cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2014.1.25.26 - Nicolas Coolman (25/01/2014)
~ Lancé par Lepage (02/02/2014 21:24:13)
~ Adresse du Site Web http://nicolascoolman.webs.com
~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program


---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.16476
GCIE: Google Chrome v32.0.1700.102 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 7 Home Premium, 32-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_COA_NSLP channel
Windows ID Activation : OK
~ Windows Partial Key : PT4TR
Windows License : OK
~ Windows Remaining Initializations Number : 4
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
G Data InternetSecurity 2014 v24.0.3.4
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W7

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Reader XI
Java 7 Update 51

---\\ Informations sur le système
~ Processor: x86 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3547 MB (47% free)
System Restore: Activé (Enable)
System drive C: has 420 GB (86%) free of 488 GB

---\\ Mode de connexion au système
~ Computer Name: LEPAGE-PC
~ User Name: Lepage
~ All Users Names: UpdatusUser, Lepage, Clémentine, Aude, Arthur, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Lepage\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Lepage\AppData\Roaming\
~ %Desktop% : C:\Users\Lepage\Desktop\
~ %Favorites% : C:\Users\Lepage\Favorites\
~ %LocalAppData% : C:\Users\Lepage\AppData\Local\
~ %StartMenu% : C:\Users\Lepage\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 420 Go of 488 Go)
D: Hard drive, Flash drive, Thumb drive (Free 239 Go of 443 Go)
E: CD-ROM drive (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: Floppy drive, Flash card reader, USB Key (Not Inserted)
I: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 38 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 06:30:54.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.927FA6456AD6D7630F6854828D2FD16B] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/11/2013 - 07:33:33.) -- C:\Windows\System32\wininet.dll [1820160]
[MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 13:17:54.) -- C:\Windows\System32\Winlogon.exe [286720]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 13:21:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.09/01/2014 - 02:44:06.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 09:38:10.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 09:42:32.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 10:59:29.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 09:39:44.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 14:45:29.) -- C:\Windows\system32\Drivers\ntfs.sys [1211752]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 09:39:17.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 13:30:16.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/41
~ Mes musiques (My Musics) : 1/469
~ Mes Favoris (My Favorites) : 1/24
~ Mes Documents (My Documents) : 3/11649
~ Mon Bureau (My Desktop) : 1/15
~ Menu demarrer (Programs) : 1/37
~ Hidden Files: Scanned in 00mn 01s



---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.3428]
[MD5.874846DFEB4D721BCEA944822E33A26E] - (.G Data Software AG - G Data Security Software.) -- C:\Program Files\G Data\InternetSecurity\AVKTray\AVKTray.exe [1444472] [PID.2724]
[MD5.973ED5A0CB663CEDE85D371EDF7248A1] - (.G Data Software AG - G Data Personal Firewall.) -- C:\Program Files\G Data\InternetSecurity\Firewall\GDFirewallTray.exe [1854928] [PID.2828]
[MD5.085BE68B52CE5A5FA4621507AD518CF3] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [152392] [PID.2212]
[MD5.8AFA9E689D0517A7F99928C62880A1D0] - (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe [2296600] [PID.2200]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336] [PID.4404]
[MD5.D213F06AE294341F3503FD74E22E7DDA] - (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Lepage\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136] [PID.4648]
[MD5.BB0886BB3B7ED94E0C02B83DD6C0C1D4] - (.Logitech, Inc. - Logitech KHAL Main Process.) -- C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe [148248] [PID.5948]
[MD5.311CCA642D0BFAF29EBC2C0D71CBB286] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [1820520] [PID.4208]
[MD5.9B593137FBCC7C1E5D0E4A422749D9A5] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [866584] [PID.5388]
[MD5.039FECBAF4E065FFB7996869B9BEBA22] - (.Copernic inc. - Copernic Desktop Search.) -- C:\Program Files\Copernic\desktopSearch4\Copernic.desktopSearch.exe [1636928] [PID.4692]
[MD5.615E58F9963734185756AEE4959BA964] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [20728480] [PID.5608]
[MD5.3D128E3AE74833E82F852BD096D937C5] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\Lepage\AppData\Roaming\Dropbox\bin\Dropbox.exe [33508336] [PID.3344]
[MD5.F30BD702688CA1F2C28122132D3ECF1A] - (.Microsoft Corporation - Send to OneNote Tool.) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.exe [194224] [PID.4892]
[MD5.A6BBCB871FD5E43E6B9C46EE7A764FA3] - (.Evernote Corp., 305 Walnut Street, Redwood - Evernote Clipper.) -- C:\Program Files\Evernote\Evernote\EvernoteClipper.exe [1104736] [PID.4964]
[MD5.466836178A61766DCFD76CFAB36742D7] - (.LastPass - LastPass Plugin.) -- C:\Program Files\LastPass\nplastpass.exe [1616384] [PID.4328]
[MD5.2E0B0A051FFAA86E358465BB0880D453] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53784] [PID.6208]
[MD5.51E80A4215C91A46527A6D228FC41F92] - (.Microsoft Corporation - Microsoft Office Document Cache Sync Client.) -- C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.exe [78576] [PID.7704]
[MD5.47FC45EF26BEA3E5369928555186C174] - (.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe [9789256] [PID.6636]
[MD5.3699AFC455CBD6F36F5CAC9D8286B0C1] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe [43336] [PID.4900]
[MD5.E8C9A8E30D691370BF16247A9CF6FE39] - (.Apple Inc. - distnoted.) -- C:\Program Files\Common Files\Apple\Apple Application Support\distnoted.exe [24392] [PID.7592]
[MD5.EE1111977B9995D5E8CBB72C0591EA0E] - (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848] [PID.6496]
[MD5.D492087C8BC54DEAC2F293AB770E6625] - (.Microsoft Corporation - Microsoft OneNote.) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.exe [1746600] [PID.8556]
[MD5.CA25CAEEBDBE25D85565877219F684F8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8339968] [PID.8196]
~ Processes Running: Scanned in 00mn 00s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://www.msn.com
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [ajakpekbmnkgnjbpajgkdhimcbeoocam] Savings Wizard v.1.0, (Activé)
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Documents Google v.0.5 (Activé)
G2 - GCE: Preference [User Data\Default] [apboafhkiegglekeafbckfjldecefkhn] Lucidchart Diagrammes - En ligne v.20.3 (Activé)
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé)
G2 - GCE: Preference [User Data\Default] [bhmicilclplefnflapjmnngmkkkkpfad] Diagrammes de Gliffy v.1.0.28 (Activé)
G2 - GCE: Preference [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT v.2.4.5, (Activé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [cnnbdaahphjgdgfhliignpepgnbnfomp] Copernic Desktop Search Connecteur v.4.0.4 (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [dkpejdfnpdkhifgbancbammdijojoffk] Logitech Smooth Scrolling v.6.60.170 (Activé)
G2 - GCE: Preference [User Data\Default] [dmglolhoplikcoamfgjgammjbgchgjdd] Google Tasks (by Google) v.1.0 (Désactivé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ejidjjhkpiempkbhmpbfngldlkglhimk] Gmail hors connexion v.1.20 (Activé)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [hdokiejnpimakedhajhdlcegeplioahd] LastPass v.3.0.22, (Activé)
G2 - GCE: Preference [User Data\Default] [hhinaapppaileiechjoiifaancjggfjm] Last.fm Scrobbler v.1.31, (Désactivé)
G2 - GCE: Preference [User Data\Default] [ihgobbiifoikoajcbniomconhpllibmk] TickleTab v.0.5.2 (Désactivé)
G2 - GCE: Preference [User Data\Default] [iphcomljdfghbkdcfndaijbokpgddeno] Cookies v.1.8.1, (Activé)
G2 - GCE: Preference [User Data\Default] [jijbhneeenepenoolcdalnekggeialeo] Tomatoes v.0.6.65 (Activé)
G2 - GCE: Preference [User Data\Default] [kcnhkahnjcbndmmehfkdnkjomaanaooo] Google Voice (by Google) v.2.4.4, (Désactivé)
G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call v.7.0.14735.1561, (Activé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.0 (Activé)
G2 - GCE: Preference [User Data\Default] [oeehiifcaeengdofhogmkblhkmpephcj] ActiveInbox for Gmail v.4.0.5.53, (Désactivé)
G2 - GCE: Preference [User Data\Default] [pdkkfpnoobbihpjbophkgcibemmmidhk] Pomodoro.me v.1.0.3 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)
~ Google Browser: 32 Scanned in 00mn 14s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll =>.Google Inc
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.51.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.51.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.51.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@lastpass.com/NPLastPass] - (.LastPass - LastPass Plugin.) -- C:\Program Files\LastPass\nplastpass.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/SharePoint,version=14.0] - (.Microsoft Corporation - The plugin allows you to have a better experience with Microsoft Share.) -- C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.dll
P2 - FPN: [HKLM] [@nvidia.com/3DVision] - (.NVIDIA Corporation - NVIDIA 3D Vision plugin for Mozilla browsers.) -- C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
P2 - FPN: [HKLM] [@nvidia.com/3DVisionStreaming] - (.NVIDIA Corporation - NVIDIA 3D Vision Streaming plugin for Mozilla browsers.) -- C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
P2 - FPN: [HKLM] [@Skype.com/Skype Web Plugin] - (.Skype - Skype Web Plugin.) -- C:\Program Files\SkypeWebPlugin\npSkypeWebPlugin.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.06.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
P2 - FPN: [HKCU] [@lightspark.github.com/Lightspark;version=1] - (.Pas de propriétaire - Flash.) -- C:\Program Files\Lightspark 0.5.3-git\nplightsparkplugin.dll
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 2.6.1f3.) -- C:\Users\Lepage\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
~ Firefox Browser: 15 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.awesomehp.com =>PUP.Awesomehp
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.awesomehp.com =>PUP.Awesomehp
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com =>PUP.Awesomehp
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com =>PUP.Awesomehp
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com =>PUP.Awesomehp
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com =>PUP.Awesomehp
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Unity Technologies ApS - Unity Player 2.6.1f3.) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ IE Browser: 11 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,c:\program files\g data\internetsecurity\avkkid\avkcks.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 01s
~ Nombre de lignes (Lines number): 39446



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} . (.Thinknice Co. Limited - SupTab setup package.) -- C:\Program Files\SupTab\SupTab.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} . (.Evernote Corp., 305 Walnut Street, Redwood - Evernote Clipper for Microsoft Internet Exp.) -- C:\Program Files\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: LastPass Vault - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} . (.LastPass - LastPass Toolbar.) -- C:\Program Files\LastPass\LPToolbar.dll =>Toolbar.LastPass
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} . (.Logitech, Inc. - Logitech SetPoint.) -- C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll
~ BHO: 16 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: LastPass Toolbar - [HKLM]{9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} . (.LastPass - LastPass Toolbar.) -- C:\Program Files\LastPass\LPToolbar.dll =>Toolbar.LastPass
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Acronis True Image 2014.lnk . (.Acronis - Acronis True Image.) -- C:\Program Files\Acronis\TrueImageHome\TrueImageLauncher.exe
O4 - GS\Desktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe
O4 - GS\Desktop [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - GS\Desktop [Public]: Complete Installation of Lexmark 2600 Series.LNK - Clé orpheline
O4 - GS\Desktop [Public]: Copernic Desktop Search 4.lnk . (.Copernic inc. - Copernic Desktop Search.) -- C:\Program Files\Copernic\desktopSearch4\Copernic.desktopSearch.exe
O4 - GS\Desktop [Public]: FastStone Capture.lnk . (.FastStone Soft - FastStone Capture.) -- C:\Program Files\FastStone Capture\FSCapture.exe
O4 - GS\Desktop [Public]: FastStone Image Viewer.lnk . (...) -- C:\Program Files\FastStone Image Viewer\FSViewer.exe
O4 - GS\Desktop [Public]: G Data InternetSecurity 2014.lnk . (.G Data Software AG - G Data SecurityCenter.) -- C:\Program Files\G Data\InternetSecurity\GUI\GDSC.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe http://www.awesomehp.com =>PUP.Awesomehp
O4 - GS\Desktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe
O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - GS\Desktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
