Rapport de ZHPDiag v1.31.28 par Nicolas Coolman, Update du 30/09/2012 Run by toshiba at 12/10/2012 13:14:43 Web site : http://nicolascoolman.skyrock.com/ State : Version à jour. UAC : Deactivate by program ---\\ Web Browser MSIE: Internet Explorer v9.0.8112.16421 (Defaut) GCIE: Google Chrome v22.0.1229.94 OBIE: Safari v5.34.52.7 ---\\ Windows Product Information ~ Langage: Français Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : BWX77 Windows License : OK ~ Windows Remaining Initializations Number : 4 Software Protection Service (Protection logicielle) : KO Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System Information ~ Processor: Intel64 Family 6 Model 37 Stepping 2, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 3957 MB (50% free) System Restore: Activé (Enable) System drive C: has 138 GB (59%) free of 233 GB ---\\ Logged in mode ~ Computer Name: TOSHIBA-TOSH ~ User Name: toshiba ~ All Users Names: toshiba, HomeGroupUser$, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Environnement Variables ~ System Unit : C:\ ~ %AppData% : C:\Users\toshiba\AppData\Roaming\ ~ %Desktop% : C:\Users\toshiba\Desktop\ ~ %Favorites% : C:\Users\toshiba\Favorites\ ~ %LocalAppData% : C:\Users\toshiba\AppData\Local\ ~ %StartMenu% : C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 138 Go of 233 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 19 Go of 232 Go) E:\ CD-ROM drive (Not Inserted) ---\\ Security Center & Tools Informations ~ UAC deactivate by user [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Scan Security Center in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.3D165C53E40236A68B7102D1A622D4E0] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.24/08/2012 - 11:21:18.) -- C:\Windows\System32\wininet.dll [1392128] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.E453ACF4E7D44E5530B5D5F2B9CA8563] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.31/08/2012 - 19:19:35.) -- C:\Windows\system32\Drivers\ntfs.sys [1659760] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Scan Generic Processes in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 2/6447 ~ Mes musiques (My Musics) : 2/283 ~ Mes Videos (My Videos) : 2/28 ~ Mes Favoris (My Favorites) : 1/322 ~ Mes Documents (My Documents) : 83/719 ~ Mon Bureau (My Desktop) : 8/528 ~ Menu demarrer (Programs) : 1/25 ~ Scan Hidden Files in 00mn 14s ---\\ Processus lancés [MD5.BBFED9378719CF8E0C3DEDC979B5D649] - (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\TOPI.exe [6203296] [PID.4064] [MD5.875EAF7DF03C283844BF9A427D01DDA5] - (.Pas de propriétaire - Business-in-a-Box Launcher Application.) -- C:\Program Files (x86)\Business-in-a-Box\BIBLauncher.exe [853736] [PID.] [MD5.811C162AFFAEE0F6FC7C5398FEC66DA3] - (.Auvergne Assistance Informatique - Pas de description.) -- C:\2AIappli\MCSAgendaF\MCSAgendaSVC.exe [167936] [PID.3300] [MD5.852F12CA7C4FC7E3D77B606492435556] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696] [PID.3688] [MD5.B54921381A950C8215FB363B485C432B] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [270336] [PID.3580] [MD5.BAD0D303EF0A519409C625738F3E10A3] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4282728] [PID.4984] [MD5.13E7CFE8E269ED15E7FC9C3EBBCB7E2B] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696] [PID.4652] [MD5.C637FC4638A96165256B28D38DE7B953] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.5064] [MD5.0DCAC41EB58A45049BD7FF665C32D5F4] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [421736] [PID.5040] [MD5.D88E81DECD3014C45603B4B327B4EE1A] - (.TOSHIBA CORPORATION - ConfigFree Task Tray Menu.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [304496] [PID.1796] [MD5.F16EEA6CCA9D8A7D1193AE80E43FBBC7] - (.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe [168960] [PID.5496] [MD5.8A9FACCB684500829F7D0BCC67B386CC] - (.Hewlett-Packard Co. - HP CUE Alert Popup Window Objects.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe [559104] [PID.5724] [MD5.883008A9B5BFF94A153D99DBA54CB5C1] - (.Hewlett-Packard - GPCore COM object.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe [362496] [PID.5864] [MD5.8A07221789D46B2EA7DFCA2BC807572A] - (.TOSHIBA CORPORATION - ConfigFree Switch Manager Process.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe [62848] [PID.6052] [MD5.22CC6CDBA678790046693654C3B212E4] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe [748680] [PID.4632] [MD5.3ACC71DF4F603B30497C76E048E6C4A7] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe [307856] [PID.5132] [MD5.85D374F30A2015D795B1E8D1258866D4] - (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe [116280] [PID.2988] [MD5.8709C95E4EC55378D5BF27F02B0ED5A5] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_4_402_287_ActiveX.exe [692152] [PID.5360] [MD5.8911702CC546B76FE8F9C61987C68C43] - (.Microsoft Corporation - Internet Low-Mic Utility Tool.) -- C:\Program Files (x86)\Internet Explorer\IELowutil.exe [222720] [PID.2620] [MD5.41D0F8FD52CA4B98D21F9D137F0F5FF9] - (...) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [3769856] [PID.4212] ~ Scan Processes Running in 00mn 00s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Preferences G0 - GCSP: Preference [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preference [User Data\Default] http://www.google.com G1 - GCS: Preference [User Data\Default] http://www.bing.com ~ Scan Google Browser in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.msn.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Interpréteur de commandes Windows.) (No version) -- (.not file.) R3 - URLSearchHook: (no name) [64Bits] - {b843a48a-b70f-45cd-a15a-6c2b30c2c11e} . (...) (No version) -- (.not file.) R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ Scan IE Browser in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Scan Proxy management in 00mn 00s ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Scan Keys in 00mn 00s ---\\ Redirection du fichier Hosts (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Scan Hosts File in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: (no name) [64Bits] - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline O2 - BHO: (no name) [64Bits] - {0347C33E-8762-4905-BF09-768834316C61} Clé orpheline O2 - BHO: (no name) [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} Clé orpheline O2 - BHO: (no name) [64Bits] - {26A7CA19-7D58-411D-B2DA-F1B0324CBFFC} Clé orpheline O2 - BHO: (no name) [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} Clé orpheline O2 - BHO: (no name) [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} Clé orpheline O2 - BHO: (no name) [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} Clé orpheline O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} Clé orpheline O2 - BHO: (no name) [64Bits] - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} Clé orpheline ~ Scan BHO in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: (no name) [64Bits] - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (...) -- (.not file.) O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (...) -- (.not file.) ~ Scan Toolbar in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [TosSENotify] . (.TOSHIBA Corporation - Pas de description.) -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe O4 - HKLM\..\Run: [Toshiba TEMPRO] . (.Toshiba Europe GmbH - Toshiba TEMPRO.) -- C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe O4 - HKLM\..\Run: [TosNC] C:\Program Files (x86)\Toshiba\BulletinBoard\TosNcCore.exe (.not file.) O4 - HKLM\..\Run: [TosReelTimeMonitor] C:\Program Files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (.not file.) O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe O4 - HKLM\..\Run: [TPwrMain] C:\Program Files (x86)\TOSHIBA\Power Saver\TPwrMain.exe (.not file.) O4 - HKLM\..\Run: [HSON] C:\Program Files (x86)\TOSHIBA\TBS\HSON.exe (.not file.) O4 - HKLM\..\Run: [SmoothView] C:\Program Files (x86)\Toshiba\SmoothView\SmoothView.exe (.not file.) O4 - HKLM\..\Run: [00TCrdMain] C:\Program Files (x86)\TOSHIBA\FlashCards\TCrdMain.exe (.not file.) O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\Run: [SmartFaceVWatcher] C:\Program Files (x86)\Toshiba\SmartFaceV\SmartFaceVWatcher.exe (.not file.) O4 - HKLM\..\Run: [Teco] C:\Program Files (x86)\TOSHIBA\TECO\Teco.exe (.not file.) O4 - HKLM\..\Run: [TosWaitSrv] C:\Program Files (x86)\TOSHIBA\TPHM\TosWaitSrv.exe (.not file.) O4 - HKLM\..\Run: [Toshiba Registration] . (.Toshiba Europe GmbH - Toshiba Notebook Registration Reminder.) -- C:\Program Files\Toshiba\Registration\ToshibaReminder.exe O4 - HKCU\..\Run: [TOSHIBA Online Product Information] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O4 - HKCU\..\Run: [BIBLauncher] . (.Pas de propriétaire - Business-in-a-Box Launcher Application.) -- C:\Program Files (x86)\Business-in-a-Box\BIBLauncher.exe O4 - HKCU\..\Run: [MCSAgendaSVC] . (.Auvergne Assistance Informatique - Pas de description.) -- C:\2AIappli\MCSAgendaF\MCSAgendaSVC.exe O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKLM\..\Wow6432Node\Run: [IAStorIcon] . (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Wow6432Node\Run: [SVPWUTIL] . (.TOSHIBA - SVPWUTIL Application.) -- C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe O4 - HKLM\..\Wow6432Node\Run: [HWSetup] . (.TOSHIBA Electronics, Inc. - HWSetup.) -- C:\Program Files\TOSHIBA\Utilities\HWSetup.exe O4 - HKLM\..\Wow6432Node\Run: [KeNotify] . (.TOSHIBA CORPORATION - KeNotify MFC Application.) -- C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe O4 - HKLM\..\Wow6432Node\Run: [TWebCamera] . (.TOSHIBA CORPORATION. - Pas de description.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe O4 - HKLM\..\Wow6432Node\Run: [ToshibaServiceStation] . (.TOSHIBA Corporation - TOSHIBA Service Station.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe O4 - HKLM\..\Wow6432Node\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKLM\..\Wow6432Node\Run: [hpqSRMon] . (.Hewlett-Packard - HpqSRmon.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKUS\S-1-5-18\..\Run: [TOSHIBA Online Product Information] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe O4 - HKUS\S-1-5-18\..\Run: [TOSHIBA Online Product Information] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe O4 - HKUS\S-1-5-21-3691021364-2909691657-85338138-1000\..\Run: [TOSHIBA Online Product Information] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe O4 - HKUS\S-1-5-21-3691021364-2909691657-85338138-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O4 - HKUS\S-1-5-21-3691021364-2909691657-85338138-1000\..\Run: [BIBLauncher] . (.Pas de propriétaire - Business-in-a-Box Launcher Application.) -- C:\Program Files (x86)\Business-in-a-Box\BIBLauncher.exe O4 - HKUS\S-1-5-21-3691021364-2909691657-85338138-1000\..