6661C0D] - 08/09/2013 - 08:27:57 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [652148] O44 - LFC:[MD5.660DA803EC55648BC3B6C2BAFE64296A] - 08/09/2013 - 08:27:57 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [745306] O44 - LFC:[MD5.CCC92369C89A133F2D191CE5320E9F97] - 08/09/2013 - 08:27:57 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1661710] O44 - LFC:[MD5.E28AA8D00393162A59285F591A1992CF] - 08/09/2013 - 08:27:57 RSHAD . (...) -- C:\Windows\System32\perfc009.dat [121080] O44 - LFC:[MD5.F122BD59EB0134F9FCE10C17FC69B189] - 08/09/2013 - 08:27:57 RSHAD . (...) -- C:\Windows\System32\perfc00C.dat [148792] O44 - LFC:[MD5.22E487183D789D50B7307A8BE6661C0D] - 08/09/2013 - 08:27:57 RSHAD . (...) -- C:\Windows\System32\perfh009.dat [652148] O44 - LFC:[MD5.660DA803EC55648BC3B6C2BAFE64296A] - 08/09/2013 - 08:27:57 RSHAD . (...) -- C:\Windows\System32\perfh00C.dat [745306] O44 - LFC:[MD5.A0EBAC691D0E5D22D7DFC88A54156596] - 08/09/2013 - 08:07:59 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.B7D97445026861921ACB0208994000F8] - 07/09/2013 - 19:41:59 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.90C6154A5079813FC8E76DB00BAB90C3] - 07/09/2013 - 18:25:44 ---A- . (...) -- C:\AdwCleaner[S5].txt [1912] O44 - LFC:[MD5.B8DDA83A111CFC048311FCA9375AD8B8] - 07/09/2013 - 18:25:18 ---A- . (...) -- C:\AdwCleaner[R8].txt [1850] O44 - LFC:[MD5.C5F991A648246E50FBE7287E2A9AE2E8] - 01/09/2013 - 14:00:25 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [511816] O44 - LFC:[MD5.C5F991A648246E50FBE7287E2A9AE2E8] - 01/09/2013 - 14:00:25 RSHAD . (...) -- C:\Windows\System32\FNTCACHE.DAT [511816] O44 - LFC:[MD5.8633E6F8E210F523A5EA534D7D41785E] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\AtherosBt.bin [246804] O44 - LFC:[MD5.FA2753F17F370B53E45B2DA08CA03AF8] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020200_26.dfu [1198] O44 - LFC:[MD5.9DBF31A07F743E2D33BB777A1A6D287F] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020200_26_0x01.dfu [1192] O44 - LFC:[MD5.80666B52594FB361E1F4C52936BDB5A9] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020200_40.dfu [1204] O44 - LFC:[MD5.311CE8A4A84FBBA0F3D25FE6EB6F995C] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020200_40_0x01.dfu [1242] O44 - LFC:[MD5.9CCE415C61EE1D14763489E263251057] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020200_40_0x02.dfu [1204] O44 - LFC:[MD5.E1387FB4CBDA444B0947C129C1DA7C6E] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020200_40_0x03.dfu [1214] O44 - LFC:[MD5.374C3B4658D6E5B9E4ADAB9B9D7DF779] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020200_40_0x04.dfu [1228] O44 - LFC:[MD5.A59CCEDB29A5C570C7535CA90C2C5927] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020201_26.dfu [264] O44 - LFC:[MD5.12D43FA7FDBEF530CC17B19E291B1B85] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020201_26_0x01.dfu [264] O44 - LFC:[MD5.A59CCEDB29A5C570C7535CA90C2C5927] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020201_40.dfu [264] O44 - LFC:[MD5.966BE448D13456894898C00B34DC411F] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020201_40_0x01.dfu [296] O44 - LFC:[MD5.96A0C36CDCA560EED72FB6C18E2ED2B9] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020201_40_0x02.dfu [264] O44 - LFC:[MD5.12D43FA7FDBEF530CC17B19E291B1B85] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020201_40_0x03.dfu [264] O44 - LFC:[MD5.40C0EF284C52AB702822CC9D77854627] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x01020201_40_0x04.dfu [278] O44 - LFC:[MD5.C86BF260A67AC9A3BF09A015DFF37DD8] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x11020000_40.dfu [1796] O44 - LFC:[MD5.A192E429EB914C951178C84D4E13C7C9] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x11020000_40_cs01.dfu [1768] O44 - LFC:[MD5.6F24610F336846134C051A9652D602BB] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x11020000_40_cs02.dfu [1796] O44 - LFC:[MD5.604E8B8315787A95DFF7295086CE9833] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x31010000_40.dfu [1926] O44 - LFC:[MD5.0E5EB68DDFCAADD1773F88F941A5BDA6] - 31/08/2013 - 05:31:40 RSHAD . (...) -- C:\Windows\System32\Drivers\ramps_0x31010000_40_dc01.dfu [1516] O44 - LFC:[MD5.947AEA92989FFA16426725F9B94B99CD] - 31/08/2013 - 05:29:49 RSHAD . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\Drivers\athrx.sys [3851776] O44 - LFC:[MD5.35EC4F4005B922DB97577CFA53863B78] - 28/08/2013 - 19:55:07 ---A- . (...) -- C:\AdwCleaner[S4].txt [2161] O44 - LFC:[MD5.BD63E8E6275A0D6E24919F15F13C1BD5] - 28/08/2013 - 19:54:33 ---A- . (...) -- C:\AdwCleaner[R7].txt [2098] ~ Files: 40 Scanned in 00mn 05s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.E7576E54865BD409243C38A6B0183C40] - 07/09/2013 - 08:51:24 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.3CACB9165AA4CB202B0E76B1C03E2785] - 07/09/2013 - 20:04:39 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-18FC9E64.pf O45 - LFCP:[MD5.EB4B56136A8F0B51258FC2721D821DBB] - 07/09/2013 - 20:28:42 ---A- - C:\Windows\Prefetch\MPC-HC.EXE-637A8474.pf O45 - LFCP:[MD5.825B2CDA28A7A2528E415838FB33D0BA] - 08/09/2013 - 02:40:29 ---A- - C:\Windows\Prefetch\CVTRES.EXE-F4BA0E72.pf O45 - LFCP:[MD5.94A0A0F4FC86C91610B505CBD6C41D05] - 08/09/2013 - 02:40:30 ---A- - C:\Windows\Prefetch\CSC.EXE-0E09149C.pf O45 - LFCP:[MD5.10382B0915C4F33941F176A5930D2D3D] - 08/09/2013 - 02:40:57 ---A- - C:\Windows\Prefetch\VSSVC.EXE-6C8F0C66.pf O45 - LFCP:[MD5.E2FFBCA0E67FA41CBA30F06B137078BE] - 08/09/2013 - 04:00:01 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-4048402C.pf O45 - LFCP:[MD5.E8C8DF07F5D7C779DD1016C7ED56CDF7] - 08/09/2013 - 04:39:34 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.498B15880DAA68BB60D7BF2A1B16DB3A] - 08/09/2013 - 04:59:38 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-2C9109F9.pf O45 - LFCP:[MD5.759E91AC0FB034BC6763504F64491483] - 08/09/2013 - 05:13:13 ---A- - C:\Windows\Prefetch\AVAST01.SETUP-CF415F58.pf O45 - LFCP:[MD5.A7E0AFA322F63D95560B9F32483BBB80] - 08/09/2013 - 05:13:22 ---A- - C:\Windows\Prefetch\SETUP.OVR-AB8436B3.pf O45 - LFCP:[MD5.FF87C89500B46DDA639C5DA3B6A74F08] - 08/09/2013 - 05:13:33 ---A- - C:\Windows\Prefetch\AVASTEMUPDATE.EXE-BE6307C0.pf O45 - LFCP:[MD5.E5BC1B1111A86DB602135665735A0FB4] - 08/09/2013 - 07:15:11 ---A- - C:\Windows\Prefetch\AVAST.SETUP-0144B743.pf O45 - LFCP:[MD5.CB5FB8945B75AA8FF16C0E9324AE929E] - 08/09/2013 - 07:15:30 ---A- - C:\Windows\Prefetch\AVBUGREPORT.EXE-90230411.pf O45 - LFCP:[MD5.C0E012FE411B8717A2035FDD27CD72E7] - 08/09/2013 - 08:06:20 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-D096D5BE.pf O45 - LFCP:[MD5.B97D7F4A8F8D9BE1828251800CBFF12F] - 08/09/2013 - 08:06:53 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-F639BD7E.pf O45 - LFCP:[MD5.DED2DA6E0032C350A1710D6ABD3BC583] - 08/09/2013 - 08:07:13 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-1442920633-1222716461-456443989-1001.db O45 - LFCP:[MD5.1F8A198CC09F02B0298F3AEC19A4E8CA] - 08/09/2013 - 08:07:13 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-1442920633-1222716461-456443989-1001.db O45 - LFCP:[MD5.7906843E32C076F91585624168101E35] - 08/09/2013 - 08:07:27 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.A2DF87B1AA6DCF8C85C7243AC1E91015] - 08/09/2013 - 08:09:19 ---A- - C:\Windows\Prefetch\MBAMGUI.EXE-DE4DD695.pf O45 - LFCP:[MD5.E3430B59144602EDC80346C279EC1823] - 08/09/2013 - 08:09:19 ---A- - C:\Windows\Prefetch\OAWRAPPER.EXE-1764A57B.pf O45 - LFCP:[MD5.5980CDF8EC771C36DD8A2550437C7515] - 08/09/2013 - 08:09:19 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-FB4EF753.pf O45 - LFCP:[MD5.0D26A768F11FA3963B10B6915A94551D] - 08/09/2013 - 08:09:54 ---A- - C:\Windows\Prefetch\SKYPE.EXE-A716A034.pf O45 - LFCP:[MD5.6A67C2BB00249935FA032E7B5BB34A26] - 08/09/2013 - 08:10:14 ---A- - C:\Windows\Prefetch\FIREFOX.EXE-359C61A4.pf O45 - LFCP:[MD5.8DFCF8F91756E21E1F31287E30138BA9] - 08/09/2013 - 08:10:40 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-8CE1A322.pf O45 - LFCP:[MD5.550372E478DE1C217E3272B267294DB2] - 08/09/2013 - 08:10:41 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-16B291C4.pf O45 - LFCP:[MD5.2D0049581A193378E526578C9E61CA07] - 08/09/2013 - 08:10:47 ---A- - C:\Windows\Prefetch\CSC.EXE-F8803EEA.pf O45 - LFCP:[MD5.37296033409C6D14685920B7A99965D6] - 08/09/2013 - 08:10:47 ---A- - C:\Windows\Prefetch\CVTRES.EXE-CB8485B0.pf O45 - LFCP:[MD5.B89EB69C69C24E195AEF75A1C0385390] - 08/09/2013 - 08:10:51 ---A- - C:\Windows\Prefetch\IASTORDATAMGRSVC.EXE-C93872B4.pf O45 - LFCP:[MD5.0E5818D21CC95636916100682297BE6E] - 08/09/2013 - 08:10:54 ---A- - C:\Windows\Prefetch\LMS.EXE-E687E9C2.pf O45 - LFCP:[MD5.26201C1D05DE57A93C34EC2E25037A79] - 08/09/2013 - 08:10:57 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-F31BDE28.pf O45 - LFCP:[MD5.72E9EA9DCF3F8141BCB2DCB530F6E78C] - 08/09/2013 - 08:11:02 ---A- - C:\Windows\Prefetch\UNS.EXE-40FB88B6.pf O45 - LFCP:[MD5.C016D65529B89B75AA73E6EBAA253220] - 08/09/2013 - 08:13:31 ---A- - C:\Windows\Prefetch\DELAYLOAD.EXE-ABD9F52C.pf O45 - LFCP:[MD5.2B0ADFD1A76061A055F0A6C7F015B344] - 08/09/2013 - 08:13:31 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-63B92852.pf O45 - LFCP:[MD5.07924CDD8A6ABD731C7AB9D1048B0537] - 08/09/2013 - 08:13:48 ---A- - C:\Windows\Prefetch\CLEAR.FIMOVIESERVICE.EXE-80711C0A.pf O45 - LFCP:[MD5.CCE8798B27673EB2F8B88C263F057D7B] - 08/09/2013 - 08:13:49 ---A- - C:\Windows\Prefetch\PCEE4.EXE-98ED232C.pf O45 - LFCP:[MD5.1BF9D5FD601259AB749280582C7C20BF] - 08/09/2013 - 08:13:51 ---A- - C:\Windows\Prefetch\NUSB3MON.EXE-E62D700C.pf O45 - LFCP:[MD5.9E98235851E3CB240DC3EFAD40B8494D] - 08/09/2013 - 08:13:52 ---A- - C:\Windows\Prefetch\SUITETRAY.EXE-42757614.pf O45 - LFCP:[MD5.7A585619EFBD524F9C361DFDFE06C41E] - 08/09/2013 - 08:13:53 ---A- - C:\Windows\Prefetch\HKCMD.EXE-61FD4888.pf O45 - LFCP:[MD5.650F8FBF88140653D39EFB768DAE9116] - 08/09/2013 - 08:13:53 ---A- - C:\Windows\Prefetch\IGFXPERS.EXE-540AA77D.pf O45 - LFCP:[MD5.B66E26AF5A20410B53E3A3DDB9A6AD24] - 08/09/2013 - 08:13:54 ---A- - C:\Windows\Prefetch\IGFXTRAY.EXE-F30110F3.pf O45 - LFCP:[MD5.A4F840BEBC62C4B048D59336CECD4C5E] - 08/09/2013 - 08:13:55 ---A- - C:\Windows\Prefetch\NVTMRU.EXE-5A733740.pf O45 - LFCP:[MD5.FBDA8F8B1AE39C995DD35DF91D59438F] - 08/09/2013 - 08:16:18 ---A- - C:\Windows\Prefetch\FLASHPLAYERPLUGIN_11_8_800_94-7AFAE2A8.pf O45 - LFCP:[MD5.7D9417B4B55C024976800F52493C40EC] - 08/09/2013 - 08:16:18 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-6B605020.pf O45 - LFCP:[MD5.73016E619F885D5A8DB5784330DE1CE0] - 08/09/2013 - 08:18:03 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-0E1E7B82.pf O45 - LFCP:[MD5.FDC0C597E320E870C3A02FDE9FD2D9DE] - 08/09/2013 - 08:18:51 ---A- - C:\Windows\Prefetch\NOTIFICATION.EXE-83D8AB21.pf O45 - LFCP:[MD5.60AC280F94CE4C8878E434806EFFAD78] - 08/09/2013 - 08:20:14 ---A- - C:\Windows\Prefetch\UTORRENT.EXE-6E5D8F04.pf =>P2P.µTorrent O45 - LFCP:[MD5.0B4296C99C9D91EF8ACCDA0470F10663] - 08/09/2013 - 08:21:28 ---A- - C:\Windows\Prefetch\WERMGR.EXE-F439C551.pf O45 - LFCP:[MD5.526C55323F86E3535018F07202DB39BC] - 08/09/2013 - 08:21:38 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-31898C74.pf O45 - LFCP:[MD5.4BB3E183E5C68BAC0C90F293E8F474F1] - 08/09/2013 - 08:22:11 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-0D53616E.pf O45 - LFCP:[MD5.3F3CB39A1AADD2B1F485E9C0406E2E62] - 08/09/2013 - 08:22:42 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-D9DCD0F3.pf O45 - LFCP:[MD5.7BF937E093DD169915B340D0968E0139] - 08/09/2013 - 08:22:54 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-851C5C91.pf O45 - LFCP:[MD5.FB6B3AD8E2B3A01712C696288EA892E3] - 08/09/2013 - 08:23:00 ---A- - C:\Windows\Prefetch\UNINSTALLPROMOTE.EXE-92E75CE0.pf O45 - LFCP:[MD5.7952C78F2B0ECA28A6B2B76F5C2686B3] - 08/09/2013 - 08:23:07 ---A- - C:\Windows\Prefetch\UNINS000.EXE-0C0CDB2A.pf O45 - LFCP:[MD5.FE66BD5E2DA0FA5D520802C0B455A2D1] - 08/09/2013 - 08:23:09 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-E8C05B74.pf O45 - LFCP:[MD5.98BD794217B879E2EE0A8BA95377FEBC] - 08/09/2013 - 08:23:45 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-D49D3641.pf O45 - LFCP:[MD5.EBC657D1F7148FDF9226E547B6895183] - 08/09/2013 - 08:26:20 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-BB21CD77.pf O45 - LFCP:[MD5.B850DC6219EF38D70C0C8FC4A56FEEE2] - 08/09/2013 - 08:27:38 ---A- - C:\Windows\Prefetch\XCUPDATE.EXE-11168812.pf O45 - LFCP:[MD5.02204C26501FAB5A6C32B2DD3E4C6728] - 08/09/2013 - 08:28:00 ---A- - C:\Windows\Prefetch\MBAM.EXE-493D9B94.pf O45 - LFCP:[MD5.A149DBAFA34860D1859D29C2C2BE1153] - 08/09/2013 - 08:28:31 ---A- - C:\Windows\Prefetch\ASC-SETUP.TMP-13758439.pf O45 - LFCP:[MD5.A9A61A0635972F7C7320C4CC784EFAA2] - 08/09/2013 - 08:28:32 ---A- - C:\Windows\Prefetch\ASCUPGRADE.EXE-17EA2253.pf O45 - LFCP:[MD5.ED627E5AA60C163702E0A6716027F786] - 08/09/2013 - 08:28:33 ---A- - C:\Windows\Prefetch\ASC-SETUP.EXE-C84D4257.pf O45 - LFCP:[MD5.000B6024AE799BD566E38DFF73B8B815] - 08/09/2013 - 08:28:35 ---A- - C:\Windows\Prefetch\ASC-SETUP.TMP-512DF0B8.pf O45 - LFCP:[MD5.623EB909046C023F14D8CDF8F4442B88] - 08/09/2013 - 08:29:05 ---A- - C:\Windows\Prefetch\TOOLBARACCEPTRATE.EXE-318442D3.pf O45 - LFCP:[MD5.01D3B6A984250B3DD049E458A72F963E] - 08/09/2013 - 08:29:34 ---A- - C:\Windows\Prefetch\SC.EXE-F4E1A8F7.pf O45 - LFCP:[MD5.77A0B38062D7CCEC8A2670390E6638AF] - 08/09/2013 - 08:29:34 ---A- - C:\Windows\Prefetch\WIZARD.EXE-9440F1DE.pf O45 - LFCP:[MD5.069AF3F7AF35D2013D3C8477220056BB] - 