O4 - GS\Desktop [Public]: My LastPass Vault.lnk - Clé orpheline
O4 - GS\Desktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) -- C:\Program Files\QuickTime\QuickTimePlayer.exe =>.Apple Inc
O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe
O4 - GS\Desktop [Public]: TheBrain.lnk . (...) -- C:\Program Files\TheBrain\TheBrain.exe
O4 - GS\Desktop [Public]: USB-set.lnk . (...) -- C:\Program Files\USB-set\USB-set.exe
O4 - GS\Program [Public]: Adobe Reader XI.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico
O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc
O4 - GS\Program [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - GS\Program [Public]: Copernic Desktop Search 4.lnk . (.Copernic inc. - Copernic Desktop Search.) -- C:\Program Files\Copernic\desktopSearch4\Copernic.desktopSearch.exe
O4 - GS\Program [Public]: KeePass.lnk . (.Dominik Reichl - KeePass Password Safe 1.26.) -- C:\Program Files\KeePass Password Safe\KeePass.exe
O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe
O4 - GS\Program [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) -- C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\Accessories [UpdatusUser]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [UpdatusUser]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [UpdatusUser]: Run.lnk - Clé orpheline
O4 - GS\Accessories [UpdatusUser]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [UpdatusUser]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Desktop [UpdatusUser]: Heredis 8.lnk . (.BSD Concept - Heredis.) -- C:\Program Files\Heredis 8\Heredis8.exe
O4 - GS\QuickLaunch [Lepage]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - GS\QuickLaunch [Lepage]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe http://www.awesomehp.com =>PUP.Awesomehp
O4 - GS\QuickLaunch [Lepage]: KeePass.lnk . (.Dominik Reichl - KeePass Password Safe 1.26.) -- C:\Program Files\KeePass Password Safe\KeePass.exe
O4 - GS\QuickLaunch [Lepage]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe http://www.awesomehp.com =>PUP.Awesomehp
O4 - GS\QuickLaunch [Lepage]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - GS\QuickLaunch [Lepage]: MaxiCompte 3.lnk . (.EuroSoft Software Development - MaxiCompte.) -- C:\Program Files\MaxiCompte 3\maxicompte.exe
O4 - GS\QuickLaunch [Lepage]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.exe
O4 - GS\QuickLaunch [Lepage]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
O4 - GS\QuickLaunch [Lepage]: My LastPass Vault.lnk - Clé orpheline
O4 - GS\QuickLaunch [Lepage]: TheBrain.lnk . (...) -- C:\Program Files\TheBrain\TheBrain.exe
O4 - GS\QuickLaunch [Lepage]: USB-set.lnk . (...) -- C:\Program Files\USB-set\USB-set.exe
O4 - GS\TaskBar [Lepage]: Ableton Live 9 Lite.lnk . (.Ableton - Pas de description.) -- C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe
O4 - GS\TaskBar [Lepage]: Access 2013.lnk . (.Microsoft Corporation - Microsoft Access.) -- C:\Program Files\Microsoft Office 15\root\office15\MSACCESS.exe
O4 - GS\TaskBar [Lepage]: Copernic Desktop Search.lnk . (.Copernic inc. - Copernic Desktop Search.) -- C:\Program Files\Copernic\desktopSearch4\Copernic.desktopSearch.exe
O4 - GS\TaskBar [Lepage]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood - Evernote.) -- C:\Program Files\Evernote\Evernote\Evernote.exe
O4 - GS\TaskBar [Lepage]: Excel 2013.lnk . (.Microsoft Corporation - Microsoft Excel.) -- C:\Program Files\Microsoft Office 15\root\office15\EXCEL.exe
O4 - GS\TaskBar [Lepage]: FastStone Image Viewer.lnk . (...) -- C:\Program Files\FastStone Image Viewer\FSViewer.exe
O4 - GS\TaskBar [Lepage]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe http://www.awesomehp.com =>PUP.Awesomehp
O4 - GS\TaskBar [Lepage]: iTunes.lnk . (.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe
O4 - GS\TaskBar [Lepage]: KeePass.lnk . (.Dominik Reichl - KeePass Password Safe 1.26.) -- C:\Program Files\KeePass Password Safe\KeePass.exe
O4 - GS\TaskBar [Lepage]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
O4 - GS\TaskBar [Lepage]: OneNote 2013.lnk . (.Microsoft Corporation - Microsoft OneNote.) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Lepage]: Outlook 2013.lnk . (.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.exe
O4 - GS\TaskBar [Lepage]: Outlook2LBE.lnk . (.Llamagraphics, Inc. - Outlook2LBE.) -- C:\Users\Lepage\Downloads\Outlook2LBE 1.2\Outlook2LBE 1.2\Outlook2LBE.exe
O4 - GS\TaskBar [Lepage]: Publisher 2013.lnk . (.Microsoft Corporation - Microsoft Publisher.) -- C:\Program Files\Microsoft Office 15\root\office15\MSPUB.exe
O4 - GS\TaskBar [Lepage]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\TaskBar [Lepage]: TheBrain.lnk . (...) -- C:\Program Files\TheBrain\TheBrain.exe
O4 - GS\TaskBar [Lepage]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Lepage]: Word 2013.lnk . (.Microsoft Corporation - Microsoft Word.) -- C:\Program Files\Microsoft Office 15\root\office15\WINWORD.exe
O4 - GS\Program [Lepage]: Ableton Live 9 Lite.lnk . (.Ableton - Pas de description.) -- C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe
O4 - GS\Program [Lepage]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe http://www.awesomehp.com =>PUP.Awesomehp
O4 - GS\Program [Lepage]: Microsoft SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Lepage\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation
O4 - GS\Program [Lepage]: Update Checker.lnk . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files\FileHippo.com\UpdateChecker.exe
O4 - GS\Accessories [Lepage]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Lepage]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Lepage]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Lepage]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Lepage]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe http://www.awesomehp.com =>PUP.Awesomehp
O4 - GS\SystemTools [Lepage]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\SendTo [Lepage]: Dropbox.lnk . (...) -- C:\Users\Lepage\Dropbox
O4 - GS\SendTo [Lepage]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood - Evernote.) -- C:\Program Files\Evernote\Evernote\Evernote.exe
O4 - GS\SendTo [Lepage]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\Desktop [Lepage]: Desinstaller_HOSTS_Anti-PUPs.lnk . (...) -- C:\Program Files\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware.exe
O4 - GS\Desktop [Lepage]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) -- C:\Users\Lepage\AppData\Roaming\Dropbox\bin\Dropbox.exe =>.Dropbox
O4 - GS\Desktop [Lepage]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood - Evernote.) -- C:\Program Files\Evernote\Evernote\Evernote.exe
O4 - GS\Desktop [Lepage]: Heredis 8.lnk . (.BSD Concept - Heredis.) -- C:\Program Files\Heredis 8\Heredis8.exe
O4 - GS\Desktop [Lepage]: MaxiCompte 3.lnk . (.EuroSoft Software Development - MaxiCompte.) -- C:\Program Files\MaxiCompte 3\maxicompte.exe
O4 - GS\Desktop [Lepage]: Outlook2LBE 1.2 - Raccourci.lnk . (...) -- C:\Users\Lepage\Downloads\Outlook2LBE 1.2
O4 - GS\Desktop [Lepage]: Update Checker.lnk . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files\FileHippo.com\UpdateChecker.exe
O4 - GS\Desktop [Lepage]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [Lepage]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\QuickLaunch [Clémentine]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Clémentine]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Clémentine]: My LastPass Vault.lnk - Clé orpheline
O4 - GS\TaskBar [Clémentine]: Excel 2013.lnk . (.Microsoft Corporation - Microsoft Excel.) -- C:\Program Files\Microsoft Office 15\root\office15\EXCEL.exe
O4 - GS\TaskBar [Clémentine]: G Data InternetSecurity 2014.lnk . (.G Data Software AG - G Data SecurityCenter.) -- C:\Program Files\G Data\InternetSecurity\GUI\GDSC.exe
O4 - GS\TaskBar [Clémentine]: OneNote 2013.lnk . (.Microsoft Corporation - Microsoft OneNote.) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Clémentine]: PowerPoint 2013.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) -- C:\Program Files\Microsoft Office 15\root\office15\POWERPNT.exe
O4 - GS\TaskBar [Clémentine]: Publisher 2013.lnk . (.Microsoft Corporation - Microsoft Publisher.) -- C:\Program Files\Microsoft Office 15\root\office15\MSPUB.exe
O4 - GS\TaskBar [Clémentine]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Clémentine]: Word 2013.lnk . (.Microsoft Corporation - Microsoft Word.) -- C:\Program Files\Microsoft Office 15\root\office15\WINWORD.exe
O4 - GS\Accessories [Clémentine]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Clémentine]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Clémentine]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Clémentine]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Clémentine]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [Clémentine]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Desktop [Clémentine]: Heredis 8.lnk . (.BSD Concept - Heredis.) -- C:\Program Files\Heredis 8\Heredis8.exe
O4 - GS\Desktop [Clémentine]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Aude]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Aude]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Aude]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.exe
O4 - GS\QuickLaunch [Aude]: My LastPass Vault.lnk - Clé orpheline
O4 - GS\TaskBar [Aude]: Excel 2013.lnk . (.Microsoft Corporation - Microsoft Excel.) -- C:\Program Files\Microsoft Office 15\root\office15\EXCEL.exe
O4 - GS\TaskBar [Aude]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\TaskBar [Aude]: OneNote 2013.lnk . (.Microsoft Corporation - Microsoft OneNote.) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Aude]: Outlook 2013.lnk . (.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.exe
O4 - GS\TaskBar [Aude]: Publisher 2013.lnk . (.Microsoft Corporation - Microsoft Publisher.) -- C:\Program Files\Microsoft Office 15\root\office15\MSPUB.exe
O4 - GS\TaskBar [Aude]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Aude]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Aude]: Word 2013.lnk . (.Microsoft Corporation - Microsoft Word.) -- C:\Program Files\Microsoft Office 15\root\office15\WINWORD.exe
O4 - GS\Program [Aude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Program [Aude]: Microsoft SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Lepage\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation
O4 - GS\Accessories [Aude]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Aude]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Aude]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Aude]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Aude]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [Aude]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Desktop [Aude]: Heredis 8.lnk . (.BSD Concept - Heredis.) -- C:\Program Files\Heredis 8\Heredis8.exe
O4 - GS\QuickLaunch [Arthur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Arthur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Arthur]: My LastPass Vault.lnk - Clé orpheline
O4 - GS\TaskBar [Arthur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Arthur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Arthur]: Word 2013.lnk . (.Microsoft Corporation - Microsoft Word.) -- C:\Program Files\Microsoft Office 15\root\office15\WINWORD.exe
O4 - GS\Program [Arthur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Accessories [Arthur]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Arthur]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Arthur]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Arthur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Arthur]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [Arthur]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Desktop [Arthur]: Heredis 8.lnk . (.BSD Concept - Heredis.) -- C:\Program Files\Heredis 8\Heredis8.exe
~ Global Startup: 167 Scanned in 00mn 00s



---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Public]: Install LastPass IE RunOnce.lnk . (.LastPass - LastPass Installer.) -- C:\Program Files\Common Files\lpuninstall.exe
O4 - GS\Startup [Lepage]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) -- C:\Users\Lepage\AppData\Roaming\Dropbox\bin\Dropbox.exe =>.Dropbox
O4 - GS\Startup [Lepage]: Envoyer à OneNote.lnk . (.Microsoft Corporation - Send to OneNote Tool.) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.exe
O4 - GS\Startup [Lepage]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood - Evernote Clipper.) -- C:\Program Files\Evernote\Evernote\EvernoteClipper.exe
O4 - GS\Startup [Lepage]: Logitech . Enregistrement du produit.lnk . (.Leader Technologies/Logitech - Product Registration.) -- C:\Program Files\Common Files\Logishrd\eReg\SetPoint\eReg.exe
O4 - GS\Startup [Aude]: Envoyer à OneNote.lnk . (.Microsoft Corporation - Send to OneNote Tool.) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.exe
O4 - HKLM\..\Run: [G Data AntiVirus Tray] . (.G Data Software AG - G Data Security Software.) -- C:\Program Files\G Data\InternetSecurity\AVKTray\AVKTray.exe
O4 - HKLM\..\Run: [GDFirewallTray] . (.G Data Software AG - G Data Personal Firewall.) -- C:\Program Files\G Data\InternetSecurity\Firewall\GDFirewallTray.exe
O4 - HKLM\..\Run: [HOSTS Anti-Adware_PUPs] C:\Program Files\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware_main.exe (.not file.)