\Run: [MCSAgendaSVC] . (.Auvergne Assistance Informatique - Pas de description.) -- C:\2AIappli\MCSAgendaF\MCSAgendaSVC.exe O4 - HKUS\S-1-5-21-3691021364-2909691657-85338138-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ~ Scan Application in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\toshiba\Desktop\BNC Express 7.lnk . (.TREFLE ROUGE.) -- C:\BNC Express 7\BNC Express 7.exe O4 - Global Startup: C:\Users\toshiba\Desktop\Continue SweetIM Installation.lnk . (...) -- C:\Users\toshiba\AppData\Local\Temp\Shortcut_SweetImSetup.exe (.not file.) O4 - Global Startup: C:\Users\toshiba\Desktop\CV Word - Raccourci.lnk . (...) -- C:\Users\toshiba\Desktop\Modèles Office\CV Word O4 - Global Startup: C:\Users\toshiba\Desktop\Grand Prix 2006.url . (...) -- C:\Users\toshiba\Desktop\Grand Prix 2006.url O4 - Global Startup: C:\Users\toshiba\Desktop\Outils de diagnostic d'imprimante HP.url . (...) -- C:\Users\toshiba\Desktop\Outils de diagnostic d'imprimante HP.url O4 - Global Startup: C:\Users\toshiba\Desktop\ROI Report - Raccourci.lnk . (...) -- D:\Sauvegarde Infor STeph\Outlook\Marketing DSTM\ROI Report .msg O4 - Global Startup: C:\Users\toshiba\Desktop\System Checkup.lnk . (.iolo technologies, LLC.) -- C:\Program Files (x86)\iolo\System Checkup\SystemCheckup.exe O4 - Global Startup: C:\Users\toshiba\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk . (...) -- C:\Windows\Installer\{F2AF3E5D-9697-485C-A5AC-E2B9468C446A}\SafariIco.exe O4 - Global Startup: C:\Users\toshiba\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Business-in-a-Box.lnk . (...) -- C:\Program Files (x86)\Business-in-a-Box\BIB.exe O4 - Global Startup: C:\Users\toshiba\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - Global Startup: C:\Users\toshiba\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\toshiba\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Picasa 3.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Picasa3\Picasa3.exe ~ Scan Global Startup in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ Scan IE Control Panel in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000009\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll ~ Scan Winsock in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{6EA05D5E-6989-4736-98C5-BDB8B4F913E9}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CCS\Services\Tcpip\..\{EF2F66E7-1A9A-4836-B231-F130971DB66B}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\..\{6EA05D5E-6989-4736-98C5-BDB8B4F913E9}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CS1\Services\Tcpip\..\{EF2F66E7-1A9A-4836-B231-F130971DB66B}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS2\Services\Tcpip\..\{6EA05D5E-6989-4736-98C5-BDB8B4F913E9}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CS2\Services\Tcpip\..\{EF2F66E7-1A9A-4836-B231-F130971DB66B}: DhcpNameServer = 192.168.0.254 ~ Scan Domain in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: ms-itss [64Bits] - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll ~ Scan Protocole Additionnel in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ Scan SSODL in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) . (.TOSHIBA CORPORATION - ConfigFree Service Process.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe O23 - Service: ConfigFree Service (ConfigFree Service) . (.TOSHIBA CORPORATION - ConfigFree Service Process.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: Notebook Performance Tuning Service (TEM (TemproMonitoringService) . (.Toshiba Europe GmbH - Toshiba TEMPRO.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation - TDCSrv Application.) - C:\Windows\system32\TODDSrv.exe O23 - Service: TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation - TOSHIBA Power Saver.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe O23 - Service: TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.TOSHIBA Corporation - TOSHIBA eco Utility Service.) - C:\Program Files\TOSHIBA\TECO\TecoService.exe O23 - Service: Intel(R) Management & Security Applicati (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) ~ Scan Services in 00mn 00s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Scan Desktop Component in 00mn 00s ---\\ BootExecute (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ Scan Keys in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [MD5.BE66B026CF488C87B4D0EA9E616FFA4A] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [MD5.D88E81DECD3014C45603B4B327B4EE1A] [APT] [ConfigFree Startup Programs] (.TOSHIBA CORPORATION.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [MD5.00000000000000000000000000000000] [APT] [Start Registry Reviver] (...) -- C:\Program Files (x86)\Reviversoft\Registry Reviver\RegistryReviver.exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{9476C6F0-0903-44D8-933E-D437BD75FE4E}] (...) -- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LO4Y2BL3\softDownload[1].exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{CED3D90F-7F96-44B3-9567-4BE24C209DAA}] (...) -- C:\Users\toshiba\Desktop\zyngaIE_toolbar.exe (.not file.) [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe ~ Scan Scheduled Task in 00mn 03s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Scan Active Setup in 00mn 00s ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Scan Drivers in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {47FA2C44-D148-4DBC-AF60-B91934AA4842} O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Reader 9.5.2 - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-A95000000001} O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {343666E2-A059-48AC-AD67-230BF74E2DB2} O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {75104836-CAC7-444E-A39E-3F54151942F5} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} O42 - Logiciel: BNC Express 7 - (.Trèfle Rouge.) [HKLM][64Bits] -- {5DA8F755-AE77-4E82-8A32-1F04EB755B1B} O42 - Logiciel: BNC Express 7 - (.Trèfle Rouge.) [HKLM][64Bits] -- {926AFAAA-0D45-4582-B007-8F30F99A3DBA} O42 - Logiciel: BayaM 3-7 - (.Bayard Presse S.A.) [HKLM][64Bits] -- bayardKids.08AE7BFC096D057FBA48C7E4F898C35F7FA11BBA.1 O42 - Logiciel: BayaM 3-7 - (.Bayard Presse S.A.) [HKLM][64Bits] -- {C06C6CB2-4A31-A720-455D-987DF3C57C96} O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: BudgetPlus - (.Pas de propriétaire.) [HKLM][64Bits] -- {C964A549-C74A-11D3-B88A-00A0C9379093} O42 - Logiciel: Business-in-a-Box - (.Biztree Inc..) [HKLM][64Bits] -- Business-in-a-Box O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {E3D63B95-4B21-414A-A2C7-D6D6A6AC6D79} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: GIMP 2.6.12 - (.The GIMP Team.) [HKLM][64Bits] -- WinGimp-2.0_is1 O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {488F0347-C4A7-4374-91A7-30818BEDA710} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: HP Customer Participation Program 13.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities O42 - Logiciel: HP Imaging Device Functions 13.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions O42 - Logiciel: HP Photosmart All-In-One Driver Software 13.0 Rel. 2 - (.HP.) [HKLM][64Bits] -- {988329F4-A1A1-4D51-803C-EF2725A97627} O42 - Logiciel: HP Photosmart Essential 3.5 - (.HP.) [HKLM][64Bits] -- HP Photosmart Essential O42 - Logiciel: HP Product Detection - (.HP.) [HKLM][64Bits] -- {A436F67F-687E-4736-BD2B-537121A804CF} O42 - Logiciel: HP Smart Web Printing 4.60 - (.HP.) [HKLM][64Bits] -- HP Smart Web Printing O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3} O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE} O42 - Logiciel: Hewlett-Packard ACLM.NET v1.1.0.0 - (.Hewlett-Packard.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} O42 - Logiciel: Intel(R) Turbo Boost Technology Driver - (.Intel Corporation.) [HKLM][64Bits] -- {D6C630BF-8DBB-4042-8562-DC9A52CB6E7E} O42 - Logiciel: Java(TM) 6 Update 26 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216026FF} O42 - Logiciel: Jeux WildTangent - (.WildTangent.) [HKLM][64Bits] -- WildTangent toshiba Master Uninstall O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft .NET Framework 4 Client Profile O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643} O42 - Logiciel: Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) - (.Microsoft Corporation.) [HKLM][64Bits] -- {41785C66-90F2-40CE-8CB5-1C94BFC97280} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE}_HOMESTUDENTR_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_HOMESTUDENTR_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}_HOMESTUDENTR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93} O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office File Validation Add-In - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-2005-0000-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- HOMESTUDENTR O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE} O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00AF-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002C-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}_HOMESTUDENTR_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{928D7B99-2BEA-49F9-83B8-20FA57860643} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}_HOMESTUDENTR_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC} O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Suite Activation Assistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E} O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B6E3757B-5E77-3915-866A-CCFC4B8D194C} O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM][64Bits] -- {770657D0-A123-3C07-8E44-1C83EC895118} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {071c9b48-7c32-4621-a0ac-3f809523288f} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EE936C7A-EA40-31D5-9B65-8E3E089C3828} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8338783A-0968-3B85-AFC7-BAAE0A63DC50} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM][64Bits] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM][64Bits] -- {196BB40D-1578-3D01-B289-BEFC77A11A1E} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710} O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0020-040C-0000-0000000FF1CE} O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack O42 - Logiciel: OCR Software by I.R.I.S. 13.0 - (.HP.) [HKLM][64Bits] -- HPOCR O42 - Logiciel: Photo Service - powered by myphotobook - (.myphotobook GmbH.) [HKLM][64Bits] -- eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1 O42 - Logiciel: Photo Service - powered by myphotobook - (.myphotobook GmbH.) [HKLM][64Bits] -- {1C84AB70-7851-D03E-14B0-2CE969DD6CBA} O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {7BE15435-2D3E-4B58-867F-9C75BED0208C} O42 - Logiciel: Realtek Ethernet Controller Driver For Windows Vista and Later - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} O42 - Logiciel: Realtek WLAN Driver - (.Realtek.) [HKLM][64Bits] -- {0FB630AB-7BD8-40AE-B223-60397D57C3C9} O42 - Logiciel: Safari - (.Apple Inc..) [HKLM][64Bits] -- {F2AF3E5D-9697-485C-A5AC-E2B9468C446A} O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2446708 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2478663 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2518870 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2539636 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2572078 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2604121 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2633870 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656351 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656368 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656368v2 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656405 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2686827 