08/09/2013 - 08:29:36 ---A- - C:\Windows\Prefetch\NITROPDFTHUMBNAILHELPER.EXE-041D977D.pf O45 - LFCP:[MD5.CB2BC6BBEB85EB47E745060FFDE98864] - 08/09/2013 - 08:31:01 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-0129C0B2.pf O45 - LFCP:[MD5.576F0CBFA3645F4302A360E52B1DE7B5] - 08/09/2013 - 08:31:10 ---A- - C:\Windows\Prefetch\TASKENG.EXE-35FA9C06.pf O45 - LFCP:[MD5.F9762493ED9603F6CFE46AE763C94ADE] - 08/09/2013 - 08:31:18 ---A- - C:\Windows\Prefetch\REGISTER.EXE-604DD8F2.pf O45 - LFCP:[MD5.DE36E719A81646A8ED923F0B52EB9FCF] - 08/09/2013 - 08:31:18 ---A- - C:\Windows\Prefetch\REMINDER.EXE-CB45AD2F.pf O45 - LFCP:[MD5.C438B1716B932B406F208EA2BEA67B0F] - 08/09/2013 - 08:33:52 ---A- - C:\Windows\Prefetch\ASCPATCH.EXE-A5C78EF4.pf O45 - LFCP:[MD5.B9241854D5B893AC37685B2B9CD010E8] - 08/09/2013 - 08:33:55 ---A- - C:\Windows\Prefetch\ASCUPGRADE.EXE-462CE0FD.pf O45 - LFCP:[MD5.19EA99A88B5CBB1610C6F0510476CAA5] - 08/09/2013 - 08:33:58 ---A- - C:\Windows\Prefetch\ASCPATCH.TMP-D7F4DE89.pf O45 - LFCP:[MD5.F69E42EC2EA1E9BD8D37BF64F59EE8F9] - 08/09/2013 - 08:34:09 ---A- - C:\Windows\Prefetch\UPGRADETIP.EXE-1365AC02.pf O45 - LFCP:[MD5.61B84AE918D54A3E1E1006A1A068D017] - 08/09/2013 - 08:34:15 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-03D3FB87.pf O45 - LFCP:[MD5.606C3A9A74A8FF02FD34CB82056A1E4B] - 08/09/2013 - 08:34:17 ---A- - C:\Windows\Prefetch\PROTIP.EXE-39A626F7.pf O45 - LFCP:[MD5.A0AF8C9256F12D3A9F78752E360626FB] - 08/09/2013 - 08:34:21 ---A- - C:\Windows\Prefetch\ASCINIT.EXE-B93BBAD8.pf O45 - LFCP:[MD5.99DA509846389FE801320D9184333B3D] - 08/09/2013 - 08:34:21 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-B31EC963.pf O45 - LFCP:[MD5.1D4A61D059572DA4FD0A53FE130B7749] - 08/09/2013 - 08:34:22 ---A- - C:\Windows\Prefetch\UNINSTALLPROMOTE.EXE-BEC988D9.pf O45 - LFCP:[MD5.38D5A39C7D186FE153CA49215CB30AB1] - 08/09/2013 - 08:34:26 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-A010D183.pf O45 - LFCP:[MD5.9D6823B69220EA8B89C88F7B2D40B1D3] - 08/09/2013 - 08:34:28 ---A- - C:\Windows\Prefetch\ASCSERVICE.EXE-8AEFEC39.pf O45 - LFCP:[MD5.899886201FFD3C95FDAC04E778503FA1] - 08/09/2013 - 08:34:32 ---A- - C:\Windows\Prefetch\PERFORMUPDATE.EXE-5FA7A64F.pf O45 - LFCP:[MD5.DEC6C5B3955562BE71146A90586D0EEE] - 08/09/2013 - 08:34:34 ---A- - C:\Windows\Prefetch\ASC.EXE-D33E3A14.pf O45 - LFCP:[MD5.334E1C4918B2762872B093012643CCC7] - 08/09/2013 - 08:34:36 ---A- - C:\Windows\Prefetch\ASCTRAY.EXE-2B681D0C.pf O45 - LFCP:[MD5.C660344CD550E809730F263643CCC5C2] - 08/09/2013 - 08:34:40 ---A- - C:\Windows\Prefetch\AUTOUPDATE.EXE-3AEFF4CD.pf O45 - LFCP:[MD5.49EE73DEAB7DB4C64ABF33DBC4AF5D0D] - 08/09/2013 - 08:34:47 ---A- - C:\Windows\Prefetch\AUTOSWEEP.EXE-0DBB95DA.pf O45 - LFCP:[MD5.C038F1F96B4309628B503714E0F6974E] - 08/09/2013 - 08:37:51 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-C5670914.pf O45 - LFCP:[MD5.C31D18C71752F6D3C21973CAF66D0BBF] - 08/09/2013 - 08:38:11 ---A- - C:\Windows\Prefetch\DISKSCAN.EXE-20CCD9A9.pf O45 - LFCP:[MD5.A6C00C6710B6EE4DE84752F36E0D7B37] - 08/09/2013 - 08:38:59 ---A- - C:\Windows\Prefetch\EXTREMECOPY.EXE-82900ADD.pf O45 - LFCP:[MD5.EF180C188E55928EDCD2372956CC3BDF] - 08/09/2013 - 08:40:24 ---A- - C:\Windows\Prefetch\WINRAR.EXE-BA8CDB31.pf O45 - LFCP:[MD5.297207248A8D317F864CFCB7DDBF6D56] - 08/09/2013 - 08:41:00 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-766EFF52.pf O45 - LFCP:[MD5.79D37FA9D1E9AC982F1642FCC1404DF0] - 08/09/2013 - 08:42:08 ---A- - C:\Windows\Prefetch\ASCTOOLTIPS.EXE-EBDE31D2.pf O45 - LFCP:[MD5.578E09C47188B11819D50820188B287F] - 08/09/2013 - 08:42:11 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-3C4E5BEC.pf O45 - LFCP:[MD5.8BB341DAC994351E46705C487D8F2C58] - 08/09/2013 - 08:42:35 ---A- - C:\Windows\Prefetch\SUO10_SMARTRAM.EXE-4D0C3ECF.pf O45 - LFCP:[MD5.C608585A1B27F8095914D92A716FC428] - 08/09/2013 - 08:42:58 ---A- - C:\Windows\Prefetch\MONITOR.EXE-BFFA42D9.pf O45 - LFCP:[MD5.36C51C6CC92BB5BF5FED123FD66C39D0] - 08/09/2013 - 08:44:21 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.806C56154B5598E8FA7904D4EB5F643B] - 08/09/2013 - 08:44:21 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.40C39CD40BA060A4AC0CDF734C6263D0] - 08/09/2013 - 08:44:22 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.4C22EAD868798D66A2B2E272663B58B2] - 08/09/2013 - 08:44:22 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.D26AFBFBBDD67086A2A7EDBF433E4B10] - 08/09/2013 - 08:55:34 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-AB22E9A6.pf O45 - LFCP:[MD5.BDE2B2790EF1D462459EA3F382CE7A5E] - 08/09/2013 - 08:56:20 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-155E48EE.pf O45 - LFCP:[MD5.00CD3B91D07227B7C6B4CC5E0BAE4908] - 08/09/2013 - 08:56:21 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-3AA71879.pf O45 - LFCP:[MD5.C34D4DCF2ED1A1FB36BC79A03332CC3F] - 08/09/2013 - 08:56:31 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4B6CB38A.pf O45 - LFCP:[MD5.30190538EBC16CE4B0D79EBE91551658] - 08/09/2013 - 08:56:35 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-44162447.pf O45 - LFCP:[MD5.7E40D4D57D9FA953011B01DAD5EA466E] - 08/09/2013 - 08:56:35 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-69C456C3.pf O45 - LFCP:[MD5.A861D99BBFD1FFF8825695C5E5C5E1C5] - 08/09/2013 - 08:58:46 ---A- - C:\Windows\Prefetch\NVTRAY.EXE-39D19720.pf O45 - LFCP:[MD5.ED379183B662753849006D49A04D0BE7] - 08/09/2013 - 08:58:47 ---A- - C:\Windows\Prefetch\CONSENT.EXE-40419367.pf O45 - LFCP:[MD5.B2C028BBF66AAAE7FDA3EB90628A1678] - 08/09/2013 - 08:58:49 ---A- - C:\Windows\Prefetch\COMUPDATUS.EXE-E6BB398D.pf O45 - LFCP:[MD5.B70145B9472778DA709AABFA5997949D] - 08/09/2013 - 08:58:49 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-257D8644.pf O45 - LFCP:[MD5.0A2C3F1EF6B512DE37ADEE581CD677E7] - 08/09/2013 - 08:58:51 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-A0F5E092.pf O45 - LFCP:[MD5.4D72ED25F2006F703A7325C3FAB132D9] - 08/09/2013 - 08:58:52 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6389524F.pf O45 - LFCP:[MD5.3B1450BAA01C5EED12F66601AFF9562D] - 08/09/2013 - 08:58:57 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-E8B8DD29.pf O45 - LFCP:[MD5.543E3B64262F6D83CBAF3E063FB25EFC] - 08/09/2013 - 08:59:00 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-6A1D0894.pf O45 - LFCP:[MD5.ED3AE3295118E0E7447B4D38E4669D93] - 08/09/2013 - 08:59:08 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-960426D8.pf O45 - LFCP:[MD5.D178536D831DBFEB263B3658CE39B8BA] - 08/09/2013 - 08:59:13 ---A- - C:\Windows\Prefetch\CONHOST.EXE-0C6456FB.pf O45 - LFCP:[MD5.1668DB29196FFF216C7D2C8E322E5875] - 08/09/2013 - 08:59:13 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-FCD9ABA9.pf O45 - LFCP:[MD5.C0B0DC734163C07244E542240F254BA0] - 08/09/2013 - 08:59:19 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-39F97B2D.pf O45 - LFCP:[MD5.5E66E74F04AF56D5A827A7899614D33D] - 08/09/2013 - 08:59:20 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-96070FE0.pf O45 - LFCP:[MD5.4673C3CBE32E6F6A9CB08980C9A42313] - 08/09/2013 - 08:59:30 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-6E1A6101.pf O45 - LFCP:[MD5.D3E56F7C6D5D2B86A85F50E1CD9BDCE2] - 08/09/2013 - 09:00:08 ---A- - C:\Windows\Prefetch\PV.EXE-0748338F.pf O45 - LFCP:[MD5.3213BB2A0391EAB9E1A8091614E64D44] - 08/09/2013 - 09:00:23 ---A- - C:\Windows\Prefetch\CMD.EXE-6D6290C5.pf O45 - LFCP:[MD5.58B43E4699E6AFDCD69325E299A2CE5D] - 08/09/2013 - 09:00:23 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-3DCC0576.pf O45 - LFCP:[MD5.F30E833F257367435FAA5BF6481CFBB0] - 08/09/2013 - 09:00:34 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-DC1676CD.pf O45 - LFCP:[MD5.A8AC81106D1012DF35DFFFBFD504F7C7] - 09/08/2013 - 23:27:39 ---A- - C:\Windows\Prefetch\AgCx_SC3_F9827BC4F5CBFF9A.db O45 - LFCP:[MD5.D5CBC2D8CA56E023580C59B947A0B4B2] - 22/08/2013 - 16:02:16 ---A- - C:\Windows\Prefetch\AgCx_SC4.db O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 22/10/2241 - 07:49:03 - C:\Windows\Prefetch\ReadyBoot O45 - LFCP:[MD5.E55E2BE08D9B5C197B8CCCA96A1AB98A] - 30/08/2013 - 07:11:42 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.7CB77D41DFAF13F79C2848A77A50F040] - 30/08/2013 - 07:11:50 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-1442920633-1222716461-456443989-1001.snp.db O45 - LFCP:[MD5.3362F576AD2ACAD87492D54AB813E5FD] - 30/08/2013 - 11:14:47 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.7C211FED1EFB56B0B37CC3E709A4E79A] - 30/08/2013 - 19:14:22 ---A- - C:\Windows\Prefetch\AgCx_SC2.db ~ Prefetcher: 131 Scanned in 00mn 02s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll ~ LSA: 9 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ Clé de registre Shell MountPoints2 (MPKS) (O51) O51 - MPSK:{88631e83-cb1a-11e2-8059-b870f4fad2d4}\AutoRun\command. (...) -- E:\Setup.exe (.not file.) ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe O53 - SMSR:HKLM\...\startupreg\ArcadeMovieService [Key] . (.CyberLink Corp. - clear.fi Movie Resident Program.) -- c:\program files (x86)\acer\clear.fi\movie\clear.fimovieservice.exe O53 - SMSR:HKLM\...\startupreg\BackupManagerTray [Key] . (.NTI Corporation - Acer Backup Manager.) -- c:\program files (x86)\nti\acer backup manager\backupmanagertray.exe O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- c:\program files (x86)\daemon tools lite\dtlite.exe O53 - SMSR:HKLM\...\startupreg\Dolby Advanced Audio v2 [Key] . (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- c:\dolby pcee4\pcee4.exe O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- c:\windows\system32\hkcmd.exe O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- c:\windows\system32\igfxtray.exe O53 - SMSR:HKLM\...\startupreg\Norton Online Backup [Key] . (.Symantec Corporation - Norton Online Backup Service.) -- c:\program files (x86)\symantec\norton online backup\nobuclient.exe O53 - SMSR:HKLM\...\startupreg\NUSB3MON [Key] . (.Renesas Electronics Corporation - USB 3.0 Monitor.) -- c:\program files (x86)\renesas electronics\usb 3.0 host controller driver\application\nusb3mon.exe O53 - SMSR:HKLM\...\startupreg\Nvtmru [Key] . (.NVIDIA Corporation - NVIDIA NvTmru Application.) -- c:\program files (x86)\nvidia corporation\nvidia update core\nvtmru.exe O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- c:\windows\system32\igfxpers.exe O53 - SMSR:HKLM\...\startupreg\SuiteTray [Key] . (.Egis Technology Inc. - SuiteTray.) -- c:\program files (x86)\egistec mywinlockersuite\x86\suitetray.exe O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- c:\program files (x86)\common files\java\java update\jusched.exe ~ SMSR Keys: 15 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 16 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ~ MWPE Keys: 3 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 13/07/2009 - 22:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:[MD5.9131FE60ADFAB595C8DA53AD6A06AA31] - 02/01/2005 - 09:43:08 ---A- . (.INCA Internet Co., Ltd. - nProtect NPSC Kernel Mode Driver for NT.) -- C:\Windows\SysWOW64\npptNT2.sys [4682] ~ Drivers: 16 Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 03/06/2026 - 11:06:26 ---A- . (...) -- C:\Users\admin\Music\CARNAVAL\carnaval 2011\COLIN\S1032472.JPG [2565814] O61 - LFC: 03/06/2026 - 11:54:54 ---A- . (...) -- C:\Users\admin\Music\CARNAVAL\carnaval 2011\COLIN\S1032502.JPG [2597160] O61 - LFC: 05/09/2013 - 00:05:57 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Que Sa Volonte Soit Faite S03E08 Vostfr.mp4 [277814491] O61 - LFC: 05/09/2013 - 00:09:32 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Que Sa Volonte Soit Faite S03E09 Vostfr.mp4 [287836096] O61 - LFC: 05/09/2013 - 00:59:54 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Manga Family] Love Lab - 09 vostfr HD.mp4 [280437001] O61 - LFC: 05/09/2013 - 01:14:56 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Manga Family] Love Lab - 08 vostfr HD.mp4 [291627358] O61 - LFC: 05/09/2013 - 01:33:55 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\DBI - Episode 9.mp4 [286698637] O61 - LFC: 05/09/2013 - 02:58:26 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Kast-fs] Fate Kaleid Liner Prisma Ilya 07 (960x540).avi [300877498] O61 - LFC: 05/09/2013 - 03:58:27 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Kast-fs] Fate Kaleid Liner Prisma Ilya 08 (960x540).avi [305454482] O61 - LFC: 05/09/2013 - 04:30:27 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 19 Vostfr.avi [179104504] O61 - LFC: 05/09/2013 - 05:04:20 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 03 Vostfr.avi [179929418] O61 - LFC: 05/09/2013 - 05:06:38 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 04 Vostfr.avi [179908660] O61 - LFC: 05/09/2013 - 05:20:14 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 11.mp4 [208602922] O61 - LFC: 05/09/2013 - 05:21:40 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 01v2 Vostfr.avi [179920850] O61 - LFC: 05/09/2013 - 05:28:54 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 04.mp4 [209586135] O61 - LFC: 05/09/2013 - 05:30:16 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 07.mp4 [209520414] O61 - LFC: 05/09/2013 - 05:32:25 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 05.mp4 [209558054] O61 - LFC: 05/09/2013 - 05:33:57 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 09.mp4 [215905067] O61 - LFC: 05/09/2013 - 05:34:43 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 