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe (.not file.) =>PUP.Mobogenie
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [EvtMgr6] . (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKCU\..\Run: [SkyDrive] . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Lepage\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files\FileHippo.com\UpdateChecker.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_4328E9DAC92E90B3DC420277FFBFB777] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - HKCU\..\Run: [Copernic Desktop Search 4] . (.Copernic inc. - Copernic Desktop Search.) -- C:\Program Files\Copernic\desktopSearch4\Copernic.desktopSearch.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3197435572-1265789290-3300832553-1000\..\Run: [SkyDrive] . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Lepage\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3197435572-1265789290-3300832553-1000\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files\FileHippo.com\UpdateChecker.exe
O4 - HKUS\S-1-5-21-3197435572-1265789290-3300832553-1000\..\Run: [GoogleChromeAutoLaunch_4328E9DAC92E90B3DC420277FFBFB777] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - HKUS\S-1-5-21-3197435572-1265789290-3300832553-1000\..\Run: [Copernic Desktop Search 4] . (.Copernic inc. - Copernic Desktop Search.) -- C:\Program Files\Copernic\desktopSearch4\Copernic.desktopSearch.exe
O4 - HKUS\S-1-5-21-3197435572-1265789290-3300832553-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll =>.Microsoft Corporation
O9 - Extra button: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} . (.LastPass - LastPass Toolbar.) -- C:\Program Files\LastPass\LPToolbar.dll =>Toolbar.LastPass
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll =>.Microsoft Corporation
O9 - Extra button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} . (.Evernote Corp., 305 Walnut Street, Redwood - Evernote Clipper for Microsoft Internet Explorer.) -- C:\Program Files\Evernote\Evernote\EvernoteIE.dll
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Winsock: 7 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{ECFCA4F4-07BF-4E3F-BB22-87ABA56E1569}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{ECFCA4F4-07BF-4E3F-BB22-87ABA56E1569}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{ECFCA4F4-07BF-4E3F-BB22-87ABA56E1569}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: LBTWlgn . (.Logitech, Inc. - Logitech Bluetooth Service.) -- c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) . (.Acronis - Acronis Scheduler 2.) - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: G Data AntiVirus Proxy (AVKProxy) . (...) - C:\Program Files\Common Files\G Data\AVKProxy\AVKProxy.exe
O23 - Service: Planificateur G Data (AVKService) . (...) - C:\Program Files\G Data\InternetSecurity\AVK\AVKService.exe
O23 - Service: Gardien du système de fichiers G Data (AVKWCtl) . (.G Data Software AG - G Data Filesystem Monitor Service.) - C:\Program Files\G Data\InternetSecurity\AVK\AVKWCtl.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: HOSTS Anti-PUPs (HOSTS Anti-PUPs) . (.Pas de propriétaire - HOSTS Anti-PUPs/Adwares.) - C:\Program Files\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware.exe
O23 - Service: IePlugin Service (IePluginService) . (.Cherished Technololgy LIMITED - IePlugin Service.) - C:\ProgramData\IePluginService\PluginService.exe =>Trojan.SProtector
O23 - Service: lxdn_device (lxdn_device) . (.Pas de propriétaire - Printer Communication System.) - C:\Windows\system32\lxdncoms.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 306.2.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Acronis Sync Agent Service (syncagentsrv) . (.Acronis - TrueImage Sync Agent Service.) - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
~ Services: 18 Scanned in 00mn 08s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1052]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1056]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
[MD5.50131BFA7FD0C6029E611DBA35AA7E4D] [APT] [Installation App Launcher] (.Lexmark International Inc..) -- C:\Program Files\Lexmark 2600 Series\ezprint.exe [107176]
[MD5.9B593137FBCC7C1E5D0E4A422749D9A5] [APT] [{0230A80E-6414-4053-B93B-8D6977D06E6C}] (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe [866584]
[MD5.9B593137FBCC7C1E5D0E4A422749D9A5] [APT] [{0B116743-7C10-4BB5-A107-82490BEA9535}] (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe [866584]
[MD5.D1E31FCEB991FE27F0F15807F394FF9E] [APT] [{57591BD8-1D74-4098-83FB-249CEA450A3B}] (.Nicolas Coolman.) -- C:\Users\Lepage\Downloads\ZHPDiag2 (1).exe [6862845]
[MD5.C155A13687144076286989EF078112C2] [APT] [{8767EF22-49F7-4E70-9F8E-E58243EB7000}] (.Nicolas Coolman.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe [1917440]
[MD5.8B23F51A01CF5A1D2E4ECA8CCE496E49] [APT] [{B7B28E48-7163-4FEF-A481-614364872F03}] (.G Data Software AG.) -- C:\Program Files\G Data\InternetSecurity\GUI\GDSC.exe [2023544]
[MD5.9B593137FBCC7C1E5D0E4A422749D9A5] [APT] [{B8604D1D-0A0B-4B42-8A0E-3121475F4B79}] (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe [866584]
[MD5.9B593137FBCC7C1E5D0E4A422749D9A5] [APT] [{FF2B7FCE-6990-48E2-AE92-D1EAA55B7754}] (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe [866584]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984]
~ Scheduled Task: 14 Scanned in 00mn 05s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Internet Explorer - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\32.0.1700.102\Installer\chrmstp.exe
~ Active Setup: 11 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (GDMnIcpt) . (.G Data Software AG - Filesystem MiniInterceptor (Mini Filter).) - C:\Windows\system32\drivers\MiniIcpt.sys
O41 - Driver: (gdwfpcd) . (.G Data Software AG - G Data WFP Callout Driver (6.0).) - C:\Windows\System32\drivers\gdwfpcd32.sys
O41 - Driver: (GRD) . (.G Data Software - G Data Rootkit Detector Driver.) - C:\Windows\system32\drivers\GRD.sys
O41 - Driver: (HookCentre) . (.G Data Software AG - Security Hook.) - C:\Windows\system32\drivers\HookCentre.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: (Serial) . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) - C:\Windows\System32\DRIVERS\serial.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 72 Scanned in 00mn 22s



---\\ Logiciels installés (O42)
O42 - Logiciel: Ableton Live 9 Lite - (.Ableton.) [HKLM] -- {CF3D856D-6E97-4B29-A515-F2205A43DF8D}
O42 - Logiciel: Acronis True Image 2014 - (.Acronis.) [HKLM] -- {4E01F286-D3CC-4FB7-9BB2-B6FD217D9EF8}
O42 - Logiciel: Acronis True Image 2014 - (.Acronis.) [HKLM] -- {4E01F286-D3CC-4FB7-9BB2-B6FD217D9EF8}Visible
O42 - Logiciel: Adobe Reader XI (11.0.06) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {A922C4B7-50E0-4787-A94C-59DBF3C65DBE}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {10E3A6DD-84D8-4D8A-BB11-5E5314BCA7FD}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1
O42 - Logiciel: Copernic Desktop Search 4 - (.Copernic.) [HKLM] -- CopernicDesktopSearch4
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU] -- Dropbox
O42 - Logiciel: Evernote v. 5.1.2 - (.Evernote Corp..) [HKLM] -- {12FB6296-8840-11E3-86D7-00163E98E7D0}
O42 - Logiciel: FastStone Capture 7.6 - (.FastStone Soft.) [HKLM] -- FastStone Capture
O42 - Logiciel: FastStone Image Viewer 4.9 - (.FastStone Soft.) [HKLM] -- FastStone Image Viewer
O42 - Logiciel: FileHippo.com Update Checker - (...) [HKLM] -- FileHippo.com
O42 - Logiciel: Focusrite Scarlett Plug-in Suite 1.1 - (.Focusrite Audio Engineering Ltd..) [HKLM] -- {D7F912D4-C237-4079-966A-5044A5025CBF}}_is1
O42 - Logiciel: Focusrite USB 2.0 Audio Driver 2.1 - (.Focusrite Audio Engineering Limited..) [HKLM] -- Focusrite USB 2.0 Audio Driver_is1
O42 - Logiciel: G Data InternetSecurity 2014 - (.G Data Software AG.) [HKLM] -- {7765322A-8601-47D3-AC60-B66677450D7B}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM] -- {4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E} =>.Google Inc
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Heredis 8 - (...) [HKLM] -- Heredis 8
O42 - Logiciel: IePluginService12.27.0.3326 - (.Cherished Technololgy LIMITED.) [HKLM] -- IePlugins =>Trojan.SProtector
O42 - Logiciel: Java 7 Update 51 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217051FF}
O42 - Logiciel: KeePass Password Safe 1.26 - (.Dominik Reichl.) [HKLM] -- KeePass Password Safe_is1
O42 - Logiciel: LastPass (Désinstaller uniquement) - (.LastPass.) [HKLM] -- LastPass
O42 - Logiciel: Lexmark 2600 Series - (.Lexmark International, Inc..) [HKLM] -- Lexmark 2600 Series
O42 - Logiciel: Lightspark 0.5.3-git - (.Lightspark Team.) [HKLM] -- Lightspark
O42 - Logiciel: Logitech SetPoint 6.61 - (.Logitech.) [HKLM] -- sp6
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: MaxiCompte - (.EuroSoft Software Development.) [HKLM] -- MaxiCompte 3.18_is1
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU] -- SkyDriveSetup.exe =>.Microsoft Corporation
O42 - Logiciel: Mises à jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: Mozilla Thunderbird 27.0 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 27.0 (x86 en-US) =>.Mozilla Corporation
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.12.0604 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {2FDD750F-49B7-40C1-9D5E-D2955BC0E2D8}
O42 - Logiciel: NVIDIA Pilote 3D Vision 306.23 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.18.0 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 306.23 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB
O42 - Logiciel: NVIDIA Pilote graphique 306.23 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM] -- {90150000-008C-0000-0000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM] -- {90150000-007E-0000-0000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM] -- {90150000-008C-040C-0000-0000000FF1CE}
O42 - Logiciel: Package de pilotes Windows - Focusrite USB 2.0 Audio Driver (07/07/2011 15. - (.Focusrite.) [HKLM] -- F4B837225347AABC4F4DB6067C4D5642AF04B34C
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {BB285C9F-C821-4770-8970-56C4AB52C87E}
O42 - Logiciel: Skype Web Plugin - (.Skype.) [HKLM] -- {2266F46F-0E46-491C-B278-DAF80F7C58D7}
O42 - Logiciel: Skype™ 6.13 - (.Skype Technologies S.A..) [HKLM] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}
O42 - Logiciel: SupTab - (...) [HKLM] -- SupTab
O42 - Logiciel: TheBrain 8 - (.TheBrain Technologies.) [HKLM] -- 1190-3857-8766-9166
O42 - Logiciel: USB-set 1.5 - (.Infoadom 38.) [HKLM] -- {B92B952E-4459-480F-A500-60D87F6F527F}_is1
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer
O42 - Logiciel: eReg - (.Logitech, Inc..) [HKLM] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {616445AF-BBCF-41C1-A4D6-8CFF171C182D}
~ Logic: 40 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\8322898]
[HKCU\Software\Ableton]
[HKCU\Software\Acronis]
[HKCU\Software\Adobe]
[HKCU\Software\AmiExt] =>Adware.FlashEnhancer
[HKCU\Software\AppDataLow\Software\G DATA]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow\Software\LastPass]
[HKCU\Software\AppDataLow\Software\Unity]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Bsd Concept]