O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C6997D22-CC93-4ED9-AD8A-02C3F3D2F1F9} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{5DD3FF90-B302-45B2-A188-C5EA7ACD5D46} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{D33B9EF5-3801-496A-A2D6-B7F4BE972D75} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{B145DBBB-7778-4A5D-9D2B-DA6569F02391} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{E34960DB-2A93-45DB-A208-02650F7AB09C} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596856) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{2623A96B-78E5-42CC-AB55-6A3969B32E36} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596856) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{2623A96B-78E5-42CC-AB55-6A3969B32E36} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{293FB6BE-D3EB-4162-B522-F9108040B9FE} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597162) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3069CE04-082C-4669-9BA1-E6AA66330C1F} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{2B3C041A-A7F2-4A24-968D-4BEB6A123D15} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2687314) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C8F44A46-5C2F-43D8-A0E7-B32E098EDA63} O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{EF5B5C7F-20CB-4A3A-AC3D-F5DE2C2BFDC7} O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2597161) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{B4C12F08-B0EF-4CC4-AD5F-381DD62BF640} O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Editi - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8F311D6C-D8DD-4C32-9457-1A129CABD1A5} O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edi - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{AEA16A27-0B97-4670-818F-A98D06EC0A6F} O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edi - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525} O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2687315) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{71190DF4-8724-4A56-9054-AE97FDC57115} O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client P - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}.KB2478663 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client P - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}.KB2518870 O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM][64Bits] -- Shop for HP Supplies O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey O42 - Logiciel: System Checkup 3.2 - (.iolo technologies, LLC.) [HKLM][64Bits] -- {4AC7B4E7-59B7-4E48-A60D-263C486FC33A}_is1 O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F64684A0-754B-4637-B7F9-6E8DAA8CD5CD} O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {F64684A0-754B-4637-B7F9-6E8DAA8CD5CD} O42 - Logiciel: TOSHIBA ConfigFree - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {F3529665-D75E-4D6D-98F0-745C78C68E9B} O42 - Logiciel: TOSHIBA DVD PLAYER - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {6C5F3BDC-0A1B-4436-A696-5939629D5C31} O42 - Logiciel: TOSHIBA Disc Creator - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5DA0E02F-970B-424B-BF41-513A5018E4C0} O42 - Logiciel: TOSHIBA Extended Tiles for Windows Mobility Center - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF} O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F} O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {F67FA545-D8E5-4209-86B1-AEE045D1003F} O42 - Logiciel: TOSHIBA Flash Cards Support Utility - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E} O42 - Logiciel: TOSHIBA Flash Cards Support Utility - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {620BBA5E-F848-4D56-8BDA-584E44584C5E} O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38} O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {D4322448-B6AF-4316-B859-D8A0E84DCB38} O42 - Logiciel: TOSHIBA Hardware Setup - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3} O42 - Logiciel: TOSHIBA Hardware Setup - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {5279374D-87FE-4879-9385-F17278EBB9D3} O42 - Logiciel: TOSHIBA Mot de passe responsable - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE} O42 - Logiciel: TOSHIBA PC Health Monitor - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4} O42 - Logiciel: TOSHIBA Recovery Media Creator - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF} O42 - Logiciel: TOSHIBA Recovery Media Creator Reminder - (.TOSHIBA.) [HKLM][64Bits] -- InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492} O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{5BCC94A1-DEF1-4AB4-8046-BC13048E929A} O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5BCC94A1-DEF1-4AB4-8046-BC13048E929A} O42 - Logiciel: TOSHIBA Service Station - (.TOSHIBA.) [HKLM][64Bits] -- {AC6569FA-6919-442A-8552-073BE69E247A} O42 - Logiciel: TOSHIBA Supervisor Password - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {51B4E156-14A5-4904-9AE4-B1AA2A0E46BE} O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E} O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5E6F6CF3-BACC-4144-868C-E14622C658F3} O42 - Logiciel: TOSHIBA eco Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E} O42 - Logiciel: TOSHIBA eco Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {B3FF1CD9-B2F0-4D71-BB55-5F580401C48E} O42 - Logiciel: TRORMCLauncher - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600} O42 - Logiciel: Toshiba Assist - (.TOSHIBA.) [HKLM][64Bits] -- {1B87C40B-A60B-4EF3-9A68-706CF4B69978} O42 - Logiciel: Toshiba Manuals - (.TOSHIBA.) [HKLM][64Bits] -- {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173} O42 - Logiciel: Toshiba Online Product Information - (.TOSHIBA.) [HKLM][64Bits] -- {2290A680-4083-410A-ADCC-7092C67FC052} O42 - Logiciel: Toshiba TEMPRO - (.Toshiba Europe GmbH.) [HKLM][64Bits] -- {14555947-6F14-421F-8F61-6489E0FDFAE5} O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D} O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871 O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2533523) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523 O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2600217) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217 O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438} O42 - Logiciel: VisualCab 5.2 - (.Pas de propriétaire.) [HKCU][64Bits] -- VisualCab 5.2 O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- WinLiveSuite O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5} O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066} O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM][64Bits] -- {2075CB0A-D26F-4DAA-B424-5079296B43BA} O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {1B8ABA62-74F0-47ED-B18C-A43128E591B8} O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {0B0F231F-CE6A-483D-AA23-77B364F75917} O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM][64Bits] -- {5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0} O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM][64Bits] -- {DA54F80E-261C-41A2-A855-549A144F2F59} O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D56775A-93F3-44A3-8092-840E3826DE30} O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6057E21C-ABE9-4059-AE3E-3BEB9925E660} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB4DF488-AAEF-406F-A341-CB2AAA315B90} O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3} O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {92EA4134-10D1-418A-91E1-5A0453131A38} O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CBABDFD-49F8-47FD-BE7D-ECDE7270525A} O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3} O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70} O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM][64Bits] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1} O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM][64Bits] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4} O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM][64Bits] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F} O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2} O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {09F56A49-A7B1-4AAB-95B9-D13094254AD1} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B9A92DA-6374-4872-B646-253F18624D5F} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {A726AE06-AAA3-43D1-87E3-70F510314F04} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF} O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194} O42 - Logiciel: avast! Free Antivirus v7.0.1466.0 - (.AVAST Software.) [HKLM][64Bits] -- avast O42 - Logiciel: chartInstall - (.MEMSOFT.) [HKLM][64Bits] -- {AA0D8F2B-3659-4041-8C96-2ABFE429C369} O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {5E11C972-1E76-45FE-8F92-14E0D1140B1B} O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} ---\\ HKCU & HKLM Software Keys [HKCU\Software\ALWIL Software] [HKCU\Software\ATI] [HKCU\Software\AVAST Software] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Google] [HKCU\Software\AppDataLow\Software\Adobe] [HKCU\Software\AppDataLow\Software\FCTB000062781] [HKCU\Software\AppDataLow\Software\Google] [HKCU\Software\AppDataLow\Software\Macromedia] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software\Monitored] [HKCU\Software\AppDataLow\Software\Yahoo] [HKCU\Software\AppDataLow\Software\settings] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Apple Inc.] [HKCU\Software\Atheros] [HKCU\Software\Business-in-a-Box] [HKCU\Software\CeWe Color] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\DreamPocket] [HKCU\Software\Google] [HKCU\Software\HP] [HKCU\Software\Hewlett-Packard] [HKCU\Software\HookNetwork] [HKCU\Software\I.R.I.S.] [HKCU\Software\IM Providers] [HKCU\Software\InstallCore] [HKCU\Software\Iris] [HKCU\Software\JavaSoft] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Macromedia] [HKCU\Software\Micro CONSEIL Services] [HKCU\Software\Monitored] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\Netscape] [HKCU\Software\ODBC] [HKCU\Software\PC SOFT] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\RegisteredApplications] [HKCU\Software\SweetIM] [HKCU\Software\Synaptics] [HKCU\Software\TOSHIBA] [HKCU\Software\Trolltech] [HKCU\Software\Wow6432Node] [HKCU\Software\YR Conseils] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\Yahoo] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\iolo] [HKCU\Software\itb] [HKCU\Software\settings] [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\Agere] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\BrowserChoice] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\GEAR Software] [HKLM\Software\Google] [HKLM\Software\Hewlett-Packard] [HKLM\Software\InstalledOptions] [HKLM\Software\Intel] [HKLM\Software\LSI] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\ODBC] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\RTLSetup] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SRS Labs] [HKLM\Software\Sonic] [HKLM\Software\Synaptics] [HKLM\Software\TOSHIBA] [HKLM\Software\Toshiba Tempro] [HKLM\Software\Waves Audio] [HKLM\Software\WildTangent] [HKLM\Software\Wow6432Node\ALWIL Software] [HKLM\Software\Wow6432Node\ATI Technologies] [HKLM\Software\Wow6432Node\ATI] [HKLM\Software\Wow6432Node\AVAST Software] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\America Online] [HKLM\Software\Wow6432Node\AppDataLow] [HKLM\Software\Wow6432Node\Apple Computer, Inc.] [HKLM\Software\Wow6432Node\Apple Inc.] [HKLM\Software\Wow6432Node\COMPAL] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\Cyberlink] [HKLM\Software\Wow6432Node\Digital