01.mp4 [209608852] O61 - LFC: 05/09/2013 - 05:35:33 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 06.mp4 [209565592] O61 - LFC: 05/09/2013 - 05:35:58 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 03.mp4 [215910396] O61 - LFC: 05/09/2013 - 05:36:24 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 02.mp4 [215894029] O61 - LFC: 05/09/2013 - 05:36:34 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 08.mp4 [209601479] O61 - LFC: 05/09/2013 - 05:36:34 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tokyo Magnitude 8.0\Tokyo Magnitude 8.0 - 10.mp4 [209565811] O61 - LFC: 05/09/2013 - 06:13:01 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 21 Vostfr.avi [177482182] O61 - LFC: 05/09/2013 - 06:13:21 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 22v3 Vostfr.avi [181210888] O61 - LFC: 05/09/2013 - 06:20:05 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 07 Vostfr.avi [179906244] O61 - LFC: 05/09/2013 - 06:22:28 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 06 Vostfr.avi [179921490] O61 - LFC: 05/09/2013 - 06:22:58 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 24 [Fin] Vostfr.avi [180611794] O61 - LFC: 05/09/2013 - 06:23:16 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 13 Vostfr.avi [179297740] O61 - LFC: 05/09/2013 - 06:24:42 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 02v2 Vostfr.avi [179677258] O61 - LFC: 05/09/2013 - 06:25:00 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 16 Vostfr.avi [179119116] O61 - LFC: 05/09/2013 - 06:28:13 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 15v2 Vostfr.avi [179121578] O61 - LFC: 05/09/2013 - 06:28:31 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 18 Vostfr.avi [179108060] O61 - LFC: 05/09/2013 - 06:29:07 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 17 Vostfr.avi [179102388] O61 - LFC: 05/09/2013 - 06:29:26 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 08 Vostfr.avi [179296794] O61 - LFC: 05/09/2013 - 06:30:01 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 12 Vostfr.avi [179300734] O61 - LFC: 05/09/2013 - 06:30:36 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 10 Vostfr.avi [179277170] O61 - LFC: 05/09/2013 - 06:31:29 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 14 Vostfr.avi [179142756] O61 - LFC: 05/09/2013 - 06:32:04 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 23 Vostfr.avi [183007370] O61 - LFC: 05/09/2013 - 06:32:22 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 11 Vostfr.avi [179298554] O61 - LFC: 05/09/2013 - 06:32:40 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 05 Vostfr.avi [179916984] O61 - LFC: 05/09/2013 - 06:32:57 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 09 Vostfr.avi [179288522] O61 - LFC: 05/09/2013 - 06:33:05 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Lovely Complex\[HZF]Lovely Complex 20 Vostfr.avi [179133162] O61 - LFC: 05/09/2013 - 06:48:03 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[M-A] Fuse - Teppou musume no torimonochou [VOSTFR] [BDRIP] [720p].mkv.torrent [13872] =>P2P.µTorrent O61 - LFC: 05/09/2013 - 06:48:29 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\Tenchi Muyou Ryououki 2.torrent [11814] =>P2P.µTorrent O61 - LFC: 05/09/2013 - 06:48:40 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\Tenchi Muyou Ryououki.torrent [20743] =>P2P.µTorrent O61 - LFC: 05/09/2013 - 06:49:27 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\Erementar Gerad.torrent [49251] =>P2P.µTorrent O61 - LFC: 05/09/2013 - 10:34:40 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[M-A] Fuse - Teppou musume no torimonochou [VOSTFR] [BDRIP] [720p].mkv [1380580499] O61 - LFC: 05/09/2013 - 14:31:39 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Microsoft\Office\Word12.pip [1688] O61 - LFC: 05/09/2013 - 14:51:52 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[SwissBang]_Naruto_Shippuden_329_vostfr_[720p].mp4.torrent [29932] =>P2P.µTorrent O61 - LFC: 05/09/2013 - 14:52:10 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Arso1er] Blood Lad - 09 vostfr [720p].mp4.torrent [18781] =>P2P.µTorrent O61 - LFC: 05/09/2013 - 17:36:23 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Arso1er] Blood Lad - 09 vostfr [720p].mp4 [241605638] O61 - LFC: 05/09/2013 - 18:29:13 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[SwissBang]_Naruto_Shippuden_329_vostfr_[720p].mp4 [387744598] O61 - LFC: 05/09/2013 - 22:26:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Backup\ASCBackup32-2013-09-05(22-26-50).reg [40393] O61 - LFC: 05/09/2013 - 22:26:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Backup\ASCBackup64-2013-09-05(22-26-50).reg [183] O61 - LFC: 05/09/2013 - 22:26:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Log\ASCLog-2013-09-05(22-26-50).txt [92228] O61 - LFC: 05/09/2013 - 22:42:16 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki\Tenchi.Muyo.S.01.OAV.01.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [335394887] O61 - LFC: 05/09/2013 - 22:46:33 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki\Tenchi.Muyo.S.01.OAV.03.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [338314400] O61 - LFC: 05/09/2013 - 22:48:32 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki\Tenchi.Muyo.S.01.OAV.02.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [372552319] O61 - LFC: 05/09/2013 - 22:49:43 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki\Tenchi.Muyo.S.01.OAV.06.Final.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [340354775] O61 - LFC: 05/09/2013 - 22:50:00 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki\Tenchi.Muyo.S.01.OAV.04.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [338877580] O61 - LFC: 05/09/2013 - 22:50:12 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki\Tenchi.Muyo.S.01.OAV.05.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [337976270] O61 - LFC: 05/09/2013 - 22:57:29 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki 2\Tenchi.Muyo.S.02.OAV.07.Final.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [317853860] O61 - LFC: 05/09/2013 - 23:00:24 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki 2\Tenchi.Muyo.S.02.OAV.04.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [318738191] O61 - LFC: 05/09/2013 - 23:01:05 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki 2\Tenchi.Muyo.S.02.OAV.02.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [318920664] O61 - LFC: 05/09/2013 - 23:01:24 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki 2\Tenchi.Muyo.S.02.OAV.06.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [318259030] O61 - LFC: 05/09/2013 - 23:01:31 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki 2\Tenchi.Muyo.S.02.OAV.01.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [318960162] O61 - LFC: 05/09/2013 - 23:02:19 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki 2\Tenchi.Muyo.S.02.OAV.05.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [320383682] O61 - LFC: 05/09/2013 - 23:02:21 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Tenchi Muyou Ryououki 2\Tenchi.Muyo.S.02.OAV.03.Dvdrip.[NEON].[Fr.Jap-Sub.Fr].mkv [318299813] O61 - LFC: 06/09/2013 - 01:16:27 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 03.mp4 [235640271] O61 - LFC: 06/09/2013 - 01:20:00 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 01.mp4 [235698730] O61 - LFC: 06/09/2013 - 01:31:06 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 06.mp4 [235527151] O61 - LFC: 06/09/2013 - 01:34:21 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 05.mp4 [235585549] O61 - LFC: 06/09/2013 - 01:34:34 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 08.mp4 [255062403] O61 - LFC: 06/09/2013 - 01:34:48 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 05.mp4 [262313428] O61 - LFC: 06/09/2013 - 01:38:20 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 08.mp4 [261889294] O61 - LFC: 06/09/2013 - 01:40:33 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 10.mp4 [379957589] O61 - LFC: 06/09/2013 - 01:41:23 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 12.mp4 [379707829] O61 - LFC: 06/09/2013 - 01:42:33 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 02.mp4 [413075622] O61 - LFC: 06/09/2013 - 01:42:59 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 10.mp4 [247766810] O61 - LFC: 06/09/2013 - 01:43:28 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 01.mp4 [428821295] O61 - LFC: 06/09/2013 - 01:44:09 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 07.mp4 [377703471] O61 - LFC: 06/09/2013 - 01:44:22 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 11.mp4 [262156998] O61 - LFC: 06/09/2013 - 01:44:36 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 09.mp4 [256343683] O61 - LFC: 06/09/2013 - 01:45:03 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 09.mp4 [261732576] O61 - LFC: 06/09/2013 - 01:46:09 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 04.mp4 [235706031] O61 - LFC: 06/09/2013 - 01:46:22 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 06.mp4 [398308558] O61 - LFC: 06/09/2013 - 01:46:36 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 13.mp4 [261963121] O61 - LFC: 06/09/2013 - 01:46:49 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 07.mp4 [235694779] O61 - LFC: 06/09/2013 - 01:47:15 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 11.mp4 [277842029] O61 - LFC: 06/09/2013 - 01:47:28 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 03.mp4 [388415650] O61 - LFC: 06/09/2013 - 01:47:40 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 12.mp4 [250462455] O61 - LFC: 06/09/2013 - 01:47:54 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 02.mp4 [235777791] O61 - LFC: 06/09/2013 - 01:48:21 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 2\Working!!2 04.mp4 [388641844] O61 - LFC: 06/09/2013 - 01:48:34 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Working\Saison 1\Working!! 13.mp4 [235622626] O61 - LFC: 06/09/2013 - 04:49:40 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 04.rar [41352473] O61 - LFC: 06/09/2013 - 04:58:49 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 07.rar [41786754] O61 - LFC: 06/09/2013 - 05:00:32 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 03.rar [26958742] O61 - LFC: 06/09/2013 - 05:09:15 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 09.rar [60948172] O61 - LFC: 06/09/2013 - 05:09:31 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 19.zip [56075753] O61 - LFC: 06/09/2013 - 05:13:00 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 01.rar [40103823] O61 - LFC: 06/09/2013 - 05:13:35 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 10.rar [59912199] O61 - LFC: 06/09/2013 - 05:14:10 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 12.zip [91803537] O61 - LFC: 06/09/2013 - 05:14:45 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 16.rar [55054914] O61 - LFC: 06/09/2013 - 05:15:19 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 02.rar [50729111] O61 - LFC: 06/09/2013 - 05:15:39 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 08.rar [42813182] O61 - LFC: 06/09/2013 - 05:15:57 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 17.rar [63250744] O61 - LFC: 06/09/2013 - 05:16:14 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 05.rar [39930101] O61 - LFC: 06/09/2013 - 05:17:33 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 11.zip [66097969] O61 - LFC: 06/09/2013 - 05:18:10 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 15.zip [63993878] O61 - LFC: 06/09/2013 - 05:18:29 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 06.rar [39292810] O61 - LFC: 06/09/2013 - 05:18:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 18.rar [55648049] O61 - LFC: 06/09/2013 - 05:19:03 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 14.zip [59013926] O61 - LFC: 06/09/2013 - 05:19:21 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Ichigo 100%\Ichigo 100% 13.zip [59817572] O61 - LFC: 06/09/2013 - 06:51:56 ---A- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\AUTODESK.AUTOCAD.V2009.WIN32-ISO.torrent [12021] =>P2P.