[HKCU\Software\Canneverbe Limited]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Copernic]
[HKCU\Software\EuroSoft Software Development]
[HKCU\Software\Evernote]
[HKCU\Software\FastStone]
[HKCU\Software\FileHippo.com]
[HKCU\Software\G Data]
[HKCU\Software\GNU]
[HKCU\Software\Google]
[HKCU\Software\IM Providers]
[HKCU\Software\JavaSoft]
[HKCU\Software\LApplication App]
[HKCU\Software\LastPass]
[HKCU\Software\Leadertech]
[HKCU\Software\LexmarkPhoto]
[HKCU\Software\Lexmark]
[HKCU\Software\Licenses]
[HKCU\Software\LogiShrd]
[HKCU\Software\Logitech]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\O&O]
[HKCU\Software\ODBC]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\Skype]
[HKCU\Software\Trolltech]
[HKCU\Software\TuneUp]
[HKCU\Software\Unity]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\ej-technologies]
[HKCU\Software\kde.org]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ASIO]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Acronis]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\Alienware]
[HKLM\Software\AmiExt] =>Adware.FlashEnhancer
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Bench] =>PUP.GiganticSavings
[HKLM\Software\Canneverbe Limited]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Copernic]
[HKLM\Software\DesktopSearch2]
[HKLM\Software\Evernote]
[HKLM\Software\Focusrite]
[HKLM\Software\G Data]
[HKLM\Software\GEAR Software]
[HKLM\Software\Google]
[HKLM\Software\HookCentre]
[HKLM\Software\IM Providers]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\Khronos]
[HKLM\Software\LexmarkInkjet]
[HKLM\Software\Lexmark]
[HKLM\Software\Lightspark Team]
[HKLM\Software\Logishrd]
[HKLM\Software\Logitech]
[HKLM\Software\MSI]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\McAfee.com]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\O&O]
[HKLM\Software\ODBC]
[HKLM\Software\Policies]
[HKLM\Software\Propellerhead Software]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Savings Wizard]
[HKLM\Software\SkypeWebPlugin]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\TuneUp]
[HKLM\Software\Volatile]
[HKLM\Software\Waves Audio]
[HKLM\Software\Wow6432Node]
[HKLM\Software\Wpm] =>PUP.WpManager
[HKLM\Software\awesomehpSoftware] =>PUP.Awesomehp
[HKLM\Software\dotNetInstaller]
[HKLM\Software\ej-technologies]
[HKLM\Software\flash-Enhancer] =>Adware.FlashEnhancer
[HKLM\Software\supTab]
[HKLM\Software\supWPM] =>PUP.WpManager
~ Key Software: 218 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 10/01/2014 - 16:33:43 - [139,924] ----D C:\Program Files\Acronis
O43 - CFD: 06/01/2014 - 16:15:25 - [120,818] ----D C:\Program Files\Adobe
O43 - CFD: 02/02/2014 - 02:02:21 - [0] ----D C:\Program Files\AmiExt =>Adware.FlashEnhancer
O43 - CFD: 06/01/2014 - 16:38:17 - [2,316] ----D C:\Program Files\Apple Software Update =>.Apple Inc
O43 - CFD: 02/02/2014 - 02:02:20 - [0] ----D C:\Program Files\Bench =>PUP.GiganticSavings
O43 - CFD: 06/01/2014 - 16:38:02 - [0,602] ----D C:\Program Files\Bonjour
O43 - CFD: 10/01/2014 - 00:05:43 - [11,788] ----D C:\Program Files\CDBurnerXP
O43 - CFD: 31/01/2014 - 21:32:54 - [953,762] ----D C:\Program Files\Common Files
O43 - CFD: 10/01/2014 - 01:39:56 - [18,461] ----D C:\Program Files\Copernic
O43 - CFD: 15/01/2014 - 21:13:06 - [0,879] ----D C:\Program Files\DIFX
O43 - CFD: 08/01/2014 - 08:14:52 - [79,371] ----D C:\Program Files\DVD Maker
O43 - CFD: 02/02/2014 - 11:02:08 - [144,788] ----D C:\Program Files\Evernote
O43 - CFD: 15/01/2014 - 21:00:39 - [2,755] ----D C:\Program Files\FastStone Capture
O43 - CFD: 15/01/2014 - 20:58:42 - [9,668] ----D C:\Program Files\FastStone Image Viewer
O43 - CFD: 04/01/2014 - 11:28:26 - [0] -SH-D C:\Program Files\Fichiers communs
O43 - CFD: 13/01/2014 - 21:43:39 - [0,421] ----D C:\Program Files\FileHippo.com
O43 - CFD: 15/01/2014 - 21:13:40 - [3,950] ----D C:\Program Files\Focusrite
O43 - CFD: 06/01/2014 - 12:08:35 - [118,317] ----D C:\Program Files\G Data
O43 - CFD: 30/01/2014 - 20:57:13 - [645,593] ----D C:\Program Files\Google
O43 - CFD: 10/01/2014 - 09:42:26 - [25,093] ----D C:\Program Files\Heredis 8
O43 - CFD: 28/01/2014 - 23:52:09 - [0,273] ----D C:\Program Files\Hosts_Anti_Adwares_PUPs
O43 - CFD: 10/01/2014 - 23:01:28 - [0,716] ----D C:\Program Files\Image Converter
O43 - CFD: 06/01/2014 - 11:58:47 - [9,328] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 06/01/2014 - 11:58:08 - [0,092] ----D C:\Program Files\Intel
O43 - CFD: 27/01/2014 - 10:21:37 - [22,563] ----D C:\Program Files\Internet Explorer
O43 - CFD: 27/01/2014 - 10:28:04 - [1,962] ----D C:\Program Files\iPod
O43 - CFD: 27/01/2014 - 10:28:42 - [188,436] ----D C:\Program Files\iTunes
O43 - CFD: 08/01/2014 - 01:25:08 - [123,863] ----D C:\Program Files\Java
O43 - CFD: 17/01/2014 - 21:52:58 - [3,691] ----D C:\Program Files\KeePass Password Safe
O43 - CFD: 27/01/2014 - 10:11:53 - [29,399] ----D C:\Program Files\LastPass
O43 - CFD: 06/01/2014 - 16:18:23 - [48,205] ----D C:\Program Files\Lexmark 2600 Series
O43 - CFD: 06/01/2014 - 16:18:14 - [2,208] ----D C:\Program Files\Lexmark Toolbar
O43 - CFD: 28/01/2014 - 21:25:27 - [17,537] ----D C:\Program Files\Lightspark 0.5.3-git
O43 - CFD: 31/01/2014 - 21:33:48 - [54,133] ----D C:\Program Files\Logitech
O43 - CFD: 25/01/2014 - 23:53:25 - [13,251] ----D C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 14/01/2014 - 22:13:46 - [16,825] ----D C:\Program Files\MaxiCompte 3
O43 - CFD: 26/01/2014 - 13:39:40 - [0] ----D C:\Program Files\McAfee Security Scan
O43 - CFD: 14/07/2009 - 10:00:58 - [140,966] ----D C:\Program Files\Microsoft Games
O43 - CFD: 06/01/2014 - 21:04:28 - [0,262] ----D C:\Program Files\Microsoft Office
O43 - CFD: 30/01/2014 - 08:02:57 - [1798,324] ----D C:\Program Files\Microsoft Office 15
O43 - CFD: 18/01/2014 - 00:06:05 - [40,851] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 06/01/2014 - 21:18:46 - [5,761] ----D C:\Program Files\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 07/01/2014 - 10:25:45 - [0,130] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 07/01/2014 - 07:57:08 - [7,789] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 28/01/2014 - 21:22:31 - [3,657] ----D C:\Program Files\Mobogenie =>PUP.Mobogenie
O43 - CFD: 02/02/2014 - 11:25:21 - [0,215] ----D C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 02/02/2014 - 11:22:17 - [50,663] ----D C:\Program Files\Mozilla Thunderbird =>.Mozilla Corporation
O43 - CFD: 14/07/2009 - 05:52:30 - [0,025] ----D C:\Program Files\MSBuild
O43 - CFD: 06/01/2014 - 12:03:37 - [599,938] ----D C:\Program Files\NVIDIA Corporation
O43 - CFD: 27/01/2014 - 10:21:31 - [73,545] ----D C:\Program Files\QuickTime
O43 - CFD: 06/01/2014 - 11:58:48 - [31,692] ----D C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - 05:52:30 - [37,357] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 02/02/2014 - 13:45:34 - [35,141] R---D C:\Program Files\Skype
O43 - CFD: 01/02/2014 - 23:41:51 - [11,338] ----D C:\Program Files\SkypeWebPlugin
O43 - CFD: 15/01/2014 - 21:13:40 - [0,268] ----D C:\Program Files\Steinberg
O43 - CFD: 28/01/2014 - 21:23:24 - [2,315] ----D C:\Program Files\SupTab
O43 - CFD: 06/01/2014 - 11:59:18 - [0] --H-D C:\Program Files\Temp
O43 - CFD: 09/01/2014 - 01:21:54 - [53,558] ----D C:\Program Files\TheBrain
O43 - CFD: 14/07/2009 - 05:53:23 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 19/01/2014 - 21:02:16 - [1,255] ----D C:\Program Files\USB-set
O43 - CFD: 09/01/2014 - 08:21:43 - [2,909] ----D C:\Program Files\Windows Defender
O43 - CFD: 09/01/2014 - 08:21:46 - [6,688] ----D C:\Program Files\Windows Journal
O43 - CFD: 07/01/2014 - 16:39:10 - [12,026] ----D C:\Program Files\Windows Live
O43 - CFD: 08/01/2014 - 08:14:52 - [5,895] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 09/01/2014 - 08:21:44 - [6,298] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 04/01/2014 - 11:28:26 - [11,632] ----D C:\Program Files\Windows NT
O43 - CFD: 08/01/2014 - 08:14:52 - [4,213] ----D C:\Program Files\Windows Photo Viewer
O43 - CFD: 08/01/2014 - 08:14:52 - [0,181] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 08/01/2014 - 08:14:52 - [7,576] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 02/02/2014 - 21:23:41 - [17,267] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 10/01/2014 - 16:34:26 - [223,396] ----D C:\Program Files\Common Files\Acronis
O43 - CFD: 06/01/2014 - 16:15:27 - [6,301] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 27/01/2014 - 10:28:03 - [129,385] ----D C:\Program Files\Common Files\Apple
O43 - CFD: 06/01/2014 - 21:18:20 - [0,013] ----D C:\Program Files\Common Files\DESIGNER
O43 - CFD: 15/01/2014 - 21:13:41 - [2,865] ----D C:\Program Files\Common Files\Digidesign
O43 - CFD: 06/01/2014 - 12:08:37 - [359,481] ----D C:\Program Files\Common Files\G Data
O43 - CFD: 09/01/2014 - 01:20:52 - [80,195] ----D C:\Program Files\Common Files\i4j_jres
O43 - CFD: 06/01/2014 - 11:58:36 - [1,943] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 08/01/2014 - 01:25:30 - [1,191] ----D C:\Program Files\Common Files\Java
O43 - CFD: 01/02/2014 - 21:36:52 - [28,848] ----D C:\Program Files\Common Files\Logishrd
O43 - CFD: 07/01/2014 - 18:49:42 - [58,719] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 14/01/2014 - 23:01:50 - [1,628] ----D C:\Program Files\Common Files\Propellerhead Software
O43 - CFD: 07/01/2014 - 18:50:00 - [0,003] ----D C:\Program Files\Common Files\Services
O43 - CFD: 30/01/2014 - 01:24:26 - [1,904] ----D C:\Program Files\Common Files\Skype
O43 - CFD: 14/07/2009 - 03:37:05 - [39,200] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 08/01/2014 - 08:14:52 - [9,767] ----D C:\Program Files\Common Files\System
O43 - CFD: 07/01/2014 - 10:18:08 - [0] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 27/01/2014 - 10:28:42 - [2,446] ----D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 25/01/2014 - 19:21:33 - [983,946] ----D C:\ProgramData\Ableton
O43 - CFD: 25/01/2014 - 19:12:47 - [16,418] ----D C:\ProgramData\Acronis
O43 - CFD: 06/01/2014 - 16:16:54 - [182,944] ----D C:\ProgramData\Adobe
O43 - CFD: 27/01/2014 - 10:24:06 - [76,400] ----D C:\ProgramData\Apple
O43 - CFD: 06/01/2014 - 16:38:48 - [94,813] ----D C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 04/01/2014 - 11:28:26 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 10/01/2014 - 00:05:52 - [0] ----D C:\ProgramData\Canneverbe Limited
O43 - CFD: 10/01/2014 - 00:06:03 - [0] --H-D C:\ProgramData\Common Files
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 06/01/2014 - 16:18:24 - [0] ----D C:\ProgramData\Ezprint
O43 - CFD: 04/01/2014 - 11:28:26 - [0] -SH-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Favorites
O43 - CFD: 06/01/2014 - 15:09:52 - [397,569] ----D C:\ProgramData\G Data
O43 - CFD: 28/01/2014 - 21:23:25 - [0,484] ----D C:\ProgramData\IePluginService =>Trojan.SProtector
O43 - CFD: 31/01/2014 - 22:38:56 - [22,462] ----D C:\ProgramData\Logishrd
O43 - CFD: 01/02/2014 - 12:04:41 - [0,024] ----D C:\ProgramData\lx_Cats
O43 - CFD: 10/01/2014 - 01:06:20 - [6,798] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 06/01/2014 - 16:15:47 - [0,017] ----D C:\ProgramData\McAfee
O43 - CFD: 04/01/2014 - 11:28:26 - [0] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 01/02/2014 - 01:25:18 - [1859,398] -S--D C:\ProgramData\Microsoft