River] [HKLM\Software\Wow6432Node\DivXNetworks] [HKLM\Software\Wow6432Node\DreamPocket] [HKLM\Software\Wow6432Node\Euro Information] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\HPS] [HKLM\Software\Wow6432Node\HP] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\InstallShield] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\McAfeeInstaller] [HKLM\Software\Wow6432Node\MimarSinan] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\RtWLan] [HKLM\Software\Wow6432Node\SiteAdvisor] [HKLM\Software\Wow6432Node\Software] [HKLM\Software\Wow6432Node\SweetIM] [HKLM\Software\Wow6432Node\TOSHIBA Corporation] [HKLM\Software\Wow6432Node\TOSHIBA] [HKLM\Software\Wow6432Node\Uniblue] [HKLM\Software\Wow6432Node\WildTangent] [HKLM\Software\Wow6432Node\Windows] [HKLM\Software\Wow6432Node\Yahoo] [HKLM\Software\Wow6432Node\gibcom] [HKLM\Software\Wow6432Node\iolo] [HKLM\Software\Wow6432Node\mcafeeupdater] [HKLM\Software\Wow6432Node] ~ Scan Softwares in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 04/02/2012 - 20:39:09 - [109,835] ----D C:\Program Files (x86)\Adobe O43 - CFD: 23/07/2011 - 16:13:08 - [2,316] ----D C:\Program Files (x86)\Apple Software Update O43 - CFD: 07/01/2010 - 17:15:25 - [82,972] ----D C:\Program Files (x86)\ATI Technologies O43 - CFD: 10/08/2012 - 09:11:32 - [5,102] ----D C:\Program Files (x86)\BayaM 3-7 O43 - CFD: 17/11/2011 - 12:16:21 - [0,602] ----D C:\Program Files (x86)\Bonjour O43 - CFD: 02/04/2010 - 11:08:02 - [94,017] ----D C:\Program Files (x86)\Business-in-a-Box O43 - CFD: 09/03/2012 - 13:37:11 - [531,235] ----D C:\Program Files (x86)\Common Files O43 - CFD: 16/02/2011 - 12:26:13 - [4,340] ----D C:\Program Files (x86)\Filbanque O43 - CFD: 10/10/2010 - 16:02:19 - [125,308] ----D C:\Program Files (x86)\Gibcom O43 - CFD: 02/03/2012 - 12:22:58 - [115,127] ----D C:\Program Files (x86)\GIMP-2.0 O43 - CFD: 19/12/2011 - 14:40:20 - [706,854] ----D C:\Program Files (x86)\Google O43 - CFD: 30/05/2012 - 13:27:53 - [1,884] ----D C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 12/08/2010 - 11:46:41 - [333,665] ----D C:\Program Files (x86)\HP O43 - CFD: 16/02/2011 - 12:26:10 - [127,713] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 07/01/2010 - 17:29:46 - [35,469] ----D C:\Program Files (x86)\Intel O43 - CFD: 22/09/2012 - 03:17:48 - [6,533] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 27/03/2012 - 00:06:46 - [8,945] ----D C:\Program Files (x86)\iolo O43 - CFD: 31/01/2012 - 21:51:37 - [140,802] ----D C:\Program Files (x86)\iTunes O43 - CFD: 04/12/2009 - 13:15:52 - [85,341] ----D C:\Program Files (x86)\Java O43 - CFD: 09/03/2012 - 13:38:35 - [1,690] ----D C:\Program Files (x86)\MEMSOFT O43 - CFD: 09/03/2012 - 13:38:43 - [3,469] ----D C:\Program Files (x86)\Microsoft Chart Controls O43 - CFD: 23/08/2011 - 16:45:47 - [362,658] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 04/12/2009 - 13:43:41 - [7,431] ----D C:\Program Files (x86)\Microsoft Office Suite Activation Assistant O43 - CFD: 09/05/2012 - 08:54:38 - [36,641] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 04/12/2009 - 13:45:43 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 11/10/2012 - 03:06:01 - [138,685] ----D C:\Program Files (x86)\Microsoft Works O43 - CFD: 26/06/2010 - 08:20:09 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 08/04/2010 - 08:19:56 - [0] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 04/12/2009 - 13:28:02 - [25,359] ----D C:\Program Files (x86)\Photo-Service O43 - CFD: 20/06/2011 - 09:06:09 - [0] ----D C:\Program Files (x86)\photomoinscher O43 - CFD: 17/11/2011 - 12:20:34 - [72,431] ----D C:\Program Files (x86)\QuickTime O43 - CFD: 07/01/2010 - 17:28:07 - [14,475] ----D C:\Program Files (x86)\Realtek O43 - CFD: 07/01/2010 - 17:26:11 - [3,993] ----D C:\Program Files (x86)\Realtek WLAN Driver O43 - CFD: 14/07/2009 - 07:32:38 - [37,349] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 06/12/2011 - 21:23:43 - [42,199] ----D C:\Program Files (x86)\Safari O43 - CFD: 07/01/2010 - 17:17:52 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 07/01/2010 - 17:34:52 - [387,489] ----D C:\Program Files (x86)\TOSHIBA O43 - CFD: 04/12/2009 - 13:31:40 - [302,080] ----D C:\Program Files (x86)\TOSHIBA Games O43 - CFD: 04/12/2009 - 13:28:18 - [10,195] ----D C:\Program Files (x86)\Toshiba TEMPRO O43 - CFD: 02/10/2012 - 11:51:18 - [0] ----D C:\Program Files (x86)\Tweaks O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 14/07/2009 - 17:24:08 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 30/03/2011 - 03:01:18 - [139,448] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 23/08/2011 - 16:48:54 - [5,895] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 23/08/2011 - 16:48:54 - [4,791] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 23/08/2011 - 16:48:54 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 23/08/2011 - 16:48:54 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 23/08/2011 - 16:48:54 - [6,780] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 12/10/2012 - 13:15:06 - [10,014] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 04/02/2012 - 20:39:10 - [6,244] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 06/04/2012 - 20:13:45 - [38,049] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 31/01/2012 - 21:51:14 - [121,168] ----D C:\Program Files (x86)\Common Files\Apple O43 - CFD: 04/12/2009 - 13:42:59 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 06/04/2010 - 20:13:07 - [0,951] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 12/07/2010 - 14:55:11 - [5,403] ----D C:\Program Files (x86)\Common Files\HP O43 - CFD: 16/02/2011 - 12:26:00 - [4,943] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 28/06/2011 - 14:13:55 - [1,201] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 09/03/2012 - 13:38:45 - [3,569] ----D C:\Program Files (x86)\Common Files\Memsoft O43 - CFD: 03/03/2012 - 04:02:55 - [258,525] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 07/01/2010 - 17:29:48 - [0,159] ----D C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 10/11/2011 - 09:15:30 - [42,206] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 07/01/2010 - 17:34:56 - [1,051] ----D C:\Program Files (x86)\Common Files\Toshiba Shared O43 - CFD: 04/12/2009 - 13:43:56 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 04/12/2009 - 13:28:12 - [8,474] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 07/10/2012 - 21:48:43 - [141,993] ----D C:\ProgramData\Adobe O43 - CFD: 01/05/2010 - 20:25:31 - [19,060] ----D C:\ProgramData\Alwil Software O43 - CFD: 14/01/2011 - 00:37:44 - [149,326] ----D C:\ProgramData\Apple O43 - CFD: 14/01/2011 - 00:38:53 - [104,477] ----D C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Application Data O43 - CFD: 07/01/2010 - 17:15:33 - [0,000] ----D C:\ProgramData\ATI O43 - CFD: 30/01/2010 - 10:35:18 - [0] --H-D C:\ProgramData\Bureau O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Documents O43 - CFD: 30/01/2010 - 10:35:18 - [0] --H-D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Favorites O43 - CFD: 04/12/2009 - 13:26:16 - [0,514] ----D C:\ProgramData\Google O43 - CFD: 01/04/2010 - 13:48:05 - [0,426] ----D C:\ProgramData\Hewlett-Packard O43 - CFD: 12/07/2010 - 14:59:42 - [24,139] ----D C:\ProgramData\HP O43 - CFD: 12/07/2010 - 14:56:17 - [0,009] ----D C:\ProgramData\HP Product Assistant O43 - CFD: 13/08/2010 - 14:53:07 - [0,008] ----D C:\ProgramData\hps O43 - CFD: 27/03/2012 - 00:06:55 - [0,183] ----D C:\ProgramData\iolo O43 - CFD: 04/12/2009 - 13:29:36 - [0,002] ----D C:\ProgramData\IsolatedStorage O43 - CFD: 02/09/2010 - 22:48:52 - [0,010] ----D C:\ProgramData\McAfee O43 - CFD: 30/01/2010 - 10:35:18 - [0] --H-D C:\ProgramData\Menu Démarrer O43 - CFD: 17/03/2011 - 12:45:44 - [51,982] -S--D C:\ProgramData\Microsoft O43 - CFD: 11/10/2012 - 03:03:58 - [0,055] ----D C:\ProgramData\Microsoft Help O43 - CFD: 30/01/2010 - 10:35:18 - [0] --H-D C:\ProgramData\Modèles O43 - CFD: 04/12/2009 - 13:34:30 - [0,000] ----D C:\ProgramData\SiteAdvisor O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Start Menu O43 - CFD: 28/06/2011 - 14:13:56 - [0,000] ----D C:\ProgramData\Sun O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Templates O43 - CFD: 07/01/2010 - 17:34:58 - [5,019] ----D C:\ProgramData\TOSHIBA O43 - CFD: 30/01/2010 - 10:35:48 - [0,001] ----D C:\ProgramData\ToshibaEurope O43 - CFD: 07/01/2010 - 17:19:44 - [2,158] ----D C:\ProgramData\Vista32 O43 - CFD: 07/01/2010 - 17:19:44 - [3,146] ----D C:\ProgramData\Vista64 O43 - CFD: 06/04/2010 - 20:17:31 - [0,000] ----D C:\ProgramData\WEBREG O43 - CFD: 29/04/2010 - 10:08:32 - [660,947] ----D C:\ProgramData\WildTangent O43 - CFD: 07/01/2010 - 17:21:16 - [2,117] ----D C:\ProgramData\win7_32 O43 - CFD: 07/01/2010 - 17:21:16 - [3,069] ----D C:\ProgramData\win7_64 O43 - CFD: 07/01/2010 - 17:19:44 - [0,055] ----D C:\ProgramData\XP O43 - CFD: 14/01/2011 - 00:39:16 - [0] ----D C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001} O43 - CFD: 15/08/2010 - 18:13:12 - [44,565] ----D C:\Users\toshiba\AppData\Roaming\Adobe O43 - CFD: 01/02/2012 - 00:50:13 - [-1829,712] ----D C:\Users\toshiba\AppData\Roaming\Apple Computer O43 - CFD: 30/01/2010 - 12:48:15 - [0] ----D C:\Users\toshiba\AppData\Roaming\ATI O43 - CFD: 11/11/2011 - 16:06:26 - [29,129] ----D C:\Users\toshiba\AppData\Roaming\bayardKids.08AE7BFC096D057FBA48C7E4F898C35F7FA11BBA.1 O43 - CFD: 15/08/2010 - 18:13:13 - [6,731] ----D C:\Users\toshiba\AppData\Roaming\eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1 O43 - CFD: 03/02/2010 - 14:18:44 - [0,001] ----D C:\Users\toshiba\AppData\Roaming\Google O43 - CFD: 06/04/2010 - 20:18:18 - [0,184] ----D C:\Users\toshiba\AppData\Roaming\HP O43 - CFD: 02/09/2012 - 12:54:30 - [0,013] ----D C:\Users\toshiba\AppData\Roaming\HpUpdate O43 - CFD: 30/01/2010 - 12:47:37 - [0] ----D C:\Users\toshiba\AppData\Roaming\Identities O43 - CFD: 30/01/2010 - 12:48:20 - [0] ----D C:\Users\toshiba\AppData\Roaming\Intel Corporation O43 - CFD: 04/12/2009 - 13:28:01 - [0,054] ----D C:\Users\toshiba\AppData\Roaming\Macromedia O43 - CFD: 14/07/2009 - 17:35:05 - [0] ----D C:\Users\toshiba\AppData\Roaming\Media Center Programs O43 - CFD: 12/10/2012 - 12:51:29 - [17,504] -S--D C:\Users\toshiba\AppData\Roaming\Microsoft O43 - CFD: 05/04/2010 - 19:21:18 - [16,537] ----D C:\Users\toshiba\AppData\Roaming\Toshiba O43 - CFD: 13/12/2010 - 12:07:00 - [0,250] ----D C:\Users\toshiba\AppData\Roaming\Uniblue O43 - CFD: 05/04/2010 - 18:18:42 - [0,001] ----D C:\Users\toshiba\AppData\Roaming\WildTangent O43 - CFD: 16/09/2011 - 10:15:29 - [0,000] ----D C:\Users\toshiba\AppData\Roaming\Windows Live Writer O43 - CFD: 06/04/2010 - 20:15:20 - [0] ----D C:\Users\toshiba\AppData\Roaming\Yahoo! O43 - CFD: 04/02/2012 - 20:38:02 - [0,328] ----D C:\Users\toshiba\AppData\Local\Adobe O43 - CFD: 14/01/2011 - 00:37:48 - [0] ----D C:\Users\toshiba\AppData\Local\Apple O43 - CFD: 23/11/2011 - 18:05:25 - [117,602] ----D C:\Users\toshiba\AppData\Local\Apple Computer O43 - CFD: 30/01/2010 - 10:35:32 - [0] ----D C:\Users\toshiba\AppData\Local\Application Data O43 - CFD: 30/01/2010 - 12:48:15 - [0,069] ----D C:\Users\toshiba\AppData\Local\ATI O43 - CFD: 01/10/2012 - 10:38:32 - [0] ----D C:\Users\toshiba\AppData\Local\Diagnostics O43 - CFD: 08/10/2012 - 00:41:55 - [0] ----D C:\Users\toshiba\AppData\Local\ElevatedDiagnostics O43 - CFD: 