µTorrent O61 - LFC: 06/09/2013 - 08:46:38 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r12 [50000000] O61 - LFC: 06/09/2013 - 09:05:41 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r14 [50000000] O61 - LFC: 06/09/2013 - 09:12:42 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.sfv [667] O61 - LFC: 06/09/2013 - 09:12:42 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\nfo.nfo [817] O61 - LFC: 06/09/2013 - 09:15:34 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r09 [50000000] O61 - LFC: 06/09/2013 - 09:18:06 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r03 [50000000] O61 - LFC: 06/09/2013 - 09:20:21 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r06 [50000000] O61 - LFC: 06/09/2013 - 09:21:03 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r08 [50000000] O61 - LFC: 06/09/2013 - 09:22:53 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r02 [50000000] O61 - LFC: 06/09/2013 - 09:23:12 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r20 [50000000] O61 - LFC: 06/09/2013 - 09:23:58 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r10 [50000000] O61 - LFC: 06/09/2013 - 09:24:40 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r01 [50000000] O61 - LFC: 06/09/2013 - 09:25:04 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r17 [50000000] O61 - LFC: 06/09/2013 - 09:25:27 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r19 [50000000] O61 - LFC: 06/09/2013 - 09:25:50 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r18 [50000000] O61 - LFC: 06/09/2013 - 09:26:29 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r07 [50000000] O61 - LFC: 06/09/2013 - 09:27:25 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r00 [50000000] O61 - LFC: 06/09/2013 - 09:27:31 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r21 [23251655] O61 - LFC: 06/09/2013 - 09:27:46 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.rar [50000000] O61 - LFC: 06/09/2013 - 09:28:03 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r05 [50000000] O61 - LFC: 06/09/2013 - 09:28:31 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r15 [50000000] O61 - LFC: 06/09/2013 - 09:28:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r04 [50000000] O61 - LFC: 06/09/2013 - 09:29:11 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r13 [50000000] O61 - LFC: 06/09/2013 - 09:30:09 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r16 [50000000] O61 - LFC: 06/09/2013 - 09:30:16 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\AUTODESK.AUTOCAD.V2009.WIN32-ISO\acad_2k9_win32.r11 [50000000] O61 - LFC: 06/09/2013 - 15:48:17 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 19 [Yoso & Pacifica].avi [181972992] O61 - LFC: 06/09/2013 - 16:07:32 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 26 [Yoso & Pacifica].avi [188170240] O61 - LFC: 06/09/2013 - 16:09:03 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 23 [Yoso & Pacifica].avi [181979136] O61 - LFC: 06/09/2013 - 16:21:20 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 12 [Yoso & Pacifica].avi [181979136] O61 - LFC: 06/09/2013 - 16:21:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 11 [Chikuuji-Animes & Anime-Heart].avi [182956032] O61 - LFC: 06/09/2013 - 16:22:16 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 13 [Shirase-Team].avi [180092928] O61 - LFC: 06/09/2013 - 16:23:51 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 14 [Yoso & Pacifica].avi [181977088] O61 - LFC: 06/09/2013 - 16:25:25 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 17 [Yoso & Pacifica].avi [181979136] O61 - LFC: 06/09/2013 - 16:28:08 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 24 [Yoso & Pacifica].avi [181972992] O61 - LFC: 06/09/2013 - 16:29:07 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 08 [Chikuuji-Animes & Anime-Heart].avi [183244800] O61 - LFC: 06/09/2013 - 16:30:11 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 18 [Yoso & Pacifica].avi [181979136] O61 - LFC: 06/09/2013 - 16:30:38 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 15 [Yoso & Pacifica].avi [181979136] O61 - LFC: 06/09/2013 - 16:31:44 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 21 [Yoso & Pacifica].avi [181979136] O61 - LFC: 06/09/2013 - 16:32:42 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 06 [Zen Yaku].avi [183738368] O61 - LFC: 06/09/2013 - 16:33:14 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 16 [Yoso & Pacifica].avi [181977088] O61 - LFC: 06/09/2013 - 16:33:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 09 [Chikuuji-Animes & Anime-Heart].avi [183271424] O61 - LFC: 06/09/2013 - 16:34:45 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 07 [Chikuuji-Animes & Anime-Heart].avi [183367680] O61 - LFC: 06/09/2013 - 16:35:19 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 25 [Yoso & Pacifica].avi [181975040] O61 - LFC: 06/09/2013 - 16:35:45 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 22 [Yoso & Pacifica].avi [181983232] O61 - LFC: 06/09/2013 - 16:36:21 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 05 [Zen Yaku].avi [183707648] O61 - LFC: 06/09/2013 - 16:37:51 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 20 [Yoso & Pacifica].avi [181977088] O61 - LFC: 06/09/2013 - 16:38:18 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 10 [Chikuuji-Animes & Anime-Heart].avi [183244800] O61 - LFC: 06/09/2013 - 17:05:46 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 04 [Shirase Team].avi [178778112] O61 - LFC: 06/09/2013 - 17:07:17 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 01[Shirase Team].avi [180054016] O61 - LFC: 06/09/2013 - 17:08:17 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 02 [Zen Yaku].avi [183732224] O61 - LFC: 06/09/2013 - 17:08:39 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\Erementar Gerad\Erementar Gerad 03 [Shirase Team].avi [178794496] O61 - LFC: 07/09/2013 - 02:55:07 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Backup\ASCBackup32-2013-09-07(02-55-07).reg [28825] O61 - LFC: 07/09/2013 - 02:55:07 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Log\ASCLog-2013-09-07(02-55-07).txt [53988] O61 - LFC: 07/09/2013 - 03:04:11 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Ms-FR] Corpse Party - Tortured Souls - 04 - [VOSTFR] [BDRIP] [720p].mp4.torrent [14689] =>P2P.µTorrent O61 - LFC: 07/09/2013 - 03:07:29 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[SaMo-FanSub]_Fantasista_Doll_08_[VOSTFR_LQ].avi.torrent [15328] =>P2P.µTorrent O61 - LFC: 07/09/2013 - 03:07:40 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Kast-fs] Watashi ga Motenai no wa Dou Kangaetemo Omaera ga Warui 09 (960x540) (1).avi.torrent [11825] =>P2P.µTorrent O61 - LFC: 07/09/2013 - 03:58:57 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Kast-fs] Watashi ga Motenai no wa Dou Kangaetemo Omaera ga Warui 09 (960x540) (1).avi [299605428] O61 - LFC: 07/09/2013 - 04:00:16 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Ms-FR] Corpse Party - Tortured Souls - 04 - [VOSTFR] [BDRIP] [720p].mp4 [366732837] O61 - LFC: 07/09/2013 - 09:15:54 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Backup\ASCBackup32-2013-09-07(09-15-54).reg [2950] O61 - LFC: 07/09/2013 - 09:15:54 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Log\ASCLog-2013-09-07(09-15-53).txt [107574] O61 - LFC: 07/09/2013 - 09:31:28 ---A- . (...) -- C:\Users\admin\AppData\Local\Temp\Quarantine.exe [344583] O61 - LFC: 07/09/2013 - 09:58:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Temp\qtsingleapp-combli-839e-1-lockfile [0] O61 - LFC: 07/09/2013 - 15:00:50 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\DeviceCenterDiagnostic.0.debugreport.xml [3786] O61 - LFC: 07/09/2013 - 15:00:50 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\DeviceDiagnostic.0.debugreport.xml [11717] O61 - LFC: 07/09/2013 - 15:00:50 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\NetworkDiagnostics.0.debugreport.xml [1330] O61 - LFC: 07/09/2013 - 15:00:50 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\PrinterDiagnostic.0.debugreport.xml [1324] O61 - LFC: 07/09/2013 - 15:00:51 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\results.xsl [49097] O61 - LFC: 07/09/2013 - 15:01:24 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\DeviceCenterDiagnostic.1.debugreport.xml [3136] O61 - LFC: 07/09/2013 - 15:01:24 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\DeviceDiagnostic.1.debugreport.xml [8910] O61 - LFC: 07/09/2013 - 15:01:24 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\NetworkDiagnostics.1.debugreport.xml [1329] O61 - LFC: 07/09/2013 - 15:01:24 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\PrinterDiagnostic.1.debugreport.xml [1323] O61 - LFC: 07/09/2013 - 15:01:24 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\ResultReport.xml [56135] O61 - LFC: 07/09/2013 - 15:01:24 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\2013090718.000\results.xml [220] O61 - LFC: 07/09/2013 - 15:01:24 ---A- . (...) -- C:\Users\admin\AppData\Local\ElevatedDiagnostics\3493975886\latest.cab [15918] O61 - LFC: 07/09/2013 - 15:05:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Autodesk\ACD\2010\{5783F2D7-8001-040C-0102-0060B0CE6BBA}\18.0.55.0.0\MC3\Log\MC3Log [128] O61 - LFC: 07/09/2013 - 15:05:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Autodesk\MC3\ProdInd_UserDep.mc3 [646] O61 - LFC: 07/09/2013 - 15:57:14 ---A- . (...) -- C:\Users\admin\AppData\Local\Temp\vsimage.bmp [12634] O61 - LFC: 07/09/2013 - 17:07:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Autodesk\AutoCAD 2010\R18.0\fra\Support\RegisteredTools\AcTpTools.atc [6037] O61 - LFC: 07/09/2013 - 17:07:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Autodesk\AutoCAD 2010\R18.0\fra\Support\ToolPalette\AcTpCatalog.atc [6532] O61 - LFC: 07/09/2013 - 17:07:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Autodesk\AutoCAD 2010\R18.0\fra\Support\ToolPalette\AcTpMaterials.atc [2925] O61 - LFC: 07/09/2013 - 17:07:50 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Autodesk\AutoCAD 2010\R18.0\fra\Support\ToolPalette\Palettes\Modélisation_D6BC41CF-FCAA-4FF7-8CDD-64D952C632E0.atc [15727] O61 - LFC: 07/09/2013 - 17:07:51 ---A- . (...) -- C:\Users\admin\AppData\Local\Autodesk\AutoCAD 2010\R18.0\fra\Support\infocenter.xml [6394] O61 - LFC: 07/09/2013 - 17:07:51 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Autodesk\AutoCAD 2010\R18.0\fra\Support\Profiles\FixedProfile.aws [141] O61 - LFC: 07/09/2013 - 17:07:51 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Autodesk\AutoCAD 2010\R18.0\fra\Support\Profiles\Profil sans nom\Profile.aws [50774] O61 - LFC: 07/09/2013 - 18:23:53 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Log\ASCLog-2013-09-07(18-23-53).txt [3220] O61 - LFC: 07/09/2013 - 18:23:54 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Backup\ASCBackup32-2013-09-07(18-23-53).reg [286] O61 - LFC: 07/09/2013 - 18:23:54 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Backup\ASCBackup64-2013-09-07(18-23-53).reg [2294] O61 - LFC: 07/09/2013 - 18:24:15 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\CURRENT [16] O61 - LFC: 07/09/2013 - 18:24:15 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG [670] O61 - LFC: 07/09/2013 - 18:24:15 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\MANIFEST-000040 [1388] O61 - LFC: 07/09/2013 - 18:24:15 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Web Data [86016] O61 - LFC: 07/09/2013 - 18:24:16 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\kigfdicgjnpjkhbnngdfgjfffmdaonfg\2_0\Cached Theme.pak [1352852] O61 - LFC: 07/09/2013 - 18:24:21 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extension State\CURRENT [16] O61 - LFC: 07/09/2013 - 18:24:22 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000035 [720] O61 - LFC: 07/09/2013 - 18:24:23 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG [717] O61 - LFC: 07/09/2013 - 18:24:24 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Managed Mode Settings [8] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\iw\messages.json [17412] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\no\messages.json [11008] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\background.js [1368] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\load_symbols.js [2447] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name.js [13935] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_ar.js [54117] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_bg.js [51067] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_ca.js [15513] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_cs.js [19494] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_da.js [14038] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_de.js [15552] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_el.js [55324] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_en_gb.js [13942] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_es.js [15179] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_es_419.js [15179] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_fi.js [14370] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_fil.js [13992] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_fr.js [15435] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_hi.js [47597] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_hr.js [14656] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_hu.js [16140] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_id.js [13888] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_it.js [13943] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_iw.js [35117] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_ja.js [34352] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_ko.js [29930] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_lt.js [17128] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_lv.js [17105] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_nl.js [14243] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_no.js [14395] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_pl.js [15282] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_pt_br.js [15497] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_pt_pt.js [15486] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_ro.js [16064] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_ru.js [54888] O61 - LFC: 07/09/2013 - 18:24:25 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_sk.js [19282] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_sl.js [19834] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_sr.js [50705] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_sv.js [14839] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_th.js [50049] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_tr.js [15702] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_uk.js [55785] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_vi.js [22382] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_zh_cn.js [26826] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\locale_name_zh_tw.js [26509] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols.js [3135] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_ar.js [6384] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_bg.js [5653] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_ca.js [3447] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_cs.js [3639] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_da.js [3294] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_de.js [3287] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_el.js [5843] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_en_gb.js [3245] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_es.js [3342] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_es_419.js [3336] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_fi.js [3591] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_fil.js [3259] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_fr.js [3422] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_hi.js [6181] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_hr.js [3414] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_hu.js [3644] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_id.js [3203] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_it.js [3307] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_iw.js [5722] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_ja.js [3798] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_ko.js [4048] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_lt.js [3562] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_lv.js [3569] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_nl.js [3286] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_no.js [3307] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_pl.js [3430] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_pt_br.js [3405] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_pt_pt.js [3425] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_ro.js [3418] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_ru.js [5819] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_sk.js [3430] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_sl.js [3381] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_sr.js [5689] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_sv.js [3376] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_th.js [6459] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_tr.js [3455] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_uk.js [5684] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_vi.js [3888] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_zh_cn.js [4089] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\i18n\symbols_zh_tw.js [3964] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\icon_128.png [9460] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\icon_16.png [702] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\amex.png [2052] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\bank.png [234] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\check.png [235] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\checkmark.png [239] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\close_dialog.png [139] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\close_dialog_hover.png [214] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\close_dialog_pressed.png [213] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\cvc-amex.png [1344] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\cvc.png [1343] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\discover.png [1700] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\info_icon.png [1354] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\jcb.png [1179] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\lock.png [182] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\mastercard.png [1818] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\stored_value.png [1141] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\1x\visa.png [1710] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\amex.png [3446] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\bank.png [412] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\check.png [631] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\checkmark.png [358] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\close_dialog.png [170] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\close_dialog_hover.png [385] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\close_dialog_pressed.png [390] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\cvc-amex.png [1748] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\cvc.png [1744] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\discover.png [2928] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\info_icon.png [1817] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\jcb.png [2874] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\lock.png [298] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\mastercard.png [3585] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\stored_value.png [1985] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\2x\visa.png [2584] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\wallet-icon-sm.png [1528] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\images\wallet-icon-tiny.png [800] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\main.html [950] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\manifest.json [1420] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\payments.js [255263] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\pbhelper.html [119] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\pbhelper.js [581] O61 - LFC: 07/09/2013 - 18:24:26 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\styles\payments.css [13250] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\ar\messages.json [46465] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\bg\messages.json [34993] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\ca\messages.json [14612] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\cs\messages.json [18490] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\da\messages.json [13611] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\de\messages.json [13859] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\el\messages.json [37543] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\en\messages.json [16295] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\en_GB\messages.json [12962] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\es\messages.json [14620] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\es_419\messages.json [14059] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\fi\messages.json [13517] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\fil\messages.json [13771] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\fr\messages.json [17988] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\hi\messages.json [32326] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\hr\messages.json [20064] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\hu\messages.json [17663] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\id\messages.json [13306] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\it\messages.json [13826] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\ja\messages.json [20279] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\ko\messages.json [18557] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\lt\messages.json [18917] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\lv\messages.json [18699] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\nl\messages.json [13255] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\pl\messages.json [20929] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\pt_BR\messages.json [14452] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\pt_PT\messages.json [14656] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\ro\messages.json [17916] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\ru\messages.json [52240] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\sk\messages.json [17993] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\sl\messages.json [19856] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\sr\messages.json [52015] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\sv\messages.json [13410] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\th\messages.json [36060] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\tr\messages.json [15997] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\uk\messages.json [52694] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\vi\messages.json [19369] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\zh_CN\messages.json [16912] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\_locales\zh_TW\messages.json [16694] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT [16] O61 - LFC: 07/09/2013 - 18:24:27 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000061 [276] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\CHANGELOG [27529] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\adblock_start_chrome.js [4020] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\adblock_start_common.js [6886] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\background.js [31403] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\bandaids.js [3693] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\button\popup.css [1709] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\button\popup.html [4129] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\button\popup.js [6416] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\crowdfund.js [6266] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\filtering\domainset.js [3646] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\filtering\fifocache.js [922] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\filtering\filternormalizer.js [8094] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\filtering\filteroptions.js [1398] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\filtering\filterset.js [6060] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\filtering\filtertypes.js [9759] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\filtering\myfilters.js [21359] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\functions.js [6036] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\idlehandler.js [1999] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon16_grayscale.png [3067] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon16_grayscale@2x.png [3563] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon19-grayscale.png [869] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon19-whitelisted.png [1829] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon24.png [2299] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon32.png [1904] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon38-grayscale.png [2877] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon38-whitelisted.png [3968] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-bg_flat_55_999999_40x100.png [180] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-bg_flat_75_aaaaaa_40x100.png [180] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-bg_glass_45_0078ae_1x400.png [136] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-bg_glass_55_f8da4e_1x400.png [131] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-bg_glass_75_79c9ec_1x400.png [132] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-bg_gloss-wave_50_38cfff_500x100.png [89] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-bg_gloss-wave_75_2191c0_500x100.png [89] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-bg_inset-hard_100_fcfdfd_1x100.png [88] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-icons_056b93_256x240.png [5355] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\images\ui-icons_d8e7f3_256x240.png [4369] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\jquery-ui.custom.css [21592] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\css\override-page.css [2621] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\jquery-ui.custom.min.js [55999] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\jquery.cookie.js [4246] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\jquery\jquery.min.js [93868] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\customize.html [5810] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\customize.js [6825] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\filters.html [1558] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\filters.js [20290] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\general.html [1605] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\general.js [1721] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\index.html [2078] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\index.js [2086] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\options\options.css [2275] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\pages\adreport.html [8149] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\pages\adreport.js [10207] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\pages\resourceblock.html [7787] O61 - LFC: 07/09/2013 - 18:24:29 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\pages\resourceblock.js [26884] O61 - LFC: 07/09/2013 - 18:24:30 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\pages\subscribe.html [1076] O61 - LFC: 07/09/2013 - 18:24:30 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\pages\subscribe.js [1203] O61 - LFC: 07/09/2013 - 18:24:30 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\port.js [13149] O61 - LFC: 07/09/2013 - 18:24:30 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\stats.js [5300] O61 - LFC: 07/09/2013 - 18:24:30 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\blacklisting\blacklistui.js [14897] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\bg\messages.json [97360] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\cs\messages.json [57004] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\da\messages.json [52915] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\de\messages.json [54202] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\el\messages.json [94378] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\en\messages.json [50451] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\es\messages.json [52457] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\fi\messages.json [53640] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\fr\messages.json [54028] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\he\messages.json [79413] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\hr\messages.json [52906] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\hu\messages.json [54309] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\id\messages.json [52252] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\it\messages.json [52688] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\ja\messages.json [62991] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\ko\messages.json [59617] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\nl\messages.json [52016] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\pl\messages.json [54722] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\pt_BR\messages.json [54232] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\pt_PT\messages.json [53599] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\ro\messages.json [53947] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\ru\messages.json [100532] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\sk\messages.json [56418] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\sl\messages.json [52462] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\sr\messages.json [53203] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\sv\messages.json [53486] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\te\messages.json [92708] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\tr\messages.json [57113] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon128.png [9863] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon16.png [753] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon19.png [689] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon38.png [2712] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\img\icon48.png [3307] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\manifest.json [2463] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\blacklisting\clickwatcher.js [5439] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\blacklisting\elementchain.js [1344] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\blacklisting\overlay.js [1095] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\blacklisting\rightclick_hook.js [402] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\load_jquery_ui.js [1510] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\send_content_to_back.js [1586] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\top_open_blacklist_ui.js [1620] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\uiscripts\top_open_whitelist_ui.js [5409] O61 - LFC: 07/09/2013 - 18:24:31 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG [267] O61 - LFC: 07/09/2013 - 18:24:32 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\uk\messages.json [92748] O61 - LFC: 07/09/2013 - 18:24:32 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\zh_CN\messages.json [55954] O61 - LFC: 07/09/2013 - 18:24:32 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0\_locales\zh_TW\messages.json [55808] O61 - LFC: 07/09/2013 - 18:24:32 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www1.delta-search.com_0.localstorage [3072] =>Toolbar.DeltaSearch O61 - LFC: 07/09/2013 - 18:24:35 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage [5091328] O61 - LFC: 07/09/2013 - 18:24:47 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Cookies [32768] O61 - LFC: 07/09/2013 - 18:24:47 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Favicons [268288] O61 - LFC: 07/09/2013 - 18:24:47 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_0 [45056] O61 - LFC: 07/09/2013 - 18:24:47 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_1 [270336] O61 - LFC: 07/09/2013 - 18:24:47 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_2 [1056768] O61 - LFC: 07/09/2013 - 18:24:47 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Local State [42289] O61 - LFC: 07/09/2013 - 18:24:48 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt [5] O61 - LFC: 07/09/2013 - 18:25:12 ---A- . (...) -- C:\Users\admin\AppData\Local\Temp\Uninst.bat [653] O61 - LFC: 07/09/2013 - 18:35:10 ---A- . (.Piriform Ltd.) -- C:\Users\admin\Downloads\spsetup122.exe [5127856] O61 - LFC: 07/09/2013 - 19:09:59 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Dybex] Kaleid liner Prisma Illya - 07 vostfr [544P].mp4.torrent [14855] =>P2P.µTorrent O61 - LFC: 07/09/2013 - 19:10:25 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Dybex] Blood Lad - 09 vostfr [544p].mp4.torrent [15479] =>P2P.µTorrent O61 - LFC: 07/09/2013 - 19:10:32 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Tekmatek] Danganronpa - The animation - 10 HD(1280x720 x264).mp4.torrent [20384] =>P2P.µTorrent O61 - LFC: 07/09/2013 - 19:22:13 ---A- . (.Nicolas Coolman.) -- C:\Users\admin\Downloads\ZHPDiag2.exe [5084332] O61 - LFC: 07/09/2013 - 19:22:16 ---A- . (...) -- C:\Users\admin\AppData\Local\Temp\NitroSysFonts01.dat [477379] O61 - LFC: 07/09/2013 - 19:45:53 ---A- . (...) -- C:\Users\admin\AppData\Local\Temp\TD79.zlib [43548] O61 - LFC: 07/09/2013 - 19:59:23 ---A- . (...) -- C:\Users\admin\Downloads\adwcleaner-3.003.exe [1037278] O61 - LFC: 07/09/2013 - 20:01:49 ---A- . (...) -- C:\Users\admin\AppData\Local\Temp\preferences [0] O61 - LFC: 08/09/2013 - 01:11:31 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Dybex] Blood Lad - 09 vostfr [544p].mp4 [396736151] O61 - LFC: 08/09/2013 - 01:23:29 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Tekmatek] Danganronpa - The animation - 10 HD(1280x720 x264).mp4 [262404076] O61 - LFC: 08/09/2013 - 01:45:13 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[Dybex] Kaleid liner Prisma Illya - 07 vostfr [544P].mp4 [379667658] O61 - LFC: 08/09/2013 - 01:56:58 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT TERMINERS\[SaMo-FanSub]_Fantasista_Doll_08_[VOSTFR_LQ].avi [196214900] O61 - LFC: 08/09/2013 - 08:06:08 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\2746739167.data [791] O61 - LFC: 08/09/2013 - 08:06:08 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\2746739167.quar [2237592] O61 - LFC: 08/09/2013 - 08:06:09 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\0733528163.data [782] O61 - LFC: 08/09/2013 - 08:06:09 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\0733528163.quar [1235308] O61 - LFC: 08/09/2013 - 08:06:09 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\8867971153.data [811] O61 - LFC: 08/09/2013 - 08:06:09 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\8867971153.quar [14259736] O61 - LFC: 08/09/2013 - 08:06:09 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\9759594727.data [778] O61 - LFC: 08/09/2013 - 08:06:09 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\9759594727.quar [77423] O61 - LFC: 08/09/2013 - 08:06:10 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-09-08 (00-26-25).txt [3572] O61 - LFC: 08/09/2013 - 08:07:10 --HA- . (...) -- C:\Users\admin\AppData\Local\IconCache.db [4102944] O61 - LFC: 08/09/2013 - 08:09:12 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Skype\shared_dynco\dc.db [2338816] O61 - LFC: 08/09/2013 - 08:09:55 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Skype\shared.xml [74513] O61 - LFC: 08/09/2013 - 08:13:46 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Boottime\AscTray_Delay.Log [295952] O61 - LFC: 08/09/2013 - 08:17:16 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Bushido] Hunter X Hunter - 95 Vostfr [720p].mkv.torrent [26000] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:17:16 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Bushido] Hunter X Hunter - 95 Vostfr [720p].mkv.torrent [26000] O61 - LFC: 08/09/2013 - 08:17:49 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Bushido] Hunter X Hunter - 95 Vostfr [720p].mkv-1.torrent [26000] O61 - LFC: 08/09/2013 - 08:18:00 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Kaerizaki-Fansub] One Piece 611 VOSTFR SD (848x480).avi.torrent [15123] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:18:00 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Kaerizaki-Fansub] One Piece 611 VOSTFR SD (848x480).avi.torrent [15123] O61 - LFC: 08/09/2013 - 08:18:13 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\To Aru Kagaku No Railgun S - 21 HD [Kast-fs].mp4.torrent [29688] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:18:13 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\To Aru Kagaku No Railgun S - 21 HD [Kast-fs].mp4.torrent [29688] O61 - LFC: 08/09/2013 - 08:18:25 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Kanojo X Otome] Senki Zesshou Symphogear G - 10.mp4.torrent [16771] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:18:25 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Kanojo X Otome] Senki Zesshou Symphogear G - 10.mp4.torrent [16771] O61 - LFC: 08/09/2013 - 08:18:44 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Kanojo X Otome] Senki Zesshou Symphogear G - 09 .mp4.torrent [13352] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:18:44 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Kanojo X Otome] Senki Zesshou Symphogear G - 09 .mp4.torrent [13352] O61 - LFC: 08/09/2013 - 08:18:56 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Tekmatek] Danganronpa - The animation - 10 HD(1280x720 x264).mp4.torrent [20384] O61 - LFC: 08/09/2013 - 08:19:14 ----- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\[Impel-Down]_One_Piece_611_VOSTFR_[432p]_[D96426E6].mp4.torrent [10667] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:19:14 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Impel-Down]_One_Piece_611_VOSTFR_[432p]_[D96426E6].mp4.torrent [10667] O61 - LFC: 08/09/2013 - 08:20:12 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Impel-Down]_One_Piece_611_VOSTFR_[432p]_[D96426E6].mp4-1.torrent [10667] O61 - LFC: 08/09/2013 - 08:20:23 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Kanojo X Otome] Senki Zesshou Symphogear G - 09 .mp4-1.torrent [13352] O61 - LFC: 08/09/2013 - 08:20:43 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Kanojo X Otome] Senki Zesshou Symphogear G - 10.mp4-1.torrent [16771] O61 - LFC: 08/09/2013 - 08:20:57 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\To Aru Kagaku No Railgun S - 21 HD [Kast-fs].mp4-1.torrent [29688] O61 - LFC: 08/09/2013 - 08:21:08 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Kaerizaki-Fansub] One Piece 611 VOSTFR SD (848x480).avi-1.torrent [15123] O61 - LFC: 08/09/2013 - 08:21:26 R--A- . (...) -- C:\Users\admin\AppData\Local\Temp\[Bushido] Hunter X Hunter - 95 Vostfr [720p].mkv-2.torrent [26000] O61 - LFC: 08/09/2013 - 08:22:48 ---A- . (.Microsoft Corporation.) -- C:\Users\admin\AppData\Local\Temp\is-DSBSI.tmp\_isetup\_shfoldr.dll [23312] O61 - LFC: 08/09/2013 - 08:30:32 ---A- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\dht.dat [4430] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:30:32 ---A- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\resume.dat [207747] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:30:32 ---A- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\rss.dat [99] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:30:32 ---A- . (...) -- C:\Users\admin\AppData\Roaming\uTorrent\settings.dat [18797] =>P2P.