O43 - CFD: 06/01/2014 - 21:18:39 - [0] ----D C:\ProgramData\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 04/01/2014 - 11:28:26 - [0] -SH-D C:\ProgramData\Modèles
O43 - CFD: 13/01/2014 - 01:29:22 - [0] ----D C:\ProgramData\Mozilla
O43 - CFD: 02/02/2014 - 19:38:59 - [2,690] ----D C:\ProgramData\NVIDIA
O43 - CFD: 06/01/2014 - 12:02:06 - [2,471] ----D C:\ProgramData\NVIDIA Corporation
O43 - CFD: 02/02/2014 - 11:19:47 - [0] ----D C:\ProgramData\Oracle
O43 - CFD: 18/01/2014 - 01:43:19 - [0,003] ----D C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 30/01/2014 - 01:25:32 - [34,352] ----D C:\ProgramData\Skype
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 08/01/2014 - 00:00:50 - [0] ----D C:\ProgramData\Sun
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 09/01/2014 - 01:26:20 - [0] ----D C:\ProgramData\TheBrain
O43 - CFD: 10/01/2014 - 00:07:28 - [0,098] ----D C:\ProgramData\TuneUp Software
O43 - CFD: 19/01/2014 - 20:41:15 - [0] ----D C:\ProgramData\usb-set
O43 - CFD: 02/02/2014 - 02:04:36 - [0] ----D C:\ProgramData\WPM =>PUP.WpManager
O43 - CFD: 10/01/2014 - 00:06:03 - [27,641] -SH-D C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 14/01/2014 - 23:03:58 - [3,790] ----D C:\Users\Lepage\AppData\Roaming\Ableton
O43 - CFD: 10/01/2014 - 16:35:39 - [0] ----D C:\Users\Lepage\AppData\Roaming\Acronis
O43 - CFD: 06/01/2014 - 16:16:17 - [0,155] ----D C:\Users\Lepage\AppData\Roaming\Adobe
O43 - CFD: 06/01/2014 - 16:44:45 - [0,221] ----D C:\Users\Lepage\AppData\Roaming\Apple Computer
O43 - CFD: 10/01/2014 - 00:05:44 - [0,001] ----D C:\Users\Lepage\AppData\Roaming\Canneverbe Limited
O43 - CFD: 02/02/2014 - 21:14:55 - [169,167] ----D C:\Users\Lepage\AppData\Roaming\Dropbox
O43 - CFD: 20/01/2014 - 10:26:48 - [0,005] ----D C:\Users\Lepage\AppData\Roaming\DropboxMaster
O43 - CFD: 15/01/2014 - 21:00:53 - [3,215] ----D C:\Users\Lepage\AppData\Roaming\FastStone
O43 - CFD: 06/01/2014 - 21:27:02 - [0] ----D C:\Users\Lepage\AppData\Roaming\G Data
O43 - CFD: 04/01/2014 - 11:28:39 - [0] ----D C:\Users\Lepage\AppData\Roaming\Identities
O43 - CFD: 17/01/2014 - 23:19:01 - [0,003] ----D C:\Users\Lepage\AppData\Roaming\KeePass
O43 - CFD: 31/01/2014 - 21:35:27 - [0] ----D C:\Users\Lepage\AppData\Roaming\Leadertech
O43 - CFD: 23/01/2014 - 02:02:56 - [0] ----D C:\Users\Lepage\AppData\Roaming\Llamagraphics
O43 - CFD: 31/01/2014 - 21:30:42 - [0,166] ----D C:\Users\Lepage\AppData\Roaming\Logishrd
O43 - CFD: 31/01/2014 - 22:38:55 - [0,023] ----D C:\Users\Lepage\AppData\Roaming\Logitech
O43 - CFD: 07/01/2014 - 22:03:17 - [0] ----D C:\Users\Lepage\AppData\Roaming\Macromedia
O43 - CFD: 10/01/2014 - 01:06:35 - [6,490] ----D C:\Users\Lepage\AppData\Roaming\Malwarebytes
O43 - CFD: 14/07/2009 - 10:00:22 - [0] ----D C:\Users\Lepage\AppData\Roaming\Media Center Programs
O43 - CFD: 31/01/2014 - 21:35:26 - [46,697] -S--D C:\Users\Lepage\AppData\Roaming\Microsoft
O43 - CFD: 26/01/2014 - 00:05:57 - [0,010] ----D C:\Users\Lepage\AppData\Roaming\Mozilla
O43 - CFD: 02/02/2014 - 20:53:57 - [7,799] ----D C:\Users\Lepage\AppData\Roaming\Skype
O43 - CFD: 13/01/2014 - 02:08:25 - [0,026] ----D C:\Users\Lepage\AppData\Roaming\TheBrain
O43 - CFD: 13/01/2014 - 01:29:29 - [13,970] ----D C:\Users\Lepage\AppData\Roaming\Thunderbird =>.Mozilla Corporation
O43 - CFD: 10/01/2014 - 00:07:05 - [0] ----D C:\Users\Lepage\AppData\Roaming\TuneUp Software
O43 - CFD: 02/02/2014 - 21:24:50 - [2,231] ----D C:\Users\Lepage\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 26/01/2014 - 13:38:24 - [17,686] ----D C:\Users\Lepage\AppData\Local\Adobe
O43 - CFD: 06/01/2014 - 16:38:18 - [0] ----D C:\Users\Lepage\AppData\Local\Apple
O43 - CFD: 06/01/2014 - 16:39:10 - [1286,522] ----D C:\Users\Lepage\AppData\Local\Apple Computer
O43 - CFD: 04/01/2014 - 11:28:32 - [0] -SH-D C:\Users\Lepage\AppData\Local\Application Data
O43 - CFD: 06/01/2014 - 15:40:31 - [1,600] ----D C:\Users\Lepage\AppData\Local\Apps
O43 - CFD: 28/01/2014 - 21:20:54 - [2,056] ----D C:\Users\Lepage\AppData\Local\cache
O43 - CFD: 10/01/2014 - 01:39:00 - [139,040] ----D C:\Users\Lepage\AppData\Local\Copernic
O43 - CFD: 08/01/2014 - 00:56:28 - [0] ----D C:\Users\Lepage\AppData\Local\Deployment
O43 - CFD: 08/01/2014 - 16:35:27 - [0,160] ----D C:\Users\Lepage\AppData\Local\Diagnostics
O43 - CFD: 22/01/2014 - 23:17:33 - [33,196] ----D C:\Users\Lepage\AppData\Local\Downloaded Installations
O43 - CFD: 01/02/2014 - 21:43:03 - [0,121] ----D C:\Users\Lepage\AppData\Local\ElevatedDiagnostics
O43 - CFD: 29/01/2014 - 13:29:50 - [5,877] ----D C:\Users\Lepage\AppData\Local\Evernote
O43 - CFD: 14/01/2014 - 22:53:47 - [0] ----D C:\Users\Lepage\AppData\Local\FastReport
O43 - CFD: 15/01/2014 - 21:00:53 - [0,032] ----D C:\Users\Lepage\AppData\Local\FastStone
O43 - CFD: 06/01/2014 - 21:27:19 - [0,149] ----D C:\Users\Lepage\AppData\Local\G DATA
O43 - CFD: 28/01/2014 - 21:20:51 - [1,224] ----D C:\Users\Lepage\AppData\Local\genienext
O43 - CFD: 26/01/2014 - 00:28:06 - [681,970] ----D C:\Users\Lepage\AppData\Local\Google
O43 - CFD: 04/01/2014 - 11:28:32 - [0] -SH-D C:\Users\Lepage\AppData\Local\Historique
O43 - CFD: 30/01/2014 - 00:21:37 - [174,531] ----D C:\Users\Lepage\AppData\Local\Microsoft
O43 - CFD: 06/01/2014 - 21:23:28 - [0,062] ----D C:\Users\Lepage\AppData\Local\Microsoft Help
O43 - CFD: 28/01/2014 - 21:22:31 - [90,469] ----D C:\Users\Lepage\AppData\Local\Mobogenie =>PUP.Mobogenie
O43 - CFD: 13/01/2014 - 21:53:33 - [0] ----D C:\Users\Lepage\AppData\Local\O&O
O43 - CFD: 06/01/2014 - 23:14:11 - [0] ----D C:\Users\Lepage\AppData\Local\Programs
O43 - CFD: 30/01/2014 - 01:26:01 - [4,544] ----D C:\Users\Lepage\AppData\Local\Skype
O43 - CFD: 02/02/2014 - 21:25:46 - [120,156] ----D C:\Users\Lepage\AppData\Local\Temp
O43 - CFD: 04/01/2014 - 11:28:32 - [0] -SH-D C:\Users\Lepage\AppData\Local\Temporary Internet Files
O43 - CFD: 13/01/2014 - 01:29:29 - [13,128] ----D C:\Users\Lepage\AppData\Local\Thunderbird =>.Mozilla Corporation
O43 - CFD: 21/01/2014 - 17:29:07 - [0,075] ----D C:\Users\Lepage\AppData\Local\Unity
O43 - CFD: 13/01/2014 - 21:28:11 - [0,001] ----D C:\Users\Lepage\AppData\Local\VirtualStore
O43 - CFD: 07/01/2014 - 10:18:22 - [0] ----D C:\Users\Lepage\AppData\Local\Windows Live
O43 - CFD: 14/07/2009 - 05:42:04 - [0,014] R---D C:\Users\Lepage\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 09/01/2014 - 09:59:21 - [0] R---D C:\Users\Lepage\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 26/01/2014 - 17:49:53 - [0,008] ----D C:\Users\Lepage\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome
O43 - CFD: 20/01/2014 - 01:56:19 - [0,002] ----D C:\Users\Lepage\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 27/01/2014 - 10:07:41 - [0,004] ----D C:\Users\Lepage\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass
O43 - CFD: 14/07/2009 - 05:37:42 - [0,001] R---D C:\Users\Lepage\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 31/01/2014 - 22:46:36 - [0,005] R---D C:\Users\Lepage\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
~ Program Folder: 188 Scanned in 00mn 45s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.89F63B865FC9423A2EE6B8F8B2AF907A] - 01/02/2014 - 21:37:13 ---A- . (...) -- C:\Windows\System32\lvcoinst.log [3486]
O44 - LFC:[MD5.2AE395E7EF3FD75670E68D8F0D16599C] - 02/02/2014 - 02:04:37 ---A- . (...) -- C:\Windows\PFRO.log [65386]
O44 - LFC:[MD5.B86DFCF04BBF02E2576729F521CFB2D1] - 02/02/2014 - 10:57:46 ---A- . (...) -- C:\DelFix.txt [1257]
O44 - LFC:[MD5.9395BBE294045909A025C9F3DC3D9025] - 02/02/2014 - 11:19:00 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\java.exe [174504]
O44 - LFC:[MD5.CB3638541DCAC86EE17FA8258202E20E] - 02/02/2014 - 11:19:00 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\javaw.exe [175016]
O44 - LFC:[MD5.95E15A2DE75AB48728AB8E1911C3EDB1] - 02/02/2014 - 11:19:00 ---A- . (.Oracle Corporation - Java(TM) Web Start Launcher.) -- C:\Windows\System32\javaws.exe [264616]
O44 - LFC:[MD5.FD80D0AE205EC54D1A204DDBD6B766DA] - 02/02/2014 - 11:19:00 ---A- . (.Oracle Corporation - Pas de description.) -- C:\Windows\System32\WindowsAccessBridge.dll [94632]
O44 - LFC:[MD5.A479884D87C1A87D813B9E17780F19E7] - 02/02/2014 - 19:38:59 ---A- . (...) -- C:\Windows\setupact.log [9506]
O44 - LFC:[MD5.5F09C2AF4E9779AFE6451279B6713C3F] - 02/02/2014 - 19:43:47 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1549700]
O44 - LFC:[MD5.B33F93B706B74D2A04D096198749C8E7] - 02/02/2014 - 19:43:47 ---A- . (...) -- C:\Windows\System32\perfc009.dat [106190]
O44 - LFC:[MD5.69C8239A0AC51C4E05FDBF0CBC44E406] - 02/02/2014 - 19:43:47 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [130548]
O44 - LFC:[MD5.57275E6EE1E9D68C67B62B1987F58A76] - 02/02/2014 - 19:43:47 ---A- . (...) -- C:\Windows\System32\perfh009.dat [615810]
O44 - LFC:[MD5.C1B7A4E851DF19F9E72EC0092AD61BC7] - 02/02/2014 - 19:43:47 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [704242]
O44 - LFC:[MD5.98313D89427BABBC1CE332272538087C] - 02/02/2014 - 20:49:28 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.E2B3C984C14993088824C2781DBB8084] - 02/02/2014 - 20:53:03 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1615576]
O44 - LFC:[MD5.273240F1B9AEBBBA9062F0BE97063623] - 20/01/2014 - 21:49:22 ---A- . (...) -- C:\Windows\ntbtlog.txt [407370]
O44 - LFC:[MD5.4470E3C1E0C3378E4CAB137893C12C3A] - 25/01/2014 - 23:53:21 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [22856]
O44 - LFC:[MD5.72F334D3C89065AF65C28A4686A19CD4] - 28/01/2014 - 21:25:22 ---A- . (...) -- C:\extensions.ini [70]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 28/01/2014 - 21:25:22 ---A- . (...) -- C:\extensions.sqlite [0]
O44 - LFC:[MD5.C0382C12B784394BF16C2D8F0F1F17DC] - 31/01/2014 - 21:35:05 ---A- . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) -- C:\Windows\System32\Drivers\LNonPnP.sys [16400]
O44 - LFC:[MD5.9A4C1D2518F6EE23E1B249CEC15D3743] - 31/01/2014 - 21:35:12 ---A- . (...) -- C:\Windows\LDPINST.LOG [7415]
O44 - LFC:[MD5.9F431CB5B97CB22F65696AE38F61FC21] - 31/01/2014 - 21:35:32 ---A- . (...) -- C:\Windows\LkmdfCoInst.log [968]
~ Files: 22 Scanned in 00mn 35s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.0866C84BAAE0558B2424ABACDF82A5F4] - 01/02/2014 - 10:15:37 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf
O45 - LFCP:[MD5.538AD53B943317AA2EB69717BB272EEA] - 01/02/2014 - 10:50:56 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-D0649312.pf
O45 - LFCP:[MD5.493DFD6D88BA186568C4EA872040A93C] - 01/02/2014 - 10:52:01 ---A- - C:\Windows\Prefetch\DROPBOX.EXE-B882C690.pf
O45 - LFCP:[MD5.13749BAF41B91CCADD890756C9DF423B] - 01/02/2014 - 14:09:41 ---A- - C:\Windows\Prefetch\ABLETON LIVE 9 LITE.EXE-E0A62D51.pf
O45 - LFCP:[MD5.A8CA34E973AEF919C5D7C6E8D0769567] - 01/02/2014 - 14:10:23 ---A- - C:\Windows\Prefetch\ABLETON INDEX.EXE-EFA0BCC5.pf
O45 - LFCP:[MD5.D384ABF4C0E12368100A643B06E6FE28] - 01/02/2014 - 14:10:24 ---A- - C:\Windows\Prefetch\ABLETON WEB CONNECTOR.EXE-971E165F.pf
O45 - LFCP:[MD5.991D3ABAADF3BCCB36EECA3298887C66] - 01/02/2014 - 21:37:15 ---A- - C:\Windows\Prefetch\COMUPDATUS.EXE-FEED2F65.pf
O45 - LFCP:[MD5.341F1E235750647FDE439F5CCD0883AF] - 01/02/2014 - 22:01:27 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-98A1AB93.pf