25/09/2012 - 14:03:54 - [600,206] ----D C:\Users\toshiba\AppData\Local\Google O43 - CFD: 30/01/2010 - 10:35:32 - [0] ----D C:\Users\toshiba\AppData\Local\Historique O43 - CFD: 06/04/2010 - 20:17:05 - [31,366] ----D C:\Users\toshiba\AppData\Local\HP O43 - CFD: 10/01/2012 - 13:38:55 - [419,939] ----D C:\Users\toshiba\AppData\Local\Microsoft O43 - CFD: 01/08/2010 - 01:58:46 - [0,494] ----D C:\Users\toshiba\AppData\Local\Microsoft Games O43 - CFD: 23/06/2010 - 11:26:43 - [0,388] ----D C:\Users\toshiba\AppData\Local\Microsoft Help O43 - CFD: 13/12/2010 - 12:06:42 - [0] ----D C:\Users\toshiba\AppData\Local\PackageAware O43 - CFD: 18/02/2011 - 15:41:54 - [0,000] ----D C:\Users\toshiba\AppData\Local\Psyconseil,_Thierry_Merle O43 - CFD: 12/10/2012 - 13:10:21 - [0,863] ----D C:\Users\toshiba\AppData\Local\Temp O43 - CFD: 30/01/2010 - 10:35:32 - [0] ----D C:\Users\toshiba\AppData\Local\Temporary Internet Files O43 - CFD: 30/01/2010 - 10:41:29 - [0] ----D C:\Users\toshiba\AppData\Local\Toshiba O43 - CFD: 01/04/2010 - 12:54:06 - [0,001] ----D C:\Users\toshiba\AppData\Local\TOSHIBA_Corporation O43 - CFD: 02/10/2012 - 11:55:53 - [9,453] ----D C:\Users\toshiba\AppData\Local\VirtualStore O43 - CFD: 11/10/2012 - 10:28:43 - [0,070] ----D C:\Users\toshiba\AppData\Local\Windows Live O43 - CFD: 18/03/2011 - 19:16:51 - [0,618] ----D C:\Users\toshiba\AppData\Local\Windows Live Writer O43 - CFD: 27/07/2011 - 01:03:29 - [0] ----D C:\Users\toshiba\AppData\Local\{023D9752-8707-46E8-8D02-A41C799703C1} O43 - CFD: 19/11/2011 - 22:24:20 - [0] ----D C:\Users\toshiba\AppData\Local\{028F6F6F-EAB0-44E4-B6C8-E1CE82F73F8A} O43 - CFD: 19/10/2011 - 20:20:53 - [0] ----D C:\Users\toshiba\AppData\Local\{0D084E4F-1FC9-4A08-8888-F9EED2F6CA1B} O43 - CFD: 17/10/2011 - 20:29:15 - [0] ----D C:\Users\toshiba\AppData\Local\{0DE595A4-E11E-4853-83F4-2F502EEF3F0F} O43 - CFD: 08/06/2012 - 21:11:30 - [0] ----D C:\Users\toshiba\AppData\Local\{0FAB004E-0E11-40A5-ADBF-BBB6C5E1FD01} O43 - CFD: 03/01/2012 - 13:58:28 - [0] ----D C:\Users\toshiba\AppData\Local\{10B0C293-E8C3-4705-B94F-F50E9D679AEA} O43 - CFD: 21/06/2011 - 20:23:39 - [0] ----D C:\Users\toshiba\AppData\Local\{13C5760F-69CE-4543-8110-FB64784723C9} O43 - CFD: 12/04/2012 - 22:15:45 - [0] ----D C:\Users\toshiba\AppData\Local\{14E22475-A8CB-4186-8B88-6524CBEF9F17} O43 - CFD: 25/09/2012 - 11:31:08 - [0] ----D C:\Users\toshiba\AppData\Local\{15043CB7-4CD8-476A-B05B-306BD6A9B0AF} O43 - CFD: 25/05/2012 - 00:24:57 - [0] ----D C:\Users\toshiba\AppData\Local\{1543C15E-F98A-4264-8ACE-E2F5450637A1} O43 - CFD: 31/05/2011 - 22:00:49 - [0] ----D C:\Users\toshiba\AppData\Local\{15CBAA18-D9F0-4BBA-9F2E-D28DD266A7B6} O43 - CFD: 24/11/2011 - 17:55:52 - [0] ----D C:\Users\toshiba\AppData\Local\{15FBBE3D-30C8-4DB8-8DE6-4F7772FEE9E2} O43 - CFD: 14/06/2012 - 10:54:26 - [0] ----D C:\Users\toshiba\AppData\Local\{1761F794-3D14-4BDF-8E27-185296FA1FF4} O43 - CFD: 27/12/2011 - 01:11:26 - [0] ----D C:\Users\toshiba\AppData\Local\{19DC65FA-9DF9-443B-9EA1-B4B1969AE0D7} O43 - CFD: 13/09/2011 - 16:03:19 - [0] ----D C:\Users\toshiba\AppData\Local\{1B00DBEE-71F1-4AC1-89AF-10E7DCE22D24} O43 - CFD: 25/01/2012 - 17:59:41 - [0] ----D C:\Users\toshiba\AppData\Local\{1C56CF20-8B4D-41CB-AEF2-A3DC91D370C4} O43 - CFD: 25/03/2012 - 17:53:45 - [0] ----D C:\Users\toshiba\AppData\Local\{2040C23D-7ECB-464F-9512-0D115E9DDE80} O43 - CFD: 25/08/2011 - 11:30:31 - [0] ----D C:\Users\toshiba\AppData\Local\{22FF990D-0581-41F4-8C04-002FA437D6B8} O43 - CFD: 06/08/2011 - 13:01:14 - [0] ----D C:\Users\toshiba\AppData\Local\{2ABA7B3C-856B-40DE-BEEB-7F6FBBF3E2DE} O43 - CFD: 29/12/2011 - 23:52:39 - [0] ----D C:\Users\toshiba\AppData\Local\{2B67711F-DA69-4025-A67D-67C49A9C6F6A} O43 - CFD: 25/03/2012 - 17:53:34 - [0] ----D C:\Users\toshiba\AppData\Local\{2BAFBF6F-C54F-4389-B523-1E119EC1DF81} O43 - CFD: 15/03/2012 - 11:11:34 - [0] ----D C:\Users\toshiba\AppData\Local\{31531A78-E725-482F-9935-62C081D9788D} O43 - CFD: 09/05/2012 - 10:04:57 - [0] ----D C:\Users\toshiba\AppData\Local\{318C852A-5143-4F2B-8CD3-D7A499F7F630} O43 - CFD: 22/09/2012 - 12:01:42 - [0] ----D C:\Users\toshiba\AppData\Local\{33EC6383-5C93-41EC-884A-0ACC9E9CE599} O43 - CFD: 26/08/2012 - 12:29:14 - [0] ----D C:\Users\toshiba\AppData\Local\{34B54AB6-5E26-4162-A872-95B6E1FFCD31} O43 - CFD: 17/02/2012 - 12:49:16 - [0] ----D C:\Users\toshiba\AppData\Local\{356477F6-C677-412D-9356-2901CA1A713E} O43 - CFD: 27/04/2012 - 15:16:26 - [0] ----D C:\Users\toshiba\AppData\Local\{36FBA5B7-183E-4A75-B5DC-772A10E72415} O43 - CFD: 26/09/2011 - 20:01:19 - [0] ----D C:\Users\toshiba\AppData\Local\{398E5630-0BE3-46C4-AA0F-4DEC483B5CC9} O43 - CFD: 29/05/2012 - 21:24:05 - [0] ----D C:\Users\toshiba\AppData\Local\{3CE79BE8-547C-4509-973B-0C4D8AE683E0} O43 - CFD: 21/08/2011 - 20:01:15 - [0] ----D C:\Users\toshiba\AppData\Local\{3F6DA985-6822-40CF-8E4B-00B76EBC3491} O43 - CFD: 03/03/2012 - 11:56:24 - [0] ----D C:\Users\toshiba\AppData\Local\{41FC9A9B-CC8F-40C0-AE0D-D11545040572} O43 - CFD: 12/03/2012 - 09:59:48 - [0] ----D C:\Users\toshiba\AppData\Local\{44447010-5A6E-41A6-B103-A646E0ADC793} O43 - CFD: 06/08/2012 - 22:38:59 - [0] ----D C:\Users\toshiba\AppData\Local\{45390095-7820-4EC9-9B60-B10A6D66B7EF} O43 - CFD: 19/12/2011 - 01:12:30 - [0] ----D C:\Users\toshiba\AppData\Local\{46C68714-67A7-4E61-86D2-E79B8D15EF14} O43 - CFD: 16/09/2011 - 10:00:42 - [0] ----D C:\Users\toshiba\AppData\Local\{481B8467-0991-4EEA-8FC4-A416519A17A4} O43 - CFD: 21/10/2011 - 14:47:33 - [0] ----D C:\Users\toshiba\AppData\Local\{487C10D9-5223-4778-9A83-EFDDE691BA0A} O43 - CFD: 13/09/2012 - 10:24:38 - [0] ----D C:\Users\toshiba\AppData\Local\{4A4BCACC-72A2-434C-A190-7EF053A39C60} O43 - CFD: 16/12/2011 - 11:23:44 - [0] ----D C:\Users\toshiba\AppData\Local\{4BAA78A3-B2D0-4D92-BD68-8EF4F6E87ED3} O43 - CFD: 27/12/2011 - 14:47:52 - [0] ----D C:\Users\toshiba\AppData\Local\{4DEF3E23-1C93-459D-8869-E5DCB9CF2CAF} O43 - CFD: 10/04/2011 - 23:14:15 - [0] ----D C:\Users\toshiba\AppData\Local\{4DFED980-058D-4860-8F0D-F1F9CB5B4EC3} O43 - CFD: 16/06/2011 - 09:49:29 - [0] ----D C:\Users\toshiba\AppData\Local\{4F0B8619-7E53-48F8-9AB6-7DE428F8EF85} O43 - CFD: 12/03/2012 - 09:59:58 - [0] ----D C:\Users\toshiba\AppData\Local\{50A322E7-D013-4078-A519-3D1F8438C172} O43 - CFD: 19/11/2011 - 22:24:09 - [0] ----D C:\Users\toshiba\AppData\Local\{50E318E2-4E02-46A4-B606-97EFE240D042} O43 - CFD: 28/04/2011 - 19:34:25 - [0] ----D C:\Users\toshiba\AppData\Local\{52161733-2E31-465C-A5E0-B5E8B8E120E8} O43 - CFD: 23/09/2011 - 13:00:22 - [0] ----D C:\Users\toshiba\AppData\Local\{540FA9E3-377B-46DA-9CC0-F447E097A7E8} O43 - CFD: 26/09/2011 - 19:58:04 - [0] ----D C:\Users\toshiba\AppData\Local\{54A1EBDB-AA99-4999-A190-8EEC0D496310} O43 - CFD: 12/07/2012 - 11:01:29 - [0] ----D C:\Users\toshiba\AppData\Local\{5515DFA7-88C5-4E71-A062-365C5096BE18} O43 - CFD: 22/08/2011 - 19:09:16 - [0] ----D C:\Users\toshiba\AppData\Local\{5643519D-7CC3-4A88-92A8-BE4F84A9C973} O43 - CFD: 07/10/2012 - 14:13:12 - [0] ----D C:\Users\toshiba\AppData\Local\{572138BB-589B-4758-9BDC-13CC9D59B6EE} O43 - CFD: 11/10/2011 - 19:27:34 - [0] ----D C:\Users\toshiba\AppData\Local\{57DD6593-E2AF-4479-9C5D-8F399FD7478F} O43 - CFD: 11/10/2011 - 19:27:45 - [0] ----D C:\Users\toshiba\AppData\Local\{59C9E20C-60FB-43FF-86FA-FE4A93FA14CE} O43 - CFD: 29/12/2011 - 23:52:50 - [0] ----D C:\Users\toshiba\AppData\Local\{5CDDD21A-9855-4FA3-994A-9D80D60329C7} O43 - CFD: 16/09/2011 - 10:00:41 - [0] ----D C:\Users\toshiba\AppData\Local\{5E63AD31-1E63-4630-AFC4-1B203899A07C} O43 - CFD: 18/11/2011 - 21:58:25 - [0] ----D C:\Users\toshiba\AppData\Local\{5F31CDFF-B1DD-4E97-BD1C-37ED6F79C94F} O43 - CFD: 06/08/2011 - 13:01:02 - [0] ----D C:\Users\toshiba\AppData\Local\{5FE3B83F-79D8-44FB-A61F-2F9A9F862896} O43 - CFD: 25/05/2012 - 00:24:46 - [0] ----D C:\Users\toshiba\AppData\Local\{6034CA23-4552-4C6D-BDDF-3C9458C01EB5} O43 - CFD: 14/09/2011 - 09:02:00 - [0] ----D C:\Users\toshiba\AppData\Local\{6183603F-EDC6-4D1A-BC58-752652318E43} O43 - CFD: 22/08/2011 - 19:09:28 - [0] ----D C:\Users\toshiba\AppData\Local\{61A52556-E887-4814-87BA-41553EBD79BB} O43 - CFD: 10/01/2012 - 13:39:24 - [0] ----D C:\Users\toshiba\AppData\Local\{63086A70-86CB-4897-8251-A00FBE71EFF7} O43 - CFD: 03/03/2012 - 11:56:14 - [0] ----D C:\Users\toshiba\AppData\Local\{64F06551-A3FF-4E0B-8A39-DE6CC5C30A46} O43 - CFD: 17/09/2011 - 00:23:33 - [0] ----D C:\Users\toshiba\AppData\Local\{65B841A3-C69C-4F12-8553-D374D420913B} O43 - CFD: 13/10/2011 - 08:39:57 - [0] ----D C:\Users\toshiba\AppData\Local\{6639B6CE-F165-4EC6-866B-0BCB2B292424} O43 - CFD: 16/09/2011 - 10:09:30 - [0] ----D C:\Users\toshiba\AppData\Local\{6684D845-BFE5-4EB7-A76E-98AF757775D8} O43 - CFD: 03/01/2012 - 00:38:37 - [0] ----D C:\Users\toshiba\AppData\Local\{669B1D8B-2957-4436-89DE-647A3524D71B} O43 - CFD: 29/05/2012 - 21:24:16 - [0] ----D C:\Users\toshiba\AppData\Local\{6BCE3DD4-D66C-41BB-8DCC-D6C7B94DC0BE} O43 - CFD: 19/10/2011 - 20:21:04 - [0] ----D C:\Users\toshiba\AppData\Local\{6EFD7717-FEE6-4230-B951-C70F6900C020} O43 - CFD: 18/11/2011 - 09:54:17 - [0] ----D C:\Users\toshiba\AppData\Local\{6F941D40-D574-44CD-9C77-5087601D84FC} O43 - CFD: 08/06/2012 - 21:11:19 - [0] ----D C:\Users\toshiba\AppData\Local\{7259E8BA-2D82-4C3E-A81F-6737396D62F8} O43 - CFD: 24/11/2011 - 11:08:45 - [0] ----D C:\Users\toshiba\AppData\Local\{74F2FDAB-6FA5-40E5-A72B-51933423D856} O43 - CFD: 31/10/2011 - 21:47:21 - [0] ----D C:\Users\toshiba\AppData\Local\{79DB6A30-3636-42ED-BFB2-2B7B067AEA47} O43 - CFD: 10/11/2011 - 09:59:39 - [0] ----D C:\Users\toshiba\AppData\Local\{79E5F9CE-F32E-4A20-9E53-21B41C54A611} O43 - CFD: 06/08/2012 - 22:39:11 - [0] ----D C:\Users\toshiba\AppData\Local\{7D69950C-405C-486B-9C2B-DA5F63C4F4C7} O43 - CFD: 17/09/2011 - 00:23:21 - [0] ----D C:\Users\toshiba\AppData\Local\{7E795D6D-D7A3-4A8B-8744-2E976E91D629} O43 - CFD: 20/03/2012 - 12:08:57 - [0] ----D C:\Users\toshiba\AppData\Local\{81EDC87B-EA5B-4FC8-ACB8-E3EE23923CBF} O43 - CFD: 18/09/2011 - 10:03:47 - [0] ----D C:\Users\toshiba\AppData\Local\{85385A7B-846D-4521-90D7-BC9E1515CF12} O43 - CFD: 11/04/2011 - 11:14:35 - [0] ----D C:\Users\toshiba\AppData\Local\{86943827-6AB7-4E44-88DB-0394BD9F4A80} O43 - CFD: 10/08/2012 - 00:01:36 - [0] ----D C:\Users\toshiba\AppData\Local\{870C05A2-25EF-48BB-A848-0C43628C931A} O43 - CFD: 22/08/2011 - 10:00:48 - [0] ----D C:\Users\toshiba\AppData\Local\{87349811-956E-4F18-BC9B-2DB928C5EAA6} O43 - CFD: 20/06/2011 - 21:11:40 - [0] ----D C:\Users\toshiba\AppData\Local\{89AC7935-E185-499D-9122-E505A4230E8A} O43 - CFD: 06/10/2011 - 22:12:07 - [0] ----D C:\Users\toshiba\AppData\Local\{8B275A7C-77A6-4D32-B75B-A6368EF18AED} O43 - CFD: 12/01/2012 - 11:53:46 - [0] ----D C:\Users\toshiba\AppData\Local\{8CC660A8-C6F8-4CDB-9F7C-BE86A9199676} O43 - CFD: 20/03/2012 - 12:09:09 - [0] ----D C:\Users\toshiba\AppData\Local\{8CEC2EC7-61C9-4644-96A2-BB39E7194AC0} O43 - CFD: 04/07/2012 - 17:25:55 - [0] ----D C:\Users\toshiba\AppData\Local\{8F9E6EDD-DA2C-4A29-B2BB-9B930249C46D} O43 - CFD: 10/01/2012 - 13:39:35 - [0] ----D C:\Users\toshiba\AppData\Local\{9377E67B-5827-455C-A14E-F08B2DB56DF8} O43 - CFD: 21/10/2011 - 14:44:03 - [0] ----D C:\Users\toshiba\AppData\Local\{957AED5E-7792-40AF-8D32-2EA0A0C2E3E5} O43 - CFD: 21/08/2011 - 20:01:15 - [0] ----D C:\Users\toshiba\AppData\Local\{99BF4F2F-7504-482F-800D-D68919B0EEBE} O43 - CFD: 09/09/2011 - 08:47:59 - [0] ----D C:\Users\toshiba\AppData\Local\{9BF79076-47A1-421D-89D4-0A994B8D5667} O43 - CFD: 30/06/2011 - 08:48:29 - [0] ----D C:\Users\toshiba\AppData\Local\{9C1B490A-8A0C-4710-B740-64AF1417745B} O43 - CFD: 16/11/2011 - 23:39:43 - [0] ----D C:\Users\toshiba\AppData\Local\{9D1F3EBD-0933-4258-8FD2-2CAA880F13DE} O43 - CFD: 10/06/2012 - 19:25:24 - [0] ----D C:\Users\toshiba\AppData\Local\{9DE894B0-815F-4C41-9844-B98E86018D10} O43 - CFD: 21/04/2011 - 09:53:54 - [0] ----D C:\Users\toshiba\AppData\Local\{9E77009E-8E1D-4CB9-93E3-757CD31EA97F} O43 - CFD: 22/11/2011 - 23:29:28 - [0] ----D C:\Users\toshiba\AppData\Local\{9F2DAD95-A825-48B3-91A2-996EEA17775D} O43 - CFD: 16/04/2011 - 10:32:41 - [0] ----D C:\Users\toshiba\AppData\Local\{9F32C869-BACC-4208-BEEC-0F7A005B4036} O43 - CFD: 03/01/2012 - 13:58:39 - [0] ----D C:\Users\toshiba\AppData\Local\{A07B6FE8-DDA0-4256-BDE6-FE51F85AD28E} O43 - CFD: 23/10/2011 - 16:31:42 - [0] ----D C:\Users\toshiba\AppData\Local\{A16E38E0-8AA5-4E71-8CC9-917A11C04250} O43 - CFD: 26/01/2012 - 12:34:28 - [0] ----D C:\Users\toshiba\AppData\Local\{A230B21D-FE6D-44D1-8047-52939ED7D6C2} O43 - CFD: 17/04/2011 - 10:31:18 - [0] ----D C:\Users\toshiba\AppData\Local\{A347BD3F-45B7-432B-BDA1-B0B926CDA1C0} O43 - CFD: 04/02/2012 - 21:24:41 - [0] ----D C:\Users\toshiba\AppData\Local\{A3995056-D2D0-44D9-8128-CEE8E0911609} O43 - CFD: 16/09/2011 - 10:09:20 - [0] ----D C:\Users\toshiba\AppData\Local\{A3F20789-7C13-4A77-ABE5-74D6F943DA32} O43 - CFD: 17/02/2012 - 12:49:27 - [0] ----D C:\Users\toshiba\AppData\Local\{A4CA5C05-E1E6-412C-99FF-A143A98530AF} O43 - CFD: 10/08/2012 - 00:01:24 - [0] ----D C:\Users\toshiba\AppData\Local\{A4DB89C1-1DA5-4EF8-964D-F077845B5651} O43 - CFD: 12/01/2012 - 11:53:45 - [0] ----D C:\Users\toshiba\AppData\Local\{A800228C-1124-4113-9648-AB71082653E2} O43 - CFD: 15/05/2012 - 10:23:15 - [0] ----D C:\Users\toshiba\AppData\Local\{A8DEBA39-2DED-43F1-BDBA-C2E1CBD3DCAD} O43 - CFD: 13/10/2011 - 08:39:43 - [0] ----D C:\Users\toshiba\AppData\Local\{A8DF291F-1D24-4BEC-899F-8F0F4A9486FE} O43 - CFD: 23/08/2011 - 16:55:27 - [0] ----D C:\Users\toshiba\AppData\Local\{AA3AE064-82B2-422C-8679-67CE735B64A0} O43 - CFD: 06/08/2011 - 00:51:38 - [0] ----D C:\Users\toshiba\AppData\Local\{AB46530D-CE24-44B9-83A1-94A54ACEF4A5} O43 - CFD: 18/11/2011 - 21:58:35 - [0] ----D C:\Users\toshiba\AppData\Local\{AD0EBDA1-01FE-4B45-B4DB-4E1887486EF0} O43 - CFD: 11/10/2012 - 10:28:28 - [0] ----D C:\Users\toshiba\AppData\Local\{AF706A26-EBDE-48CC-9C52-2C5D9115C4C6} O43 - CFD: 27/08/2012 - 10:03:26 - [0] ----D C:\Users\toshiba\AppData\Local\{B66F8407-C0A1-4AD0-AAE3-BACE96732F9C} O43 - CFD: 27/12/2011 - 14:47:41 - [0] ----D C:\Users\toshiba\AppData\Local\{B7A45B3C-FADE-479B-8BE8-2F4DBB71651D} O43 - CFD: 18/09/2011 - 10:03:36 - [0] ----D C:\Users\toshiba\AppData\Local\{B7D18017-FC1F-4E5E-AB49-48FD4CC87AFF} O43 - CFD: 19/12/2011 - 01:12:19 - [0] ----D C:\Users\toshiba\AppData\Local\{B9E17509-37F3-4314-84C8-F94ADFBBD62A} O43 - CFD: 14/09/2011 - 09:02:11 - [0] ----D C:\Users\toshiba\AppData\Local\{BC230590-E40F-4FBF-97A7-D405337EAF60} O43 - CFD: 27/11/2011 - 23:44:15 - [0] ----D C:\Users\toshiba\AppData\Local\{BCA77012-D828-4244-B688-4D36F0D4B4C2} O43 - CFD: 25/08/2011 - 11:30:20 - [0] ----D C:\Users\toshiba\AppData\Local\{BE3274BE-12DA-40AB-85F1-F98E762D4320} O43 - CFD: 12/07/2012 - 11:01:13 - [0] ----D C:\Users\toshiba\AppData\Local\{BFEF3595-96AF-4B55-8205-2BCA72783CCE} O43 - CFD: 03/10/2011 - 08:22:31 - [0] ----D C:\Users\toshiba\AppData\Local\{C00B6EB4-E8F7-447C-84FC-1C73A678A280} O43 - CFD: 02/10/2011 - 15:10:19 - [0] ----D C:\Users\toshiba\AppData\Local\{C09B840D-79EE-4B31-9A77-36CF044E34A4} O43 - CFD: 10/04/2011 - 23:14:12 - [0] ----D C:\Users\toshiba\AppData\Local\{C21CC0D7-56AA-4EC8-B3A2-2EC084E31B05} O43 - CFD: 24/11/2011 - 11:08:34 - [0] ----D C:\Users\toshiba\AppData\Local\{C4197802-DB9B-45DE-92E2-63F58F713AE8} O43 - CFD: 29/04/2011 - 15:57:46 - [0] ----D C:\Users\toshiba\AppData\Local\{C53589FF-5430-431F-8A28-5B2BD4386A53} O43 - CFD: 13/01/2012 - 20:32:26 - [0] ----D C:\Users\toshiba\AppData\Local\{C59B76AB-913D-483C-9C82-2A402A638D9B} O43 - CFD: 01/05/2012 - 13:33:50 - [0] ----D C:\Users\toshiba\AppData\Local\{C5E3A748-A3F8-458A-BEEB-5F5AEE3D1D02} O43 - CFD: 26/09/2012 - 20:50:06 - [0] ----D C:\Users\toshiba\AppData\Local\{C6AAE172-0B0E-4F8C-A00E-74D6DC1AD734} O43 - CFD: 31/10/2011 - 09:19:34 - [0] ----D C:\Users\toshiba\AppData\Local\{C71030D3-4AA9-45CA-BB9A-3E6F91CD986C} O43 - CFD: 09/09/2011 - 08:47:48 - [0] ----D C:\Users\toshiba\AppData\Local\{C7FA8AE5-82A1-465A-87EB-7C2848F06002} O43 - CFD: 02/10/2011 - 15:10:08 - [0] ----D C:\Users\toshiba\AppData\Local\{CC584FF1-1B22-4FE8-B4F8-8CCE7C253326} O43 - CFD: 14/06/2011 - 08:19:34 - [0] ----D C:\Users\toshiba\AppData\Local\{CCFE522C-4FF3-4DC5-8909-1682819B3E84} O43 - CFD: 01/10/2012 - 10:54:07 - [0] ----D C:\Users\toshiba\AppData\Local\{CF7FA769-38E1-4D73-9B9B-EC03485F1601} O43 - CFD: 03/10/2012 - 08:24:18 - [0] ----D C:\Users\toshiba\AppData\Local\{D01097F5-E840-46C6-883B-48C73445BAD0} O43 - CFD: 25/01/2012 - 17:59:52 - [0] ----D C:\Users\toshiba\AppData\Local\{D30E8CC8-8884-4C92-A883-AB07B3C7C0B2} O43 - CFD: 26/09/2011 - 19:57:51 - [0] ----D C:\Users\toshiba\AppData\Local\{D5573166-EDFD-4D8C-BFF9-82251BB3CA1A} O43 - CFD: 28/02/2012 - 18:41:16 - [0] ----D C:\Users\toshiba\AppData\Local\{D944D1CB-3783-495F-BAF4-3B5C29D2B4EA} O43 - CFD: 27/12/2011 - 01:11:28 - [0] ----D C:\Users\toshiba\AppData\Local\{D94B57FF-80F0-4C22-98D7-06C566FEF688} O43 - CFD: 22/08/2011 - 10:00:59 - [0] ----D C:\Users\toshiba\AppData\Local\{D969CBF2-93B8-4A1A-A05C-8B8A43025C1C} O43 - CFD: 16/12/2011 - 11:23:55 - [0] ----D C:\Users\toshiba\AppData\Local\{D97110F9-D7B5-4790-90FB-53147BA0984B} O43 - CFD: 10/11/2011 - 09:59:29 - [0] ----D C:\Users\toshiba\AppData\Local\{D9A715A9-7181-4ED9-9874-9909F0EC6F6C} O43 - CFD: 03/10/2011 - 08:22:32 - [0] ----D C:\Users\toshiba\AppData\Local\{D9BD4CD3-055E-4FE1-9700-33EF1E11C604} O43 - CFD: 26/01/2012 - 12:34:39 - [0] ----D C:\Users\toshiba\AppData\Local\{DA333351-0157-47B7-80FF-104CFBC709EA} O43 - CFD: 09/05/2012 - 10:05:09 - [0] ----D C:\Users\toshiba\AppData\Local\{DAA02086-BBD3-49BB-ACDE-5F4A4698E31F} O43 - CFD: 01/05/2012 - 13:34:01 - [0] ----D C:\Users\toshiba\AppData\Local\{DB1AEAD8-34A5-4FBE-B900-6D6340369175} O43 - CFD: 30/05/2012 - 13:15:05 - [0] ----D C:\Users\toshiba\AppData\Local\{DC6B3A65-38B7-4748-9085-DAA9F36B60F0} O43 - CFD: 31/10/2011 - 21:47:32 - [0] ----D C:\Users\toshiba\AppData\Local\{DC805C5D-1180-4898-884B-F9138E46A5F1} O43 - CFD: 10/06/2012 - 19:25:35 - [0] ----D C:\Users\toshiba\AppData\Local\{E1BF5099-397A-41A0-BF6B-19FDF9C7F20A} O43 - CFD: 15/03/2012 - 11:11:45 - [0] ----D C:\Users\toshiba\AppData\Local\{E1C5619A-4FA5-42CB-A4B0-8EAC4BF04EF9} O43 - CFD: 14/06/2012 - 10:54:15 - [0] ----D C:\Users\toshiba\AppData\Local\{E4B08FB7-641C-4253-8058-3B44E09FEFDF} O43 - CFD: 15/05/2012 - 10:23:26 - [0] ----D C:\Users\toshiba\AppData\Local\{E86D0E98-F8F4-45FE-B0DC-A7A2429621C4} O43 - CFD: 26/09/2011 - 20:01:31 - [0] ----D C:\Users\toshiba\AppData\Local\{E8FDEB11-B72C-4EC7-8C46-65F59DFC68D4} O43 - CFD: 21/10/2011 - 14:47:44 - [0] ----D C:\Users\toshiba\AppData\Local\{EB83ED5B-9534-43B1-AAED-0C16A831AA90} O43 - CFD: 21/10/2011 - 14:44:14 - [0] ----D C:\Users\toshiba\AppData\Local\{ECE71074-63C7-4DB1-8BBE-E2E884AC7571} O43 - CFD: 23/08/2011 - 16:55:16 - [0] ----D C:\Users\toshiba\AppData\Local\{ED2083A2-67F1-4176-8772-4EA875D680DB} O43 - CFD: 31/10/2011 - 09:19:45 - [0] ----D C:\Users\toshiba\AppData\Local\{ED9D032A-91C7-4BA4-9218-9F1716104BB3} O43 - CFD: 16/07/2011 - 00:19:05 - [0] ----D C:\Users\toshiba\AppData\Local\{ED9F7B92-8262-472E-BCC5-C9DEF16CBCFF} O43 - CFD: 11/05/2011 - 08:40:18 - [0] ----D C:\Users\toshiba\AppData\Local\{EF288C2B-C4B8-48F2-BC4B-2F3F9D47D635} O43 - CFD: 06/10/2011 - 22:12:18 - [0] ----D C:\Users\toshiba\AppData\Local\{F90DA319-7D83-4A84-BF26-F101532C9764} O43 - CFD: 13/01/2012 - 20:32:37 - [0] ----D C:\Users\toshiba\AppData\Local\{F9B2C298-A23D-4D66-990C-08CDE80A7385} O43 - CFD: 27/11/2011 - 23:44:26 - [0] ----D C:\Users\toshiba\AppData\Local\{FAC149ED-CFE2-4CDA-AC8F-FBF726F9ECFE} O43 - CFD: 16/11/2011 - 23:39:31 - [0] ----D C:\Users\toshiba\AppData\Local\{FD194547-4A64-431B-8512-C7ADA1CE9BB4} O43 - CFD: 04/02/2012 - 21:24:52 - [0] ----D C:\Users\toshiba\AppData\Local\{FDA8B609-FAB0-4C7C-B8E8-D49FC298405E} O43 - CFD: 24/11/2011 - 17:55:41 - [0] ----D C:\Users\toshiba\AppData\Local\{FEDDA1AF-19A1-4241-8F4C-6A45F4E77F72} O43 - CFD: 14/07/2009 - 06:54:32 - [0,014] R---D C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 12/07/2012 - 10:59:44 - [0,000] R---D C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 16/02/2011 - 12:26:13 - [0] ----D C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Filbanque O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 27/04/2012 - 17:57:58 - [0,002] ----D C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trefle Rouge O43 - CFD: 25/02/2011 - 00:39:04 - [0,002] ----D C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VisualCab O43 - CFD: 04/02/2012 - 20:39:09 - [109,835] ----D C:\Program Files (x86)\Adobe O43 - CFD: 23/07/2011 - 16:13:08 - [2,316] ----D C:\Program Files (x86)\Apple Software Update O43 - CFD: 07/01/2010 - 17:15:25 - [82,972] ----D C:\Program Files (x86)\ATI Technologies O43 - CFD: 10/08/2012 - 09:11:32 - [5,102] ----D C:\Program Files (x86)\BayaM 3-7 O43 - CFD: 17/11/2011 - 12:16:21 - [0,602] ----D C:\Program Files (x86)\Bonjour O43 - CFD: 02/04/2010 - 11:08:02 - [94,017] ----D C:\Program Files (x86)\Business-in-a-Box O43 - CFD: 09/03/2012 - 13:37:11 - [531,235] ----D C:\Program Files (x86)\Common Files O43 - CFD: 16/02/2011 - 12:26:13 - [4,340] ----D C:\Program Files (x86)\Filbanque O43 - CFD: 10/10/2010 - 16:02:19 - [125,308] ----D C:\Program Files (x86)\Gibcom O43 - CFD: 02/03/2012 - 12:22:58 - [115,127] ----D C:\Program Files (x86)\GIMP-2.0 O43 - CFD: 19/12/2011 - 14:40:20 - [706,854] ----D C:\Program Files (x86)\Google O43 - CFD: 30/05/2012 - 13:27:53 - [1,884] ----D C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 12/08/2010 - 11:46:41 - [333,665] ----D C:\Program Files (x86)\HP O43 - CFD: 16/02/2011 - 12:26:10 - [127,713] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 07/01/2010 - 17:29:46 - [35,469] ----D C:\Program Files (x86)\Intel O43 - CFD: 22/09/2012 - 03:17:48 - [6,533] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 27/03/2012 - 00:06:46 - [8,945] ----D C:\Program Files (x86)\iolo O43 - CFD: 31/01/2012 - 21:51:37 - [140,802] ----D C:\Program Files (x86)\iTunes O43 - CFD: 04/12/2009 - 13:15:52 - [85,341] ----D C:\Program Files (x86)\Java O43 - CFD: 09/03/2012 - 13:38:35 - [1,690] ----D C:\Program Files (x86)\MEMSOFT O43 - CFD: 09/03/2012 - 13:38:43 - [3,469] ----D C:\Program Files (x86)\Microsoft Chart Controls O43 - CFD: 23/08/2011 - 16:45:47 - [362,658] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 04/12/2009 - 13:43:41 - [7,431] ----D C:\Program Files (x86)\Microsoft Office Suite Activation Assistant O43 - CFD: 09/05/2012 - 08:54:38 - [36,641] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 04/12/2009 - 13:45:43 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 11/10/2012 - 03:06:01 - [138,685] ----D C:\Program Files (x86)\Microsoft Works O43 - CFD: 26/06/2010 - 08:20:09 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 08/04/2010 - 08:19:56 - [0] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 04/12/2009 - 13:28:02 - [25,359] ----D C:\Program Files (x86)\Photo-Service O43 - CFD: 20/06/2011 - 09:06:09 - [0] ----D C:\Program Files (x86)\photomoinscher O43 - CFD: 17/11/2011 - 12:20:34 - [72,431] ----D C:\Program Files (x86)\QuickTime O43 - CFD: 07/01/2010 - 17:28:07 - [14,475] ----D C:\Program Files (x86)\Realtek O43 - CFD: 07/01/2010 - 17:26:11 - [3,993] ----D C:\Program Files (x86)\Realtek WLAN Driver O43 - CFD: 14/07/2009 - 07:32:38 - [37,349] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 06/12/2011 - 21:23:43 - [42,199] ----D C:\Program Files (x86)\Safari O43 - CFD: 07/01/2010 - 17:17:52 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 07/01/2010 - 17:34:52 - [387,489] ----D C:\Program Files (x86)\TOSHIBA O43 - CFD: 04/12/2009 - 13:31:40 - [302,080] ----D C:\Program Files (x86)\TOSHIBA Games O43 - CFD: 04/12/2009 - 13:28:18 - [10,195] ----D C:\Program Files (x86)\Toshiba TEMPRO O43 - CFD: 02/10/2012 - 11:51:18 - [0] ----D C:\Program Files (x86)\Tweaks O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 14/07/2009 - 17:24:08 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 30/03/2011 - 03:01:18 - [139,448] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 23/08/2011 - 16:48:54 - [5,895] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 23/08/2011 - 16:48:54 - [4,791] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 23/08/2011 - 16:48:54 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 23/08/2011 - 16:48:54 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 23/08/2011 - 16:48:54 - [6,780] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 12/10/2012 - 13:15:06 - [10,014] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 04/02/2012 - 20:39:10 - [6,244] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 06/04/2012 - 20:13:45 - [38,049] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 31/01/2012 - 21:51:14 - [121,168] ----D C:\Program Files (x86)\Common Files\Apple O43 - CFD: 04/12/2009 - 13:42:59 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 06/04/2010 - 20:13:07 - [0,951] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 12/07/2010 - 14:55:11 - [5,403] ----D C:\Program Files (x86)\Common Files\HP O43 - CFD: 16/02/2011 - 12:26:00 - [4,943] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 28/06/2011 - 14:13:55 - [1,201] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 09/03/2012 - 13:38:45 - [3,569] ----D C:\Program Files (x86)\Common Files\Memsoft O43 - CFD: 03/03/2012 - 04:02:55 - [258,525] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 07/01/2010 - 17:29:48 - [0,159] ----D C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 10/11/2011 - 09:15:30 - [42,206] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 07/01/2010 - 17:34:56 - [1,051] ----D C:\Program Files (x86)\Common Files\Toshiba Shared O43 - CFD: 04/12/2009 - 13:43:56 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 04/12/2009 - 13:28:12 - [8,474] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard ~ Scan Program Folder in 01mn 56s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.22915473391B67E748248B191565E2DF] - 12/10/2012 - 10:20:33 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1564377] O44 - LFC:[MD5.AC849B99E032F4017BB1CE37934DD4AF] - 12/10/2012 - 10:16:40 ---A- . (...) -- C:\Windows\setupact.log [112] O44 - LFC:[MD5.C85092E98E63D8F7B615D0A59469F316] - 12/10/2012 - 10:16:39 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.215330C4F847B26E3DC2C6C88A9C7103] - 12/10/2012 - 10:15:23 ---A- . (...) -- C:\AdwCleaner[S1].txt [28650] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 11/10/2012 - 02:29:10 ---A- . (...) -- C:\Windows\setuperr.log [0] O44 - LFC:[MD5.1B566067445DA461EF6DD8E0ACD07442] - 11/10/2012 - 02:28:25 ---A- . (...) -- C:\Windows\PFRO.log [19774] O44 - LFC:[MD5.402B44B31C7183FCF2C4E1083AF317FA] - 10/10/2012 - 12:54:45 . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\conhost.exe [285328]] O44 - LFC:[MD5.74777EEC1DCCE2F194D58FB3B50DC1D9] - 01/10/2012 - 11:44:32 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549936] O44 - LFC:[MD5.3E56E2D7ED1007FBC2B6CB9914C76EED] - 01/10/2012 - 11:44:32 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106622] O44 - LFC:[MD5.67ADB706DE3F14A2B1D42EF4EFBD5E69] - 01/10/2012 - 11:44:32 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130988] O44 - LFC:[MD5.C87809B6EC37896F1D11E6A541E07D68] - 01/10/2012 - 11:44:32 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616242] O44 - LFC:[MD5.C1A735CEFACFB0E73DB0165AEA6114D4] - 01/10/2012 - 11:44:32 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704714] O44 - LFC:[MD5.25AF77100FCDCFB759151CF9535ADD42] - 01/10/2012 - 10:08:56 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\SysNative\aswBoot.exe [285328] O44 - LFC:[MD5.25AF77100FCDCFB759151CF9535ADD42] - 01/10/2012 - 10:08:56 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [285328] O44 - LFC:[MD5.B6A0320DFEFE916346CB900938661DAD] - 01/10/2012 - 10:08:54 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [41224] ~ Scan Files in 00mn 05s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll ~ Scan Keys in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ Scan CSB in 00mn 00s ---\\ MountPoints2 Shell Key (O51) (None) ---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ Scan Keys in 00mn 00s ---\\ ShareTools MSconfig StartupReg (O53) (None) ---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ Scan Keys in 00mn 00s ---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ Scan Keys in 00mn 00s ---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ~ Scan Keys in 00mn 00s ---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:[MD5.483DF0B58CA532E5240E59DC41F30AA2] - 22/09/2009 - 17:39:56 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\SysWOW64\drivers\RtsUStor.sys [225280] ~ Scan Drivers in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC:Last File Created 09/10/2012 - 19:26:30 ---A- C:\Users\toshiba\AppData\Local\Google\Toolbar Cache\7.4.3230.2052\fr\translate_element.js.content [2385] O61 - LFC:Last File Created 10/10/2012 - 12:39:40 ---A- C:\Users\toshiba\AppData\Roaming\Microsoft\Office\Excel12.pip [1548] O61 - LFC:Last File Created 10/10/2012 - 12:40:46 ---A- C:\Users\toshiba\AppData\Local\Windows Live Writer\ResourceCache\live\Writer_Config.cab [26214] O61 - LFC:Last File Created 10/10/2012 - 12:40:53 ---A- C:\Users\toshiba\AppData\Local\Windows Live\uxcore_wlmail_00.etl [12288] O61 - LFC:Last File Created 10/10/2012 - 12:41:03 ---A- C:\Users\toshiba\AppData\Local\Windows Live\uxcore_wlmail_01.etl [8192] O61 - LFC:Last File Created 10/10/2012 - 12:44:40 ---A- C:\Users\toshiba\Documents\groupe multisport enfants 2007 salle souvre avec Elodie 2012.xlsx [12380] O61 - LFC:Last File Created 10/10/2012 - 12:55:25 ---A- C:\Users\toshiba\AppData\Local\Temp\232074653.od [134] O61 - LFC:Last File Created 10/10/2012 - 12:55:25 ---A- C:\Users\toshiba\AppData\Local\Temp\CVR2D9D.tmp.cvr [0] O61 - LFC:Last File Created 10/10/2012 - 22:19:35 ---A- C:\Users\toshiba\AppData\Roaming\Microsoft\Office\Recent\Floriant compte rendu décembre 2011.LNK [1194] O61 - LFC:Last File Created 11/10/2012 - 02:25:52 ---A- C:\Users\toshiba\AppData\Roaming\Microsoft\Word\~WRA0001.asd [22016] O61 - LFC:Last File Created 11/10/2012 - 02:25:56 ---A- C:\Users\toshiba\AppData\Roaming\Microsoft\Office\Word12.pip [1732] O61 - LFC:Last File Created 11/10/2012 - 02:26:32 ---A- C:\Users\toshiba\AppData\Local\TOSHIBA_Corporation\ToshibaServiceStation.exe_Url_lidkhntuzcqftx1osnwucx1afj3bgluo\2.1.3565.26576\tsf2-ynr.newcfg [310] O61 - LFC:Last File Created 11/10/2012 - 09:27:34 ---A- C:\Users\toshiba\AppData\Local\Temp\~DF13CDEC0D9CB78BF5.TMP [16384] O61 - LFC:Last File Created 11/10/2012 - 09:27:39 ---A- C:\Users\toshiba\AppData\Local\Temp\25166362.od [134] O61 - LFC:Last File Created 11/10/2012 - 09:27:39 ---A- C:\Users\toshiba\AppData\Local\Temp\CVR21A.tmp.cvr [0] O61 - LFC:Last File Created 11/10/2012 - 09:27:47 ---A- C:\Users\toshiba\AppData\Roaming\Microsoft\Office\Recent\groupe multisport enfants 2007 salle souvre avec Elodie 2012.LNK [1319] O61 - LFC:Last File Created 11/10/2012 - 09:27:48 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Cookies\XJBHVZSM.txt [83] O61 - LFC:Last File Created 11/10/2012 - 09:27:48 ---A- C:\Users\toshiba\AppData\Roaming\Google\Local Search History\google%2Emaps.w [36] O61 - LFC:Last File Created 11/10/2012 - 09:27:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AMEXEDWU\thumbs[1].js [2747] O61 - LFC:Last File Created 11/10/2012 - 09:27:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AQGXBGEL\thumbs-deps[1].js [93868] O61 - LFC:Last File Created 11/10/2012 - 09:28:00 ---A- C:\Users\toshiba\Tracing\WindowsLiveMessenger-uccapi-0.uccapilog [0] O61 - LFC:Last File Created 11/10/2012 - 09:28:04 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\YR17220U\smartdisplay.min[1].js [1478] O61 - LFC:Last File Created 11/10/2012 - 09:29:31 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AMEXEDWU\policy[1] [174] O61 - LFC:Last File Created 11/10/2012 - 09:29:31 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AMEXEDWU\privacypolicy[1] [1265] O61 - LFC:Last File Created 11/10/2012 - 09:29:31 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AQGXBGEL\policylooking[1] [778] O61 - LFC:Last File Created 11/10/2012 - 09:29:31 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\NUUM99TM\policynone[1] [879] O61 - LFC:Last File Created 11/10/2012 - 09:29:31 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\NUUM99TM\privacypolicy[1] [2861] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AMEXEDWU\googly[1] [392] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AMEXEDWU\options_comp[1] [104963] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AQGXBGEL\options_comp[1] [6014] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AQGXBGEL\options_gradient[1] [56] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\AQGXBGEL\warning[1] [170] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\NUUM99TM\blank[1] [43] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\NUUM99TM\trimpath-template_comp[1] [11481] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\YR17220U\json_comp[1] [3360] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\YR17220U\options[1] [31736] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\YR17220U\optionstabcorners[1] [58] O61 - LFC:Last File Created 11/10/2012 - 09:29:55 ---A- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\YR17220U\zippy_sm[1] [309] O61 - LFC:Last File Created 11/10/2012 - 09:35:09 ---A- C:\Users\toshiba\AppData\Roaming\Microsoft\MSN Messenger\sqmnoopt00.sqm [522] O61 - LFC:Last File Created 11/10/2012 - 09:35:10 ---A- C:\Users\toshiba\AppData\Local\Windows Live\uxcore_msnmsgr_00.etl [12288] O61 - LFC:Last File Created 11/10/2012 - 10:11:52 ---A- C:\Users\toshiba\AppData\Local\Temp\27819315.od [134] O61 - LFC:Last File Created 11/10/2012 - 10:11:52 ---A- C:\Users\toshiba\AppData\Local\Temp\CVR7D33.tmp.cvr [0] O61 - LFC:Last File Created 11/10/2012 - 10:11:55 ---A- C:\Users\toshiba\AppData\Roaming\Microsoft\Office\Recent\Mes documents.LNK [917] O61 - LFC:Last File Created 11/10/2012 - 10:11:55 ---A- C:\Users\toshiba\AppData\Roaming\Microsoft\Office\Recent\bilan psychomoteur louis perin.LNK [1169] O61 - LFC:Last File Created 12/10/2012 - 09:05:58 ---A- C:\Users\toshiba\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [55895] O61 - LFC:Last File Created 12/10/2012 - 09:15:39 ---A- C:\Users\toshiba\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEvents [5120] O61 - LFC:Last File Created 12/10/2012 - 09:34:11 ---A- C:\Users\toshiba\AppData\Roaming\Google\Local Search History\google%2Eweb.w [594] O61 - LFC:Last File Created 12/10/2012 - 10:15:23 ---A- C:\Users\toshiba\AppData\Local\Google\Chrome\User Data\Default\Preferences [48288] O61 - LFC:Last File Created 12/10/2012 - 10:17:15 ---A- C:\Users\toshiba\AppData\Local\Temp\~DF7847DF2AE8A6FD6D.TMP [16384] O61 - LFC:Last File Created 12/10/2012 - 10:17:29 ---A- C:\Users\toshiba\AppData\Local\ATI\ACE\Manifest.Bin [26577] O61 - LFC:Last File Created 12/10/2012 - 10:17:29 ---A- C:\Users\toshiba\AppData\Local\ATI\ACE\Manifest.xml [19250] O61 - LFC:Last File Created 12/10/2012 - 10:17:56 ---A- C:\Users\toshiba\AppData\Local\ATI\ACE\Profiles.xml [26518] O61 - LFC:Last File Created 12/10/2012 - 10:18:06 ---A- C:\Users\toshiba\AppData\Local\Temp\RedboxLog.txt [11694] O61 - LFC:Last File Created 12/10/2012 - 12:00:21 ---A- C:\Users\toshiba\AppData\Local\Temp\amline_data.xml [39319] O61 - LFC:Last File Created 12/10/2012 - 12:00:21 ---A- C:\Users\toshiba\AppData\Local\Temp\amline_settings.xml [2026] O61 - LFC:Last File Created 12/10/2012 - 12:02:09 ---A- C:\Users\toshiba\AppData\Roaming\Toshiba\ReelTime\Backup\ReelTimeMonitorData.dat [5159] O61 - LFC:Last File Created 12/10/2012 - 12:17:09 ---A- C:\Users\toshiba\AppData\Roaming\Toshiba\ReelTime\ReelTimeMonitorData.dat [5399] O61 - LFC:Last File Created 30/12/1899 - 09:27:39 -SHA- C:\Users\toshiba\AppData\Local\Temp\Low\Cookies\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 09:27:39 -SHA- C:\Users\toshiba\AppData\Local\Temp\Low\Fichiers Internet temporaires\Content.IE5\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 09:27:39 -SHA- C:\Users\toshiba\AppData\Local\Temp\Low\History\History.IE5\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 10:11:54 --HA- C:\Users\toshiba\Documents\~$lan psychomoteur louis perin.docx [162] O61 - LFC:Last File Created 30/12/1899 - 10:11:55 --H-- C:\Users\toshiba\AppData\Roaming\Microsoft\Office\Recent\index.dat [189] O61 - LFC:Last File Created 30/12/1899 - 10:15:51 --HA- C:\Users\toshiba\AppData\Local\IconCache.db [1371888] ~ Scan Files in 00mn 53s ---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 1.31 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ Scan ADS in 00mn 00s ---\\ Liste des services Legacy (O64) O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK O64 - Services: CurCS - 21/08/2012 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 21/08/2012 - C:\Windows\system32\Drivers\aswrdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV ~ Scan Services in 00mn 00s ---\\ Liste des fichiers non signés (O65) (None) ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ Scan Keys in 00mn 00s ---\\ Start Menu Internet (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Safari\Safari.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Safari\Safari.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Safari\Safari.exe (.not file.) ~ Scan Keys in 00mn 00s ---\\ Search Browser Infection (O69) O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com ~ Scan Keys in 00mn 00s ---\\ Recherche des services démarrés par Svchost (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Scan Services in 00mn 00s ---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.61FB16B6016BCC9AA42E02F787DC87FC] [SPRF][26/01/2010] (.Adobe Systems Incorporated - Adobe® Flash® Player ActiveX Installer.) -- C:\Windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe [1955384] [MD5.CDE357CD3FC047F5C7D8B8345B6A42BF] [SPRF][18/10/2007] (.Hewlett-Packard Co. - HPDEXADO.) -- C:\Windows\Downloaded Program Files\HPDEXAXO.dll [341296] [MD5.6F315BDFE7148459DE3B4B59E6DFA1D4] [SPRF][19/08/2009] (.Microsoft® Corporation - Windows Live Photo Upload Tool.) -- C:\Windows\Downloaded Program Files\MsnPUpld.dll [641368] [MD5.732CACA8E848F6E721B093E51FC50B1D] [SPRF][09/01/2007] (.Microsoft® Corporation - Outil MSN Téléchargement de photos.) -- C:\Windows\Downloaded Program Files\PURfr-fr.dll [110592] ~ Scan Files in 00mn 00s ---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "{C9471FA6-0647-4F9D-8635-E3B09FB33BEF}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{1D12F0EC-069D-4221-9DBA-E2B56FEF1E27}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{0D0E826A-2FCB-4D17-BC5A-E17A7DACCDDE}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{05AAA6E3-38E0-46A7-B27A-97BF743F02AF}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{8199D1FB-8CA6-4E45-B688-012A74F57C7F}" |In - None - P17 - TRUE | .(...) -- C:\Users\toshiba\AppData\Local\Temp\7zS483D\setup\hpznui40.exe (.not file.) O87 - FAEL: "{A939C6D8-27C7-4BC9-85DB-322D4C7679DC}" | In - None - P17 - TRUE | .(.Hewlett-Packard - HP Update Client.) -- C:\Program Files (x86)\HP\hp software update\hpwucli.exe O87 - FAEL: "{141B408F-A69E-46E4-A10C-749A07287F1F}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Gamers Unite! Snag Bar\TroubleShooter.exe (.not file.) O87 - FAEL: "{FAA6E785-0753-4C7A-B587-F7F230933412}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Gamers Unite! Snag Bar\TroubleShooter.exe (.not file.) O87 - FAEL: "{EC0DA074-376C-461B-8973-A21AEBD78606}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Gamers Unite! Snag Bar\ToolbarUpdate.exe (.not file.) O87 - FAEL: "{BD19F1B4-C86D-4D42-B282-2FA845AA83EC}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Gamers Unite! Snag Bar\ToolbarUpdate.exe (.not file.) O87 - FAEL: "TCP Query User{0CE78308-6B88-49DC-B60C-BFD7EA429D42}C:\2aiappli\mcsagendaf\mcsagendaf.exe" |In - Private - P6 - TRUE | .(...) -- C:\2aiappli\mcsagendaf\mcsagendaf.exe (.not file.) O87 - FAEL: "UDP Query User{D0AE2F46-5A83-4029-BA63-18A7C5C7C81C}C:\2aiappli\mcsagendaf\mcsagendaf.exe" |In - Private - P17 - TRUE | .(...) -- C:\2aiappli\mcsagendaf\mcsagendaf.exe (.not file.) O87 - FAEL: "TCP Query User{DF5EEA30-944D-463D-82B2-76E626C43C4C}C:\2aiappli\mcsagendaf\mcsagendasvc.exe" | In - Private - P6 - TRUE | .(.Auvergne Assistance Informatique - Pas de description.) -- C:\2aiappli\mcsagendaf\mcsagendasvc.exe O87 - FAEL: "UDP Query User{5439EFE5-72F4-4A6C-B29F-6902C5E4297C}C:\2aiappli\mcsagendaf\mcsagendasvc.exe" | In - Private - P17 - TRUE | .(.Auvergne Assistance Informatique - Pas de description.) -- C:\2aiappli\mcsagendaf\mcsagendasvc.exe O87 - FAEL: "TCP Query User{2859FB09-53F7-4AD0-A711-640A789F7B58}C:\2aiappli\mcsagendaf\mcsagendasvc.exe" | In - Public - P6 - TRUE | .(.Auvergne Assistance Informatique - Pas de description.) -- C:\2aiappli\mcsagendaf\mcsagendasvc.exe O87 - FAEL: "UDP Query User{953CA7BB-C6CA-41A3-9AC6-F7F8D1946F09}C:\2aiappli\mcsagendaf\mcsagendasvc.exe" | In - Public - P17 - TRUE | .(.Auvergne Assistance Informatique - Pas de description.) -- C:\2aiappli\mcsagendaf\mcsagendasvc.exe O87 - FAEL: "{B0AAFB2D-871E-49E5-AA46-8AB43739D18F}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe O87 - FAEL: "{98E1E8A1-45CF-4631-B9FF-1A90048246EB}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{E03E4AFD-87A6-4585-A2F4-95F843904AAD}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{EE387F79-C831-4195-89A8-ACC3836F9C01}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{4D8FE5F0-EB9D-48BD-8562-9813C0873ABF}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{07746C93-2EBC-4B5B-8C41-4D4DFF94A2C5}" |In - Private - P6 - TRUE | .(...) -- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CRXUOSAY\SweetImSetup.exe (.not file.) O87 - FAEL: "{3187A02D-7752-4B6B-92AD-242B2AE9C7C2}" |In - Private - P17 - TRUE | .(...) -- C:\Users\toshiba\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CRXUOSAY\SweetImSetup.exe (.not file.) O87 - FAEL: "{E6AEAB1F-CE84-40FE-B18E-0C1FDDFE06D0}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe ~ Scan Firewall in 00mn 01s ---\\ Scan Additionnel (O88) Database Version : 9199 - (30/09/2012) Clés trouvées (Keys found) : 1 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 0 Fichiers trouvés (Files found) : 0 [HKCU\Software\SweetIM] =>Toolbar.SweetIM ~ Scan Additionnel in 00mn 08s ---\\ Recherche détournement de DNS routeur (O89) (None) ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 08/10/2012 250808 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Auto 09/09/2009 202752 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SS - | Auto 24/10/2011 55144 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SS - | Auto 21/08/2012 44808 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SS - | Auto 31/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SS - | Auto 27/10/2009 252784 | (cfWiMAXService) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe SS - | Auto 10/03/2009 46448 | (ConfigFree Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe SS - | Demand 17/04/2010 246520 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe SS - | Auto 01/04/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 01/04/2010 135664 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 31/08/2012 194032 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SS - | Demand 14/07/2009 27136 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll (hpqcxs08) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SS - | Auto 14/07/2009 27136 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll (hpqddsvc) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SS - | Auto 14/07/2009 27136 | C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.dll (HPSLPSVC) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SS - | Auto 02/10/2009 13336 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe SS - | Demand 16/01/2012 934760 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SS - | Auto 30/09/2009 262144 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe SS - | Auto 14/07/2009 27136 | C:\Windows\system32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SS - | Auto 14/07/2009 27136 | C:\Windows\system32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SS - | Auto 15/10/2009 116104 | (TemproMonitoringService) . (.Toshiba Europe GmbH.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe SS - | Demand 06/10/2009 51512 | (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe SS - | Auto 28/07/2009 140632 | (TODDSrv) . (.TOSHIBA Corporation.) - C:\Windows\system32\TODDSrv.exe SS - | Auto 05/11/2009 489312 | (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe SS - | Auto 28/09/2009 251760 | (TOSHIBA eco Utility Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TECO\TecoService.exe SS - | Demand 05/11/2009 137560 | (TOSHIBA HDD SSD Alert Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe SS - | Demand 10/11/2009 824688 | (TPCHSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe SS - | Auto 30/09/2009 2314240 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe SS - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SS - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe SS - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Scan Services in 00mn 02s ---\\ Recherche Master Boot Record Infection (MBR)(O80) (None) ---\\ Recherche Master Boot Record Infection (MBRCheck)(O80) (None) End of the scan (1559 lines in 07mn 24s)(0)