µTorrent O61 - LFC: 08/09/2013 - 08:30:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT EN COURS\[Bushido] Hunter X Hunter - 95 Vostfr [720p].mkv [336535173] O61 - LFC: 08/09/2013 - 08:30:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT EN COURS\[Impel-Down]_One_Piece_611_VOSTFR_[432p]_[D96426E6].mp4 [135311774] O61 - LFC: 08/09/2013 - 08:30:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT EN COURS\[Kaerizaki-Fansub] One Piece 611 VOSTFR SD (848x480).avi [191928246] O61 - LFC: 08/09/2013 - 08:30:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT EN COURS\[Kanojo X Otome] Senki Zesshou Symphogear G - 09 .mp4 [340359891] O61 - LFC: 08/09/2013 - 08:30:47 ---A- . (...) -- C:\Users\admin\Downloads\TORRENT EN COURS\[Kanojo X Otome] Senki Zesshou Symphogear G - 10.mp4 [430088068] O61 - LFC: 08/09/2013 - 08:34:14 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\preferences [123463] O61 - LFC: 08/09/2013 - 08:34:15 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Apple Computer\Safari\Extensions\Extensions.plist [643] O61 - LFC: 08/09/2013 - 08:37:39 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3178184246.data [794] O61 - LFC: 08/09/2013 - 08:37:39 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3178184246.quar [114176] O61 - LFC: 08/09/2013 - 08:37:40 ---A- . (...) -- C:\Users\admin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2013-09-08 (08-27-55).txt [3802] O61 - LFC: 08/09/2013 - 08:37:58 ---A- . (...) -- C:\Users\admin\ntuser.dat.iobit [2748416] O61 - LFC: 08/09/2013 - 08:42:14 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\History [172032] O61 - LFC: 08/09/2013 - 08:42:14 ---A- . (...) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Shortcuts [12288] O61 - LFC: 08/09/2013 - 08:42:15 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\JFilterkey.dbd [109] O61 - LFC: 08/09/2013 - 08:42:15 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\PFilterkey.dbd [253] O61 - LFC: 08/09/2013 - 08:42:20 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Backup\ASCBackup32-2013-09-08(08-42-20).reg [36168] O61 - LFC: 08/09/2013 - 08:42:20 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Backup\ASCBackup64-2013-09-08(08-42-20).reg [11724] O61 - LFC: 08/09/2013 - 08:42:20 ---A- . (...) -- C:\Users\admin\AppData\Roaming\IObit\Advanced SystemCare V6\Log\ASCLog-2013-09-08(08-42-20).txt [92686] ~ 22 Fichiers temporaires (Temporary files) ~ Files: 565 Scanned in 13mn 07s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 28/12/2011 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\Drivers\aswFW.sys (aswFW) .(.AVAST Software - avast! Filtering TDI driver.) - LEGACY_ASWFW O64 - Services: CurCS - 09/05/2013 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\Drivers\aswNdis2.sys (aswNdis2) .(.AVAST Software - avast! Filtering NDIS driver.) - LEGACY_ASWNDIS2 O64 - Services: CurCS - 09/05/2013 - C:\Windows\system32\Drivers\aswrdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - 09/05/2013 - Pas de propriétaire (aswRvrt) .(...) - LEGACY_ASWRVRT O64 - Services: CurCS - 27/06/2013 - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX O64 - Services: CurCS - 27/06/2013 - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI O64 - Services: CurCS - 27/06/2013 - Pas de propriétaire (aswVmm) .(...) - LEGACY_ASWVMM O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\drivers\atapi.sys (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 29/05/2013 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE O64 - Services: CurCS - 10/04/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 29/05/2013 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV O64 - Services: CurCS - 04/04/2013 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP O64 - Services: CurCS - 12/08/2011 - C:\Windows\System32\DRIVERS\mwlPSDFilter.sys (mwlPSDFilter) .(.Egis Technology Inc. - PSD Mini Filter Driver.) - LEGACY_MWLPSDFILTER O64 - Services: CurCS - 12/08/2011 - C:\Windows\System32\DRIVERS\mwlPSDNServ.sys (mwlPSDNServ) .(.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) - LEGACY_MWLPSDNSERV O64 - Services: CurCS - 12/08/2011 - C:\Windows\System32\DRIVERS\mwlPSDVDisk.sys (mwlPSDVDisk) .(.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) - LEGACY_MWLPSDVDISK O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\DRIVERS\nwifi.sys (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 22/05/2013 - Pas de propriétaire (SmartDefragDriver) .(...) - LEGACY_SMARTDEFRAGDRIVER O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 O64 - Services: CurCS - 14/07/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 29/11/2010 - C:\Windows\System32\DRIVERS\TurboB.sys (TurboB) .(.Intel(R) Corporation - TurboB Device Driver.) - LEGACY_TURBOB O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\DRIVERS\udfs.sys (udfs) .(.Microsoft Corporation - UDF File System Driver.) - LEGACY_UDFS O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\DRIVERS\vwififlt.sys (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF O64 - Services: CurCS - 13/07/2009 - C:\Windows\system32\drivers\ws2ifsl.sys (ws2ifsl) .(.Microsoft Corporation - Couche IFS Winsock2.) - LEGACY_WS2IFSL O64 - Services: CurCS - 25/07/2012 - C:\Windows\System32\drivers\WudfPf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF ~ Legacy: 92 Scanned in 00mn 02s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ FASS Keys: 19 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Enumère les fichiers Crack & Keygen (CKF) (O82) C:\Users\admin\Documents\LOGICIELS\Anti-virus\Malwarebytes Anti-Malware Pro v1.75.0.1300 Incl Keygen-BRD [TorDigger]\mbam-setup-1.75.0.1300.exe C:\Users\admin\Documents\LOGICIELS\Anti-virus\Malwarebytes Anti-Malware Pro v1.75.0.1300 Incl Keygen-BRD [TorDigger]\Torrent downloaded from TorDigger torrents at h33t.com.txt C:\Users\admin\Documents\LOGICIELS\Nitro PDF 8.0.2.4\Keygen\keygen_np8.exe ~ Files: Scanned in 01mn 29s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Services: 32 Scanned in 00mn 01s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.FCFAD3D26BB50F6A77419A58695BCE2D] [SPRF][07/09/2013] (...) -- C:\Users\admin\AppData\Local\Temp\NitroSysFonts01.dat [477379] [MD5.3BF79E6868B44D3ADB2796BA99521891] [SPRF][07/09/2013] (...) -- C:\Users\admin\AppData\Local\Temp\Quarantine.exe [344583] [MD5.1B1D86A574E842946E5D5317892B45C5] [SPRF][01/09/2013] (.Skype Technologies S.A. - Skype.) -- C:\Users\admin\AppData\Local\Temp\SkypeSetup.exe [31954536] [MD5.A1F9B155FB3AC78CA3C47C9BD2E73686] [SPRF][07/09/2013] (...) -- C:\Users\admin\AppData\Local\Temp\Uninst.bat [653] [MD5.86839E0F764CDCBD4985A7721FD48BB2] [SPRF][09/02/2009] (.Autodesk, Inc. - Autodesk i-drop control.) -- C:\Windows\Downloaded Program Files\IDropENU.dll [113816] [MD5.8D0A56674A0EB933660B7FC0519F087E] [SPRF][23/02/2009] (.Autodesk, Inc. - Autodesk i-drop control.) -- C:\Windows\Downloaded Program Files\IDropFRA.dll [116040] ~ Files: 6 Scanned in 00mn 00s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "{0B5DA8C6-0B11-4063-AFD6-6A0962B74558}" | In - Public - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O87 - FAEL: "{57E0D9D6-4532-47F8-A380-D0E7EFED21D3}" | In - Public - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O87 - FAEL: "{CB47295C-4463-4A91-83A2-9DFD7A1EC09F}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{EB2E1A1B-C0B1-4EFE-86BD-81C07D892E15}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{A05E7DB3-91E8-49B9-96E3-7771E8E779B5}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{4704B835-95EE-436C-B431-019320EA8BF0}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{E05FC16F-E584-40E6-8186-DE4CB99AD596}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{88AA09A7-9090-416F-A605-0B1EED8D64FF}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{ECB634DD-3A81-4EE6-AA29-FFB15A3D4D20}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{84AAB20C-85D1-4F67-B0F6-C9218101C0EC}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{E711D066-4453-4DFF-A51E-254E0DD5AF70}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{831C19D6-20CA-417D-81CE-25B2B01F0D1A}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{DDB87F84-1955-4D91-B652-F0575C51DDCD}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{E622E165-2E9D-43A4-9071-62FB34C0E162}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{89A623DE-8234-4C41-B932-8F3473F82E3F}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{439C4992-48E1-4AC9-AFF3-2C70173E40D3}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{B7DA61AA-CB07-47FC-A3BB-D1FB5914038B}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{CF892F47-1D07-40D2-89D0-B9A1138D9768}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{F66DC06A-9BD3-4643-AE7B-C4785281A38B}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{5BEC7718-2063-4D5A-8CC0-7AB8BC1682FC}" | In - None - P6 - TRUE | .(.Acer Incorporated - clear.fi.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe O87 - FAEL: "{FD2AA648-0B2E-4A17-8585-71FDAFC642A4}" | In - None - P6 - TRUE | .(.CyberLink Corp. - clear.fi Resident Program.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe O87 - FAEL: "{885B236A-EA2B-45BD-9136-F3A557193A5E}" | In - None - P6 - TRUE | .(.CyberLink Corp. - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\CLML\CLMLSvc.exe O87 - FAEL: "{9182F3A3-2844-4727-AC67-283C5DF82E56}" | In - Domain - P6 - TRUE | .(.CyberLink - DMREngine.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe O87 - FAEL: "{70365D1D-A80A-44F0-AB9B-4C6AD34630E7}" | In - Private - P6 - TRUE | .(.CyberLink - DMREngine.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe O87 - FAEL: "{8B468DE6-72DA-4536-AE31-2847C92AF41B}" | In - Public - P6 - TRUE | .(.CyberLink - DMREngine.) -- C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe O87 - FAEL: "{0C8188C7-56E9-4F66-A201-022A909EBB49}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovie.exe (.not file.) O87 - FAEL: "{5ED0A584-B87C-4A2A-8E2B-772DD1BBD04E}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovieService.exe (.not file.) O87 - FAEL: "{3DF5535E-C61B-45C5-A8AE-C73DD3C42A57}" | In - None - P6 - TRUE | .(.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent O87 - FAEL: "{C7E9073C-607C-4D72-97BC-0B6EB59A401D}" | In - None - P17 - TRUE | .(.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent O87 - FAEL: "{04872125-BD36-4509-BFCC-B5A418C4DC1A}" | In - Domain - P6 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{89F913D9-FABC-430C-B604-03D998E061BB}" | In - Domain - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{B13EA024-060B-494F-A15F-9C2DCBD5C18A}" | In - Private - P6 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{516A46BC-68D0-45E8-A386-7D0D8703C83D}" | In - Private - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{D6E0E692-C348-49A4-9456-8CF2883935E3}" | In - None - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "TCP Query User{5D5449DD-5385-4FB5-AAC3-87ABB6742560}C:\users\admin\desktop\utorrent_2.2.1.exe" |In - Private - P6 - TRUE | .(...) -- C:\users\admin\desktop\utorrent_2.2.1.exe (.not file.) =>P2P.µTorrent O87 - FAEL: "UDP Query User{6B7D7B22-AFBC-4549-9876-A61EBA1D04A6}C:\users\admin\desktop\utorrent_2.2.1.exe" |In - Private - P17 - TRUE | .(...) -- C:\users\admin\desktop\utorrent_2.2.1.exe (.not file.) =>P2P.µTorrent O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{E62BD292-9898-4750-93B8-D8063E1C3097}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\admin\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe O87 - FAEL: "{A02D9309-2B1E-49A7-BBB7-E6C695C973D3}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe O87 - FAEL: "{7829BF11-2D94-43D1-89D5-E481BBEF5E89}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.) O87 - FAEL: "{3C4DB56F-8F79-4976-BD46-7E38D4941312}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office12\outlook.exe O87 - FAEL: "{E368B129-140C-4235-98FB-B2A091CA35C5}" | In - None - P6 - FALSE | .(.Microsoft Corporation - SMSvcHost.exe.) -- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe O87 - FAEL: "TCP Query User{7F98A177-738B-4E11-A724-0F14070A1B21}C:\users\public\sony online entertainment\installed games\dragons prophet\dp_x64.exe" |In - Private - P6 - TRUE | .(...) -- C:\users\public\sony online entertainment\installed games\dragons prophet\dp_x64.exe (.not file.) O87 - FAEL: "UDP Query User{8EACCB5F-5371-4213-A922-7BAAE47D0335}C:\users\public\sony online entertainment\installed games\dragons prophet\dp_x64.exe" |In - Private - P17 - TRUE | .(...) -- C:\users\public\sony online entertainment\installed games\dragons prophet\dp_x64.exe (.not file.) O87 - FAEL: "{84343FBC-5A39-46AB-AD49-199E64F421A5}" | In - Private - P6 - TRUE | .(.Valve Corporation - Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win.) -- C:\Program Files (x86)\Steam\Steam.exe O87 - FAEL: "{E1E7D727-6428-437B-AD35-88E87E3E92B4}" | In - Private - P17 - TRUE | .(.Valve Corporation - Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win.) -- C:\Program Files (x86)\Steam\Steam.exe O87 - FAEL: "{AD9E6115-D6C9-4AFB-8761-83EEB7472BD6}" |In - Private - P6 - TRUE | .(...) -- C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe (.not file.) O87 - FAEL: "{E2474CA5-BC14-451B-8CB2-8A84178915F7}" |In - Private - P17 - TRUE | .(...) -- C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe (.not file.) O87 - FAEL: "{8F46D68D-5429-4703-86F8-ED0FED9D53E9}" |In - Private - P6 - TRUE | .(...) -- C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe (.not file.) O87 - FAEL: "{10C8FB6C-528C-4791-957B-BF28D612B380}" |In - Private - P17 - TRUE | .