O45 - LFCP:[MD5.A33961CEE77E4E64B8BACC1F6F7089D9] - 01/02/2014 - 22:50:37 ---A- - C:\Windows\Prefetch\SNDVOL.EXE-5D4CC7D6.pf
O45 - LFCP:[MD5.86A3B72CF1C5E3403674693B24E87B07] - 01/02/2014 - 23:49:25 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf
O45 - LFCP:[MD5.56F041465F99E7E55B90E51A94CFF1AE] - 02/02/2014 - 01:19:03 ---A- - C:\Windows\Prefetch\OUTLOOK.EXE-6327963D.pf
O45 - LFCP:[MD5.F95A2FBC88AFA32EC5D4AC7C14B53CAF] - 02/02/2014 - 01:19:07 ---A- - C:\Windows\Prefetch\EXCEL.EXE-7EC3B739.pf
O45 - LFCP:[MD5.BC40A36E5D0F95698F002413596DD502] - 02/02/2014 - 01:19:07 ---A- - C:\Windows\Prefetch\MSACCESS.EXE-EDB98316.pf
O45 - LFCP:[MD5.9824EDAE2A1F492F1643DC1D3981502F] - 02/02/2014 - 01:19:09 ---A- - C:\Windows\Prefetch\MSPUB.EXE-2B9DF28F.pf
O45 - LFCP:[MD5.17A9FF5B43EEF3790B76D50FBEDD12A7] - 02/02/2014 - 01:46:42 ---A- - C:\Windows\Prefetch\FSVIEWER.EXE-3E29DEC1.pf
O45 - LFCP:[MD5.6A6F2127E14B93C5F55A09B23AFCA782] - 02/02/2014 - 01:55:18 ---A- - C:\Windows\Prefetch\WINWORD.EXE-13FF1AEE.pf
O45 - LFCP:[MD5.8B64F3E899AE068E46D38096BEB793EE] - 02/02/2014 - 02:05:58 ---A- - C:\Windows\Prefetch\MBAMSCHEDULER.EXE-6CB535D7.pf
O45 - LFCP:[MD5.97C1306E93C95B82F616E0E898888555] - 02/02/2014 - 02:05:58 ---A- - C:\Windows\Prefetch\MBAMSERVICE.EXE-447DC311.pf
O45 - LFCP:[MD5.7D125C80B8FA6C21CF9020660037B340] - 02/02/2014 - 02:37:59 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf
O45 - LFCP:[MD5.3377BA9884F98BC9A3C3FA2EDACDEDCF] - 02/02/2014 - 02:38:05 ---A- - C:\Windows\Prefetch\MBAM.EXE-305FF92C.pf
O45 - LFCP:[MD5.BE97E71E57F5BAEA10BA7376062FBD32] - 02/02/2014 - 10:54:42 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf
O45 - LFCP:[MD5.C8573C3DC8E791F2FDCC7E288BB89EB7] - 02/02/2014 - 10:57:56 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf
O45 - LFCP:[MD5.92DE419AE6B3E171971451211599EF89] - 02/02/2014 - 11:08:08 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-ECAD9571.pf
O45 - LFCP:[MD5.3755E5A87AC50F12251F91450B3850C8] - 02/02/2014 - 13:48:18 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-A2D55CB6.pf
O45 - LFCP:[MD5.6D01F53E1F412CF47293B24BD2312247] - 02/02/2014 - 13:49:01 ---A- - C:\Windows\Prefetch\FSCAPTURE.EXE-5576D33E.pf
O45 - LFCP:[MD5.29741D2492ECF847C88C266EE5C75A09] - 02/02/2014 - 15:33:29 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf
O45 - LFCP:[MD5.AEBECCAF880AD46F680DA63F380CC450] - 02/02/2014 - 15:33:32 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf
O45 - LFCP:[MD5.D5C534CEB285E69065AF0721FF5F1B93] - 02/02/2014 - 15:37:00 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3197435572-1265789290-3300832553-1000.db
O45 - LFCP:[MD5.04788655D6DFEBB654D16492C634E77A] - 02/02/2014 - 15:37:01 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3197435572-1265789290-3300832553-1000.db
O45 - LFCP:[MD5.6EC31240B6BC1A35DD62AB9B8A28B679] - 02/02/2014 - 15:37:43 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-0C1F4E32.pf
O45 - LFCP:[MD5.8E71EC9EC4B0CCECF66E4972F7744A06] - 02/02/2014 - 16:17:55 ---A- - C:\Windows\Prefetch\CONTROL.EXE-817F8F1D.pf
O45 - LFCP:[MD5.17EF4D4CDB00543696D76B68FE0F5785] - 02/02/2014 - 16:35:25 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf
O45 - LFCP:[MD5.38AAA46B34830EA7CD91609DB6422344] - 02/02/2014 - 17:26:12 ---A- - C:\Windows\Prefetch\AgCx_S2_S-1-5-21-3197435572-1265789290-3300832553-1002.snp.db
O45 - LFCP:[MD5.9CCFD2403CD854736D62F90082A10CF7] - 02/02/2014 - 17:26:40 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3197435572-1265789290-3300832553-1002.db
O45 - LFCP:[MD5.CD92254B68C7E5E53E93C1AA3F10969D] - 02/02/2014 - 17:26:40 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3197435572-1265789290-3300832553-1002.db
O45 - LFCP:[MD5.59411C99B6E59B9C92EC3F24808093BE] - 02/02/2014 - 18:25:42 ---A- - C:\Windows\Prefetch\AgCx_SC3_074C9C7D.db
O45 - LFCP:[MD5.DE94EC8E0681B68E654582B9E620572F] - 02/02/2014 - 18:26:58 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-3197435572-1265789290-3300832553-1000.snp.db
O45 - LFCP:[MD5.1981B95A75B27161BA2A744D68DCDFB6] - 02/02/2014 - 18:27:33 ---A- - C:\Windows\Prefetch\AgCx_SC3_625D3EE2.db
O45 - LFCP:[MD5.AAB7D709EB3D3E89FB28ECF081CEBCDC] - 02/02/2014 - 18:38:53 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-3197435572-1265789290-3300832553-1002.snp.db
O45 - LFCP:[MD5.8A2375E5399EE8E0CD6CE7CDB2ED301C] - 02/02/2014 - 18:46:10 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6A473D35.pf
O45 - LFCP:[MD5.A90D65BE9B8A9FB8A22F98781C0CCA0E] - 02/02/2014 - 18:58:54 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf
O45 - LFCP:[MD5.104098F3BED357C5602FF63F46415E00] - 02/02/2014 - 19:03:18 ---A- - C:\Windows\Prefetch\GDFWADMIN.EXE-475152B3.pf
O45 - LFCP:[MD5.79BE81F4053107AFE48994D0812DA0F5] - 02/02/2014 - 19:09:43 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-3197435572-1265789290-3300832553-1003.snp.db
O45 - LFCP:[MD5.C408742B57247DF456B4EB28668AD38A] - 02/02/2014 - 19:11:17 ---A- - C:\Windows\Prefetch\ATBROKER.EXE-2E15A492.pf
O45 - LFCP:[MD5.F9923D50E42011006AE9AEFA239CA79F] - 02/02/2014 - 19:18:37 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-C775D18D.pf
O45 - LFCP:[MD5.8657FDC70BACF78BAC99579871529DE3] - 02/02/2014 - 19:23:38 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-3197435572-1265789290-3300832553-1004.snp.db
O45 - LFCP:[MD5.7B3DFB505090156D76C04084313E49C0] - 02/02/2014 - 19:23:38 ---A- - C:\Windows\Prefetch\SMSS.EXE-E9C28FC6.pf
O45 - LFCP:[MD5.F2E1F82970029302310C5B20EC7E79B7] - 02/02/2014 - 19:23:48 ---A- - C:\Windows\Prefetch\CSRSS.EXE-3FE41F7E.pf
O45 - LFCP:[MD5.71A948693D580ABC8C81C20BBD7F1268] - 02/02/2014 - 19:23:50 ---A- - C:\Windows\Prefetch\WINLOGON.EXE-B020DC41.pf
O45 - LFCP:[MD5.0EC721344FA8B1F92CFFFCBF3BC5DEE7] - 02/02/2014 - 19:24:00 ---A- - C:\Windows\Prefetch\NVVSVC.EXE-0B2AA3F6.pf
O45 - LFCP:[MD5.6E7DC4B745F65B681104F16625C49871] - 02/02/2014 - 19:24:00 ---A- - C:\Windows\Prefetch\NVXDSYNC.EXE-EE6F7768.pf
O45 - LFCP:[MD5.E5EDF13947861172570A5DA61F96593E] - 02/02/2014 - 19:24:13 ---A- - C:\Windows\Prefetch\ITUNESHELPER.EXE-FCF4252E.pf
O45 - LFCP:[MD5.E8E767FC7F4D655DDF2A0894137D918E] - 02/02/2014 - 19:24:22 ---A- - C:\Windows\Prefetch\CSC.EXE-4C85A8F6.pf
O45 - LFCP:[MD5.2A4C394994140AF0BD90D4C1561CDA2F] - 02/02/2014 - 19:24:28 ---A- - C:\Windows\Prefetch\NPLASTPASS.EXE-63BAD8A2.pf
O45 - LFCP:[MD5.B35EEA8DF63F2FF860E050D0B887FA52] - 02/02/2014 - 19:31:22 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf
O45 - LFCP:[MD5.8EA01DBD5AB373D924FF58B30D5C5062] - 02/02/2014 - 19:33:38 ---A- - C:\Windows\Prefetch\COPERNIC.DESKTOPSEARCH.EXE-8B65E94A.pf
O45 - LFCP:[MD5.833F5C4EBAC059E2B59189423ECA39F1] - 02/02/2014 - 19:33:38 ---A- - C:\Windows\Prefetch\UPDATECHECKER.EXE-DF356CBF.pf
O45 - LFCP:[MD5.2F6E644CF2AD2CAE09237BE026066473] - 02/02/2014 - 19:37:28 ---A- - C:\Windows\Prefetch\SDCLT.EXE-E10B972A.pf
O45 - LFCP:[MD5.34BA650F718882B07E6537D7D02C76C6] - 02/02/2014 - 19:38:19 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin
O45 - LFCP:[MD5.11B09F98B48A13E7C5B16EA1BB940FEE] - 02/02/2014 - 19:41:01 ---A- - C:\Windows\Prefetch\LXDNCOMS.EXE-CD69D680.pf
O45 - LFCP:[MD5.0419A59C5E7B40C037050B3D67F6C294] - 02/02/2014 - 19:41:32 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf
O45 - LFCP:[MD5.40E3B7CD8576C8D2216C6EC80BBE6380] - 02/02/2014 - 19:41:42 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf
O45 - LFCP:[MD5.AE435164601CCA9CEB16B5A3521EE3DC] - 02/02/2014 - 19:41:43 ---A- - C:\Windows\Prefetch\DAEMONU.EXE-BB669599.pf
O45 - LFCP:[MD5.B460F2D0304C9A3C1F3FF1C1341EF466] - 02/02/2014 - 19:41:45 ---A- - C:\Windows\Prefetch\SYNCAGENTSRV.EXE-C1B5B6EC.pf
O45 - LFCP:[MD5.E50939A0D0CE4C31FD51590A6AFE0BB2] - 02/02/2014 - 19:41:46 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf
O45 - LFCP:[MD5.32B4E45047700A2928F044B216C0FA5F] - 02/02/2014 - 19:43:42 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf
O45 - LFCP:[MD5.7711533A25A25F766990E9BD1BD95BE4] - 02/02/2014 - 19:45:01 ---A- - C:\Windows\Prefetch\SC.EXE-945D79AE.pf
O45 - LFCP:[MD5.282B25B3BFD7C98B423931619D02663A] - 02/02/2014 - 19:53:39 ---A- - C:\Windows\Prefetch\AVKCKS.EXE-54310CE9.pf
O45 - LFCP:[MD5.DEDB91C2DAFD2E1957E7556D14602B94] - 02/02/2014 - 19:53:49 ---A- - C:\Windows\Prefetch\DWM.EXE-6FFD3DA8.pf
O45 - LFCP:[MD5.D3B055896811BD639C0E853BAE0B087A] - 02/02/2014 - 19:53:49 ---A- - C:\Windows\Prefetch\MBAMGUI.EXE-4FE652ED.pf
O45 - LFCP:[MD5.0C84A4E70D689406363116B5D1D3E3FD] - 02/02/2014 - 19:53:49 ---A- - C:\Windows\Prefetch\USERINIT.EXE-2257A3E7.pf
O45 - LFCP:[MD5.9EC629448A2A771B18896577C6E5FB89] - 02/02/2014 - 19:53:50 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf
O45 - LFCP:[MD5.3B1B6184E68685B14F66F813B397EC54] - 02/02/2014 - 19:53:51 ---A- - C:\Windows\Prefetch\AVKTRAY.EXE-40D1DF6C.pf
O45 - LFCP:[MD5.FCF606105BCC88814305FAE255117DEE] - 02/02/2014 - 19:53:51 ---A- - C:\Windows\Prefetch\GDFIREWALLTRAY.EXE-2A40C19B.pf
O45 - LFCP:[MD5.2C4BED0882CBB830B37F473960C2451F] - 02/02/2014 - 19:54:01 ---A- - C:\Windows\Prefetch\CVTRES.EXE-CDAB491C.pf
O45 - LFCP:[MD5.F11D40070D66DF409A8133E6EB7C130F] - 02/02/2014 - 19:54:05 ---A- - C:\Windows\Prefetch\APPVLP.EXE-766C6784.pf
O45 - LFCP:[MD5.4D290E3D5E9C2C296933F5FDE91A39FF] - 02/02/2014 - 19:54:12 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf
O45 - LFCP:[MD5.2D2BE9D10EDB08AC5423C878F653C24E] - 02/02/2014 - 19:54:50 ---A- - C:\Windows\Prefetch\INTEGRATEDOFFICE.EXE-410164CA.pf
O45 - LFCP:[MD5.4FE040FA9B8B1D25DDA780B1A7D411B1] - 02/02/2014 - 19:55:46 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-DE9673F9.pf
O45 - LFCP:[MD5.E929A54FB12758097590E151DC2110D7] - 02/02/2014 - 20:49:37 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx
O45 - LFCP:[MD5.07816D1000BF21DFA65DAB601827989C] - 02/02/2014 - 20:49:38 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf
O45 - LFCP:[MD5.78E2CB76189BBF182959E9E0A3A5EC13] - 02/02/2014 - 20:49:54 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-E2C2633A.pf
O45 - LFCP:[MD5.554BCB64E75DAB0132D59978722C9C76] - 02/02/2014 - 20:50:02 ---A- - C:\Windows\Prefetch\MSOSYNC.EXE-A5856D08.pf
O45 - LFCP:[MD5.3132624971FD211BC82A093C590561A0] - 02/02/2014 - 20:50:38 ---A- - C:\Windows\Prefetch\AgCx_SC1.db
O45 - LFCP:[MD5.EEE1CFFCC3ACE272151DEEDE0FE69AC0] - 02/02/2014 - 20:54:38 ---A- - C:\Windows\Prefetch\AVK.EXE-1C9FE8BC.pf
O45 - LFCP:[MD5.050093FEF7CAF373CB469252FC8F14DA] - 02/02/2014 - 21:07:01 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-FE771DDA.pf
O45 - LFCP:[MD5.BB93100664D1F22512EB1D66B4805FE6] - 02/02/2014 - 21:11:13 ---A- - C:\Windows\Prefetch\ONENOTE.EXE-5A501874.pf
O45 - LFCP:[MD5.01C461952D09609F3993AFEB10D37947] - 02/02/2014 - 21:11:26 ---A- - C:\Windows\Prefetch\ONENOTEM.EXE-A078D9D5.pf
O45 - LFCP:[MD5.90CDA626422B4C3E1378EF0293214CEC] - 02/02/2014 - 21:11:29 ---A- - C:\Windows\Prefetch\OSPPSVC.EXE-E53D3CC0.pf
O45 - LFCP:[MD5.98A91E48F6B3E350651EFFA185969A40] - 02/02/2014 - 21:17:27 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf
O45 - LFCP:[MD5.BE394894C134A6395B6AB58786A01191] - 02/02/2014 - 21:19:39 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf
O45 - LFCP:[MD5.A8AB7FA7D3056FD3C20B1A329B151ED7] - 02/02/2014 - 21:20:49 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf
O45 - LFCP:[MD5.579FC0DBCD43661EB66A022D6BE91DDC] - 02/02/2014 - 21:21:20 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf
O45 - LFCP:[MD5.C512CB57C2B5C434AAA0E518E31473C6] - 02/02/2014 - 21:21:28 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf
O45 - LFCP:[MD5.B10E8F2E32EB16C6DB59533EAFAA5B31] - 02/02/2014 - 21:22:32 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-A8DE6D5B.pf
O45 - LFCP:[MD5.1A750CA519F0E42B1962E039ED90601B] - 02/02/2014 - 21:22:41 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf
O45 - LFCP:[MD5.89CC730BF1F6119DEA5A3EF3422F9F58] - 02/02/2014 - 21:22:42 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf
O45 - LFCP:[MD5.8F5254698E6B4F79B659A1FE856B5B59] - 02/02/2014 - 21:22:53 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf
O45 - LFCP:[MD5.43C23882DD94B295F8D42754424C8CEE] - 02/02/2014 - 21:23:35 ---A- - C:\Windows\Prefetch\NVTRAY.EXE-DB83881B.pf
O45 - LFCP:[MD5.D42F0F0F75238F396EEF83404BE951D1] - 02/02/2014 - 21:23:38 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf
O45 - LFCP:[MD5.A040963D0C51B8DDDE8A842866A12171] - 02/02/2014 - 21:23:40 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-97C4F385.pf
O45 - LFCP:[MD5.7D66768852FC19E8EB82FCB36C319088] - 02/02/2014 - 21:23:43 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf
O45 - LFCP:[MD5.49C3CB80147EABFE6634082F5BF1DB6A] - 02/02/2014 - 21:23:51 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.34BE64744D150A7225341232C0893FB6] - 02/02/2014 - 21:23:51 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.1C630EF1A495635E0063DDA6A6E3AC47] - 02/02/2014 - 21:23:51 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.8EC6D7B8B6E7ED891D4C44EC3BA16DEB] - 02/02/2014 - 21:23:51 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.96F97800EDC4F0E173804FE0F223398E] - 02/02/2014 - 21:24:36 ---A- - C:\Windows\Prefetch\CMD.EXE-4A81B364.pf
O45 - LFCP:[MD5.5848A15C23940961F41126FD5D974032] - 02/02/2014 - 21:24:36 ---A- - C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf
O45 - LFCP:[MD5.60EAAEEF423D8B4333EB4A00B2E2654E] - 02/02/2014 - 21:24:49 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-5CA45734.pf
O45 - LFCP:[MD5.A60B5417096B692EB55ED87909CAD716] - 02/02/2014 - 21:24:52 ---A- - C:\Windows\Prefetch\CHROME.EXE-5A1054AF.pf
O45 - LFCP:[MD5.FD9850033A4696305E9AEC245EEFD43B] - 04/01/2014 - 11:20:52 ---A- - C:\Windows\Prefetch\AgAppLaunch.db
O45 - LFCP:[MD5.AA5078F40534EE289EC56EEFCFF407AE] - 14/01/2014 - 21:06:02 ---A- - C:\Windows\Prefetch\AgCx_SC3_2ABEB3DD.db
O45 - LFCP:[MD5.DC7D4B0C08DAF9D8F0DD4AA0DC188C4F] - 16/01/2014 - 19:00:56 ---A- - C:\Windows\Prefetch\AgCx_S2_S-1-5-21-3197435572-1265789290-3300832553-1003.snp.db
O45 - LFCP:[MD5.AA3C3FA8B8D812BD600DF2BBFFE05BF0] - 19/01/2014 - 11:07:59 ---A- - C:\Windows\Prefetch\AgCx_S2_S-1-5-21-3197435572-1265789290-3300832553-1004.snp.db
O45 - LFCP:[MD5.3401E549BDEBED63D557C29DD8A9CE6D] - 19/01/2014 - 18:23:14 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3197435572-1265789290-3300832553-1003.db
O45 - LFCP:[MD5.BF41BFF8898CC564E8700AA581E97204] - 19/01/2014 - 18:23:14 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3197435572-1265789290-3300832553-1003.db
O45 - LFCP:[MD5.1CDD6D5C8DB9DA5269D275ED5E0BF74C] - 19/01/2014 - 18:27:36 ---A- - C:\Windows\Prefetch\AgCx_S3_S-1-5-21-3197435572-1265789290-3300832553-1000.snp.db
O45 - LFCP:[MD5.0EB7D38A30510E713224738445F63893] - 25/01/2014 - 12:44:23 ---A- - C:\Windows\Prefetch\Layout.ini
O45 - LFCP:[MD5.F1B22D9CAB7000313E3354D7A72E7B5B] - 25/01/2014 - 19:12:57 ---A- - C:\Windows\Prefetch\TASKLIST.EXE-C6CEE193.pf
O45 - LFCP:[MD5.91AB0D30880DC75B87F992F06E7E53D8] - 25/01/2014 - 19:13:05 ---A- - C:\Windows\Prefetch\PRL_REPORT.EXE-FE246756.pf
O45 - LFCP:[MD5.D4425C4CD392865342860E9200E91CCC] - 25/01/2014 - 20:58:02 ---A- - C:\Windows\Prefetch\GOOGLEUPDATEBROKER.EXE-BEEB3450.pf
O45 - LFCP:[MD5.092BE68D995ACD97575224AA6A02FDBC] - 25/01/2014 - 22:50:50 ---A- - C:\Windows\Prefetch\SETUP_WM.EXE-674F654A.pf
O45 - LFCP:[MD5.DF2B30165F51B1C70E1D20CD339FE700] - 25/01/2014 - 23:15:19 ---A- - C:\Windows\Prefetch\GOOGLEDRIVESYNC.EXE-78FD7429.pf
O45 - LFCP:[MD5.6589CA7249C0B2C3105A305375DF87AE] - 25/01/2014 - 23:43:52 ---A- - C:\Windows\Prefetch\MBAM-CONSUMER.TMP-C795BF96.pf
O45 - LFCP:[MD5.5F5A6A1905E08B3E1F37DA1F5D9D0169] - 25/01/2014 - 23:43:54 ---A- - C:\Windows\Prefetch\MBAM-CONSUMER.EXE-1415AE18.pf
O45 - LFCP:[MD5.E548C06B49B03AA7021C7CFE5FB0915E] - 25/01/2014 - 23:43:54 ---A- - C:\Windows\Prefetch\MBAM-CONSUMER.TMP-1D80E10D.pf
O45 - LFCP:[MD5.31709A2B7DE91BC82B943D4E17F80837] - 25/01/2014 - 23:45:38 ---A- - C:\Windows\Prefetch\UNINS000.EXE-A34E4C84.pf
O45 - LFCP:[MD5.D294FEC8F9BE20B5646A4F63D7FC73C6] - 25/01/2014 - 23:45:43 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-A9B349B0.pf
O45 - LFCP:[MD5.28093E5542FE8013B51A9559DEB16549] - 25/01/2014 - 23:52:20 ---A- - C:\Windows\Prefetch\MBAM-SETUP-1.75.0.1300 (1).TM-9BFE44B0.pf
O45 - LFCP:[MD5.1090B2B15A37AD4CE1F7FFA274C394F0] - 25/01/2014 - 23:53:14 ---A- - C:\Windows\Prefetch\MBAM-SETUP-1.75.0.1300 (1).EX-58C6B1FB.pf
O45 - LFCP:[MD5.2023C7306189181941F00A8035F10BAB] - 25/01/2014 - 23:53:14 ---A- - C:\Windows\Prefetch\MBAM-SETUP-1.75.0.1300 (1).TM-48C21872.pf
O45 - LFCP:[MD5.18600ABB18FBD262C7329F26AB364D1F] - 26/01/2014 - 00:05:45 ---A- - C:\Windows\Prefetch\GOOGLETALKPLUGIN.EXE-A25BBCCE.pf
O45 - LFCP:[MD5.BE7BBB85F2937B4CDFE707EEDC34633A] - 26/01/2014 - 00:15:39 ---A- - C:\Windows\Prefetch\FLASHUTIL32_11_5_502_135_ACTI-A140CDA9.pf
O45 - LFCP:[MD5.DADE62BAE1983B94D8DEAD6FFE5D78B5] - 26/01/2014 - 00:17:23 ---A- - C:\Windows\Prefetch\CHROMESETUP.EXE-6F0A7258.pf
O45 - LFCP:[MD5.78853E7931BD5E4016A0F9F4E421FA26] - 26/01/2014 - 00:17:33 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-91503B2E.pf
O45 - LFCP:[MD5.23A5D8CA91030E0DD5D1A8612311382A] - 26/01/2014 - 00:17:36 ---A- - C:\Windows\Prefetch\GOOGLEUPDATESETUP.EXE-DB6E9E93.pf
O45 - LFCP:[MD5.A1C176A11AE68CAA603585EC95446832] - 26/01/2014 - 00:17:37 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-A000CC90.pf
O45 - LFCP:[MD5.7D341D780A65B883DD7E3C1A4C9206B5] - 26/01/2014 - 00:17:37 ---A- - C:\Windows\Prefetch\SETUP.EXE-8EA1E9C7.pf
O45 - LFCP:[MD5.696481F878596449F7BA11E26F01149F] - 26/01/2014 - 00:17:41 ---A- - C:\Windows\Prefetch\32.0.1700.76_CHROME_INSTALLER-3AAA4E7E.pf
O45 - LFCP:[MD5.C4C9467E908C7683874FFFE020A6794E] - 26/01/2014 - 00:28:00 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-BF540795.pf
O45 - LFCP:[MD5.FC45BBB9F5824ADAC4FA4441B2D723BB] - 26/01/2014 - 02:05:01 ---A- - C:\Windows\Prefetch\APPVDLLSURROGATE32.EXE-B93509F1.pf
O45 - LFCP:[MD5.284107C4E3975704A1FF8361799371F6] - 26/01/2014 - 10:27:55 ---A- - C:\Windows\Prefetch\INSTALL_FLASHPLAYER12X32AXAU_-073AEAC8.pf
O45 - LFCP:[MD5.29C383178C60BED0498ADE35278AF60D] - 26/01/2014 - 10:28:05 ---A- - C:\Windows\Prefetch\INSTALL_FLASHPLAYER12X32AXAU_-376B4495.pf
O45 - LFCP:[MD5.8AE7051D0D3DFA233200F39BA33FB7A6] - 26/01/2014 - 10:28:48 ---A- - C:\Windows\Prefetch\GTBCHECK.EXE-0EAD2C58.pf
O45 - LFCP:[MD5.FECB4AFB7C0C9B5897D71F17B9DF1AB9] - 26/01/2014 - 10:28:50 ---A- - C:\Windows\Prefetch\GCCHECK.EXE-AD48D071.pf
O45 - LFCP:[MD5.E2DC855CAC75E1F7A71D5D65609E3186] - 26/01/2014 - 10:29:16 ---A- - C:\Windows\Prefetch\INSTALL_FLASH_PLAYER_AX.EXE-00F91369.pf
O45 - LFCP:[MD5.58DBCD8602CFBE196596BA9515036775] - 26/01/2014 - 10:29:26 ---A- - C:\Windows\Prefetch\SECURITYSCAN_RELEASE.EXE-BCBCA682.pf
O45 - LFCP:[MD5.CFD5017FDFB09FAD6A8041ADC6290C38] - 26/01/2014 - 10:29:36 ---A- - C:\Windows\Prefetch\SSSCHEDULER.EXE-97012847.pf
O45 - LFCP:[MD5.76345E4A6680B3FBE8524A8A86CB9D07] - 26/01/2014 - 13:38:14 ---A- - C:\Windows\Prefetch\MCUICNT.EXE-85E445A5.pf
O45 - LFCP:[MD5.41B02874866C845F4205AA35C576C542] - 26/01/2014 - 13:39:39 ---A- - C:\Windows\Prefetch\MCCHSVC.EXE-7CB36D81.pf
O45 - LFCP:[MD5.210438523789B94E554410023799406F] - 26/01/2014 - 13:40:34 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-BAD6BD53.pf
O45 - LFCP:[MD5.C919C74EC6C8B8CFEF3634290FE4AFB8] - 26/01/2014 - 23:05:44 ---A- - C:\Windows\Prefetch\AgCx_S4_S-1-5-21-3197435572-1265789290-3300832553-1004.snp.db
O45 - LFCP:[MD5.B1CA8B34347CB96FEFDA3D093AC4226C] - 26/01/2014 - 23:09:07 ---A- - C:\Windows\Prefetch\AgCx_S3_S-1-5-21-3197435572-1265789290-3300832553-1003.snp.db
O45 - LFCP:[MD5.0C89DD8781D1310F591010CB2C879248] - 27/01/2014 - 00:07:43 ---A- - C:\Windows\Prefetch\SETUP.EXE-160A0C70.pf
O45 - LFCP:[MD5.7320F42B40683A9E95848810F4A3E006] - 27/01/2014 - 13:24:13 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3197435572-1265789290-3300832553-1004.db
O45 - LFCP:[MD5.D4DC50BA669DFC0D1E49D5AA3B711875] - 27/01/2014 - 13:24:13 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3197435572-1265789290-3300832553-1004.db
O45 - LFCP:[MD5.DE5B2CD604398C74F87781B4CC143DE9] - 27/01/2014 - 23:10:50 ---A- - C:\Windows\Prefetch\AgCx_S4_S-1-5-21-3197435572-1265789290-3300832553-1003.snp.db
O45 - LFCP:[MD5.F5F0077C40AE89E1193CCF3F3D0654E5] - 27/01/2014 - 23:12:19 ---A- - C:\Windows\Prefetch\AgCx_SC3_50ADD2FD.db
O45 - LFCP:[MD5.18111D25B0020933E7F083FA52E314C2] - 27/01/2014 - 23:26:32 ---A- - C:\Windows\Prefetch\AgCx_SC3_1E3FDEFF.db
O45 - LFCP:[MD5.A3E99FD941833A01A2E0FF48A2A2801F] - 28/01/2014 - 07:43:21 ---A- - C:\Windows\Prefetch\GOOGLEUPDATEONDEMAND.EXE-30FDA615.pf
O45 - LFCP:[MD5.2047F5BED98943EBACF9748D14221487] - 28/01/2014 - 12:26:18 ---A- - C:\Windows\Prefetch\HOSTS_ANTI-ADWARE_MAIN.EXE-234C0160.pf
O45 - LFCP:[MD5.00B2EC48D1B1DD7B1035A424C75835C6] - 28/01/2014 - 13:22:04 ---A- - C:\Windows\Prefetch\AgCx_S3_S-1-5-21-3197435572-1265789290-3300832553-1004.snp.db
O45 - LFCP:[MD5.8CD5A2B97EA16AAA66A78B6A752F11EF] - 28/01/2014 - 21:22:11 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-7FAA2E4C.pf
O45 - LFCP:[MD5.9DB682E42EF1BD698F3D0FB9CB5B1EE7] - 28/01/2014 - 23:56:20 ---A- - C:\Windows\Prefetch\AgCx_SC4.db
~ Prefetcher: 164 Scanned in 00mn 06s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
~ LSA: 8 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 13 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ TDSD: 3 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPath"=1
~ MWPS: 18 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.FBCE2F43185104AE8BF4D32571B19203] - 14/07/2009 - 00:51:21 ---A- . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\Drivers\1394bus.sys [54784]
O58 - SDL:[MD5.FBCE2F43185104AE8BF4D32571B19203] - 11/01/2014 - 19:13:19 ---A- . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\Drivers\1394bus.sys.bak [54784]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 13/07/2009 - 22:40:41 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:[MD5.635181E0E9BBF16871BF5380D71DB02D] - 14/07/2009 - 02:26:21 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [249408]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 13/07/2009 - 22:40:44 ---A- . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 13/07/2009 - 22:40:40 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 13/07/2009 - 22:40:23 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 13/07/2009 - 22:40:31 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 13/07/2009 - 22:40:35 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 13/07/2009 - 22:40:39 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 13/07/2009 - 22:40:27 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 13/07/2009 - 22:40:11 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 13/07/2009 - 22:40:15 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 13/07/2009 - 22:40:17 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 13/07/2009 - 22:40:19 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 13/07/2009 - 22:40:13 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