(...) -- C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe (.not file.) O87 - FAEL: "{FD44AB12-102E-4A8B-BEEF-5D21B4ECBDC1}" |In - Private - P6 - TRUE | .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2000\Agent.exe (.not file.) O87 - FAEL: "{7EAD6C99-8E77-4D5C-8586-324CA544A877}" |In - Private - P17 - TRUE | .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2000\Agent.exe (.not file.) O87 - FAEL: "{EE3DA1BB-3D6A-45DB-B73C-F897A4B8DA0A}" | In - Private - P6 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.2006\Agent.exe O87 - FAEL: "{F876C718-D0B2-474F-8ADB-2E7E6EB21DE4}" | In - Private - P17 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.2006\Agent.exe O87 - FAEL: "{77188A2C-C203-4B29-9529-505179A56F91}" | In - Private - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O87 - FAEL: "{6405D477-F697-4CAA-9283-CE5D2E0F9854}" | In - Private - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O87 - FAEL: "{10AF08EA-624F-49E5-8B00-7972BB46F6CF}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{01AC021F-B4AC-4E2E-BD84-58CF280AF375}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{20B64AC9-C42C-4C67-AD0C-08D3B05FFD55}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{4A53AA6A-DBF4-48E0-B852-B0B11C8D1452}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{C27F40A3-5DEF-4370-B68E-54EFF2F680E9}" | In - Private - P6 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe O87 - FAEL: "{E89C0285-B22C-4918-82DF-2BDD7B765188}" | In - Private - P17 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe O87 - FAEL: "TCP Query User{C1BB0D89-A3AD-4143-8AEC-527FBE828222}C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe" | In - Private - P6 - TRUE | .(.Sony Online Entertainment.) -- C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe O87 - FAEL: "UDP Query User{069B14BF-555F-4DE9-88FB-53675BA82839}C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe" | In - Private - P17 - TRUE | .(.Sony Online Entertainment.) -- C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe O87 - FAEL: "{3A1B5D67-521E-4D20-AF49-D190BEC1F5BC}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ~ Firewall: 232 Scanned in 00mn 02s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "05B51F93779A6AC41B3CA67842DC0A52" . (.MyWinLocker 4.) -- C:\Windows\Installer\{39F15B50-A977-4CA6-B1C3-6A8724CDA025}\ARPPRODUCTICON.exe O90 - PUC: "0BCE87B0B6A1D6E4987DE0C77EF74072" . (.MyWinLocker.) -- C:\Windows\Installer\{0B78ECB0-1A6B-4E6D-89D7-0E7CE77F0427}\ARPPRODUCTICON.exe O90 - PUC: "1094FB974CE162743B2C7A5879606C7E" . (.League of Legends.) -- C:\Windows\Installer\{79BF4901-1EC4-4726-B3C2-A7859706C6E7}\lol.launcher_1.exe O90 - PUC: "175ACBFED716A484E9AC3E10BBD67005" . (.Windows Live Writer.) -- C:\Windows\Installer\{EFBCA571-617D-484A-9ECA-E301BB6D0750}\ApplicationIcon.ico O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon O90 - PUC: "1EBF2823CF538D8489AC11A5E51F9F4B" . (.NVIDIA PhysX.) -- C:\Windows\Installer\{3282FBE1-35FC-48D8-98CA-115A5EF1F9B4}\icon.ico O90 - PUC: "279A5E3D51A9D724EA8718185ADF49C3" . (.eBay Worldwide.) -- c:\Windows\Installer\{D3E5A972-9A15-427D-AE78-8181A5FD943C}\_6FEFF9B68218417F98F549.exe O90 - PUC: "27BCD19CBB5FD0149AA113F4D5B12448" . (.Broadcom NetLink Controller.) -- C:\Windows\Installer\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}\ARPPRODUCTICON.exe O90 - PUC: "38E5962CD1FC1D3448EF3BEB5C1610A2" . (.Shredder.) -- C:\Windows\Installer\{C2695E83-CF1D-43D1-84FE-B3BEC561012A}\ARPPRODUCTICON.exe O90 - PUC: "3CAB682B6EBC4584FB86BE273AC4AE65" . (.Windows Live Messenger.) -- C:\Windows\Installer\{B286BAC3-CBE6-4854-BF68-EB72A34CEA56}\MsblIco.Exe O90 - PUC: "400918ADF00FE394BBD71EBAA2A45007" . (.ExtremeCopy.) -- C:\Windows\Installer\{DA819004-F00F-493E-BB7D-E1AB2A4A0570}\ARPPRODUCTICON.exe O90 - PUC: "4179FD719C069C349A2C23CBEA4DC4EB" . (.MyWinLocker Suite.) -- C:\Windows\Installer\{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}\ARPPRODUCTICON.exe O90 - PUC: "5951D032AD753394C8E4737579BE7B1E" . (..) -- C:\Windows\Installer\{230D1595-57DA-4933-8C4E-375797EBB7E1}\ARPPRODUCTICON.exe O90 - PUC: "5CA0C31676A349B4B8311967DA385FFB" . (.newsXpresso.) -- C:\Windows\Installer\{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}\ARPPRODUCTICON.exe O90 - PUC: "5DBB16B0C3ADA9047803C0D33C0B2F07" . (.Backup Manager V3.) -- C:\Windows\Installer\{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}\ARPPRODUCTICON.exe O90 - PUC: "613755F10CFCDB14FA7FB84CC94E447D" . (.Shredder.) -- C:\Windows\Installer\{1F557316-CFC0-41BD-AFF7-8BC49CE444D7}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.03) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O90 - PUC: "6B3C4C414F1FF104C868308E1EA9CAC8" . (.MediaEspresso.) -- C:\Windows\Installer\{14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C}\ARPPRODUCTICON.exe O90 - PUC: "6FD66A043D225B447A3D381B812A0CCD" . (.Norton Online Backup.) -- C:\Windows\Installer\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}\MainIcon.ico O90 - PUC: "743C7362DAD96D11E92A0050D5C07A16" . (.clear.fi.) -- C:\Windows\Installer\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\ARPPRODUCTICON.exe O90 - PUC: "8994BF104C33134458DE70E9E3FE7ED5" . (.Vedio WebCam.) -- C:\Windows\Installer\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\ARPPRODUCTICON.exe O90 - PUC: "8BAD244577171E94B822900A94AE9569" . (.Renesas Electronics USB 3.0 Host Controller Driver.) -- C:\Windows\Installer\{5442DAB8-7177-49E1-8B22-09A049EA5996}\ARPPRODUCTICON.exe O90 - PUC: "8E4C5D3DF040F6C41850144DC39FF444" . (.NTI Media Maker 9.) -- C:\Windows\Installer\{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}\ARPPRODUCTICON.exe O90 - PUC: "A0AF0DF212A7A4C42B8611245BE430E5" . (.Windows Live Family Safety.) -- C:\Windows\Installer\{2FD0FA0A-7A21-4C4A-B268-1142B54E035E}\fssicon.ico O90 - PUC: "A11C609B391D3414F97A2EEEA8A5F812" . (.ArcadeMovie.) -- C:\Windows\Installer\{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}\ARPPRODUCTICON.exe O90 - PUC: "A7C07E9B58F993A44A3AFB3A3CFB6731" . (.Dolby Advanced Audio v2.) -- C:\Windows\Installer\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}\DolbyBlue.exe O90 - PUC: "AA360054B346C714C85F04B53A4FFE04" . (.Autodesk Design Review 2009.) -- C:\Windows\Installer\{450063AA-643B-417C-8CF5-405BA3F4EF40}\ARPPRODUCTICON.exe O90 - PUC: "B0AFE77B3DB92214F9A9519A365BAE42" . (.Moniteur de la technologie Intel® Turbo Boost 2.0.) -- C:\Windows\Installer\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}\ARPPRODUCTICON.exe O90 - PUC: "B6684812CF42F12409FA99BA741E2B3D" . (.Nitro Pro 8.) -- C:\Windows\Installer\{2184866B-24FC-421F-90AF-99AB47E1B2D3}\Professional.ico O90 - PUC: "C2660174402843349A771BCAE9458791" . (.Broadcom Card Reader Driver Installer.) -- C:\Windows\Installer\{4710662C-8204-4334-A977-B1AC9E547819}\ARPPRODUCTICON.exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.6.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe ~ Update Products: 385 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.9D1FC3737A86F6B516152DFF025F2FC7] [WIS][12/07/2013] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\1387e4f.msi [26112] [MD5.73122534D527893BDEFD1F707FFB34F6] [WIS][01/09/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\1576994.msi [21803008] [MD5.78B1C27701A7872C2150F90458E966EA] [WIS][08/10/2011] (.Intel - Intel(R) Turbo Boost Technology Monitor 2.0.) -- C:\Windows\Installer\178b1.msi [11380224] [MD5.ED045057B9596408E5DC914D5D3F60CE] [WIS][31/05/2011] (.Dolby Laboratories Inc - Dolby Advanced Audio v2.) -- C:\Windows\Installer\178bb.msi [12017664] [MD5.D2F34AF196CCAF29A124324392FC3DFF] [WIS][13/06/2013] (.Valve Corporation - Steam.) -- C:\Windows\Installer\288d20e.msi [8532992] [MD5.A2FF6A2A7741D47675A590AA8C4095F3] [WIS][02/05/2011] (.NTI Corporation - Backup Manager V3.) -- C:\Windows\Installer\2a5ad.msi [1189376] [MD5.384D0D94B59B93157E0A2C5A32DB4754] [WIS][12/08/2011] (.esobi Inc. - newsXpresso.) -- C:\Windows\Installer\2a5b3.msi [5219328] [MD5.85694EE1A2FDD9E09DEA95239DC5FC09] [WIS][21/08/2013] (.Riot Games - League of Legends.) -- C:\Windows\Installer\3733602.msi [1379328] [MD5.9587EEFA78431507B7AFDAD1B01E2662] [WIS][21/08/2013] (.Passware - Passware Kit Professional 11.1 installation package.) -- C:\Windows\Installer\6ae044a.msi [25595904] [MD5.AE2933A83BBE75FB43D1A63032E375C3] [WIS][16/05/2011] (.Broadcom Corporation - Broadcom Driver Installer.) -- C:\Windows\Installer\9305.msi [1989120] [MD5.6F69ED1CECADF3C6EBAAE8A312050AFE] [WIS][29/05/2013] (.Paragon Software - Program.) -- C:\Windows\Installer\a526e7.msi [45479424] [MD5.3A13FBB00C3688E9DA6B6F4267EDCA53] [WIS][19/06/2013] (.Nitro - Nitro Pro 8.5.2.10.) -- C:\Windows\Installer\b635bfd.msi [65945600] [MD5.C60868C8D1AE6E44B0AF5DB96D931FF7] [WIS][29/05/2013] (.Easersoft - ExtremeCopy.) -- C:\Windows\Installer\b7b5df.msi [5667840] [MD5.A8DEBA7E10866FA500034E58DC5EE736] [WIS][10/03/2011] (.NTI Corporation - Media Maker.) -- C:\Windows\Installer\f03e.msi [14192128] ~ WIS: 388 Scanned in 01mn 22s ---\\ Etat général des services not Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 11/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SS - | Demand 19/07/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - | Auto 18/04/2013 574272 | (AdvancedSystemCareService6) . (.IObit.) - C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe SR - | Auto 27/12/2012 204928 | (AtherosSvc) . (.Atheros Commnucations.) - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe SR - | Auto 09/05/2013 46808 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe SR - | Auto 09/05/2013 137960 | (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe SR - | Auto 30/06/2011 353360 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe SS - | Demand 21/06/2011 173424 | (EgisTec Ticket Service) . (.Egis Technology Inc..) - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe SR - | Auto 02/08/2011 872552 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe SS - | Demand 08/10/2011 655624 | (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe SS - | Demand 01/09/2013 1030600 | (FLEXnet Licensing Service 64) . (.Macrovision Europe Ltd..) - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe SS - | Demand 12/10/2010 206072 | (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe SR - | Auto 29/05/2011 36456 | (GREGService) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe SS - | Auto 28/05/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 28/05/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - | Auto 30/04/2011 13592 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe SR - | Auto 05/04/2012 255376 | (Live Updater Service) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe SR - | Auto 01/02/2011 326168 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe SS - | Demand 17/08/2013 117656 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SR - | Auto 25/03/2013 230408 | (NitroDriverReadSpool8) . (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe SR - | Auto 25/03/2013 70152 | (nlsX86cc) . (.Nalpeiron Ltd..) - C:\Windows\SysWOW64\NLSSRV32.exe SR - | Auto 01/06/2010 2804568 | (NOBU) . (.Symantec Corporation.) - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SS - | Demand 10/07/1658 0 | (npggsvc) . (.INCA Internet Co., Ltd..) - C:\Windows\system32\GameMon.des SR - | Auto 23/04/2011 256832 | (NTI IScheduleSvc) . (.NTI Corporation.) - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe SR - | Auto 21/06/2013 884512 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe SR - | Auto 03/07/2013 1887520 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe SR - | Auto 10/07/1658 0 | (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe SS - | Auto 21/06/2013 162408 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 06/06/2013 543656 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SS - | Demand 29/11/2010 149504 | (TurboBoost) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe SR - | Auto 01/02/2011 2656280 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe SR - | Auto 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 03/02/2013 81536 | (ZAtheros Wlan Agent) . (.Atheros.) - C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe ~ Services: Scanned in 01mn 26s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by admin at 08/09/2013 09:17:26 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by admin at 08/09/2013 09:17:28 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Liste des émulateurs de CD/DVD (MBR Hook) O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ~ Emulateurs: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : 12895 - (08/09/2013) Clés trouvées (Keys found) : 2 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 0 Fichiers trouvés (Files found) : 1 [HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS] =>Toolbar.Bing [HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32] =>Toolbar.Bing C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www1.delta-search.com_0.localstorage =>Toolbar.DeltaSearch^ ~ Additionnel Scan: 359803 Items scanned in 00mn 23s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/27875657-toolbar-deltasearch =>Toolbar.DeltaSearch ~ http://nicolascoolman.webs.com/apps/blog/show/31536787-toolbar-bing =>Toolbar.Bing ~ MSI: 2 link(s) detected in 00mn 23s End of the scan (2531 lines in 18mn 45s)(3)