O58 - SDL:[MD5.91B6DFBA0FD7D0F4836FB711D1B5D81C] - 11/01/2014 - 19:10:05 ---A- . (...) -- C:\Windows\System32\TrueSight.sys [26624]
O58 - SDL:[MD5.1E882889A4314D6DF5DED4F6EC994E72] - 26/11/2013 - 11:10:21 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [2349056]
~ Drivers: 18 Scanned in 00mn 00s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/02/2014 - 21:26:44 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\Cache.db [12283904]
O61 - LFC: 01/02/2014 - 21:26:45 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\02\02\00\000000003C2A008C-0000BEFFE9885022-0000000000000002.m4a [19404407]
O61 - LFC: 01/02/2014 - 21:26:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\03\10\03\000000003C2A008C-0000640B8A6CA3A3-0000000000000002.m4a [8088090]
O61 - LFC: 01/02/2014 - 21:26:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\04\11\12\000000003C2A008C-0000BEFE935D3CB4-0000000000000002.m4a [8717122]
O61 - LFC: 01/02/2014 - 21:26:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\05\03\02\000000003C2A008C-0000BF007E854235-0000000000000002.m4a [10354550]
O61 - LFC: 01/02/2014 - 21:26:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\05\03\08\000000003C2A008C-0000BEFE8C5C9835-0000000000000002.m4a [10291514]
O61 - LFC: 01/02/2014 - 21:26:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\05\13\15\000000003C2A008C-0000BEFE936DEFD5-0000000000000002.m4a [7589596]
O61 - LFC: 01/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\10\07\10\000000003C2A008C-0000BEFE936DFA7A-0000000000000002.m4a [9371338]
O61 - LFC: 01/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\10\09\14\000000003C2A008C-0000BEFE8CC99E9A-0000000000000002.m4a [10250254]
O61 - LFC: 01/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\13\04\07\000000003C2A008C-0000BEFFC265C74D-0000000000000002.m4a [7382773]
O61 - LFC: 01/02/2014 - 21:26:52 ---A- . (...) -- C:\Users\Lepage\AppData\Local\ElevatedDiagnostics\3493975886\2014020120.000\DeviceCenterDiagnostic.0.debugreport.xml [3084]
O61 - LFC: 01/02/2014 - 21:26:52 ---A- . (...) -- C:\Users\Lepage\AppData\Local\ElevatedDiagnostics\3493975886\2014020120.000\DeviceDiagnostic.0.debugreport.xml [1346]
O61 - LFC: 01/02/2014 - 21:26:52 ---A- . (...) -- C:\Users\Lepage\AppData\Local\ElevatedDiagnostics\3493975886\2014020120.000\NetworkDiagnostics.0.debugreport.xml [1319]
O61 - LFC: 01/02/2014 - 21:26:52 ---A- . (...) -- C:\Users\Lepage\AppData\Local\ElevatedDiagnostics\3493975886\2014020120.000\PrinterDiagnostic.0.debugreport.xml [1314]
O61 - LFC: 01/02/2014 - 21:26:52 ---A- . (...) -- C:\Users\Lepage\AppData\Local\ElevatedDiagnostics\3493975886\2014020120.000\ResultReport.xml [55605]
O61 - LFC: 01/02/2014 - 21:26:52 ---A- . (...) -- C:\Users\Lepage\AppData\Local\ElevatedDiagnostics\3493975886\2014020120.000\results.xml [220]
O61 - LFC: 01/02/2014 - 21:26:52 ---A- . (...) -- C:\Users\Lepage\AppData\Local\ElevatedDiagnostics\3493975886\2014020120.000\results.xsl [49097]
O61 - LFC: 01/02/2014 - 21:26:52 ---A- . (...) -- C:\Users\Lepage\AppData\Local\ElevatedDiagnostics\3493975886\latest.cab [14513]
O61 - LFC: 01/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\AppLog_2014-01-31.txt [68765]
O61 - LFC: 01/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\AppLog_2014-02-01.txt [25732]
O61 - LFC: 01/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\enclipper_2014-02-01.txt [277]
O61 - LFC: 01/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000051.ldb [826]
O61 - LFC: 01/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db [7168]
O61 - LFC: 01/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db-journal [5672]
O61 - LFC: 01/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local App Settings\kidknbkmfcapkiepmhchinffchkjglog\CURRENT [16]
O61 - LFC: 01/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local App Settings\kidknbkmfcapkiepmhchinffchkjglog\LOCK [0]
O61 - LFC: 01/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local App Settings\kidknbkmfcapkiepmhchinffchkjglog\LOG [47]
O61 - LFC: 01/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local App Settings\kidknbkmfcapkiepmhchinffchkjglog\MANIFEST-000002 [50]
O61 - LFC: 01/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dub119.mail.live.com_0.localstorage [3072]
O61 - LFC: 01/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dub119.mail.live.com_0.localstorage-journal [3608]
O61 - LFC: 01/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_office.microsoft.com_0.localstorage [58368]
O61 - LFC: 01/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_office.microsoft.com_0.localstorage-journal [16384]
O61 - LFC: 01/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.evernote.com_0.localstorage [3072]
O61 - LFC: 01/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.evernote.com_0.localstorage-journal [3608]
O61 - LFC: 01/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.fr_0.localstorage [3072]
O61 - LFC: 01/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.fr_0.localstorage-journal [3608]
O61 - LFC: 01/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.wikipedia.org_0.localstorage [885760]
O61 - LFC: 01/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.wikipedia.org_0.localstorage-journal [16384]
O61 - LFC: 01/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_windows.microsoft.com_0.localstorage [3072]
O61 - LFC: 01/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_windows.microsoft.com_0.localstorage-journal [3608]
O61 - LFC: 01/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ludwig-drums.com_0.localstorage [3072]
O61 - LFC: 01/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ludwig-drums.com_0.localstorage-journal [3608]
O61 - LFC: 01/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.thomann.de_0.localstorage [3072]
O61 - LFC: 01/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.thomann.de_0.localstorage-journal [512]
O61 - LFC: 01/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.youtube.com_0.localstorage [6144]
O61 - LFC: 01/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.youtube.com_0.localstorage-journal [6704]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Cache\Cache\Decoding\CacheContent.idx [127]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live 9.1\Database\files.db [3292160]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live 9.1\Preferences\AsioLog.txt [715]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live 9.1\Preferences\Indexer.txt [20285]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live 9.1\Preferences\Library.cfg [755]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live 9.1\Preferences\Log.txt [112627]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live 9.1\Preferences\Preferences.cfg [20505]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live 9.1\Preferences\WebConnector.txt [5218] =>PUP.WebConnect
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live 9.1\Unlock\Unlock.cfg [703]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live Reports\Temp\Live Run_2014_02_01__14_09_49_Live 9.1_2013-10-29_12ff1bf872\Preferences.cfg [18082]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live Reports\Temp\Live Run_2014_02_01__14_09_49_Live 9.1_2013-10-29_12ff1bf872\events.txt [331312]
O61 - LFC: 01/02/2014 - 21:28:22 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Ableton\Live Reports\Temp\Live Run_2014_02_01__14_09_49_Live 9.1_2013-10-29_12ff1bf872\sampleinfo.txt [0]
O61 - LFC: 01/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Apple Computer\iTunes\Cookies\Cookies.binarycookies [1479]
O61 - LFC: 01/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\filecache.dbx-mj49E9AD9EB [125] =>.Dropbox
O61 - LFC: 01/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\s52ed5f40 [0] =>.Dropbox
O61 - LFC: 01/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\FastStone\FSIV\FSSettings.db [6064]
O61 - LFC: 01/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\FastStone\FSIV\HisFolderList.db [2823]
O61 - LFC: 01/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-01 (21-36-23).txt [65832]
O61 - LFC: 01/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\HTML Help\hh.dat [8678]
O61 - LFC: 01/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\Contacts Access.accdb.LNK [1050]
O61 - LFC: 01/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\Mes Comptes Scarbo Isaac 081213.docx.LNK [1125]
O61 - LFC: 01/02/2014 - 21:28:26 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Word\Mes%20Comptes%20Scarbo%20Isaac%20081213303512603908525457\Mes%20Comptes%20Scarbo%20Isaac%20081213.docx.lnk [846]
O61 - LFC: 01/02/2014 - 21:28:26 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\dns.ldb [192]
O61 - LFC: 01/02/2014 - 21:28:26 R---- . (.Lepage.) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Word\Mes%20Comptes%20Scarbo%20Isaac%20081213303512603908525457\Mes%20Comptes%20Scarbo%20Isaac%20081213((Autosaved-303512691252811376)).asd [250368]
O61 - LFC: 01/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\f1\f1f6ef47277cfa2e.dat [1554]
O61 - LFC: 01/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\ecache\ecache0 [385]
O61 - LFC: 01/02/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\Database.kdb [2124]
O61 - LFC: 01/02/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\Documents\Contacts Access.accdb [1814528]
O61 - LFC: 01/02/2014 - 21:29:25 ---A- . (.Skype.) -- C:\Users\Lepage\Downloads\SkypeWebPlugin-2.2.12059.16911.msi [4538368]
O61 - LFC: 01/02/2014 - 21:29:45 ---A- . (...) -- C:\Users\Lepage\Music\iTunes\Album Artwork\Cache\83689E22F8C01920\05\10\01\83689E22F8C01920-CCC617BD725261A5.itc2 [438785]
O61 - LFC: 01/02/2014 - 21:29:50 ---A- . (...) -- C:\Users\Lepage\Music\iTunes\Album Artwork\Download\83689E22F8C01920\05\10\01\83689E22F8C01920-CCC617BD725261A5.itc2 [897384]
O61 - LFC: 02/02/2014 - 21:26:44 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\01\05\00\000000003C2A008C-0000640B74AE7051-0000000000000001.m4p [6690413]
O61 - LFC: 02/02/2014 - 21:26:45 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\01\06\08\000000003C2A008C-0000BEFFE6ACE861-0000000000000002.m4a [8641492]
O61 - LFC: 02/02/2014 - 21:26:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\05\09\11\000000003C2A008C-0000BEFEB10CFB95-0000000000000002.m4a [6108583]
O61 - LFC: 02/02/2014 - 21:26:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\06\04\07\000000003C2A008C-0000BEFEC6EB8746-0000000000000002.m4a [13717316]
O61 - LFC: 02/02/2014 - 21:26:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\07\06\09\000000003C2A008C-0000BEFEC6EB7967-0000000000000002.m4a [12146312]
O61 - LFC: 02/02/2014 - 21:26:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\07\10\11\000000003C2A008C-0000BF004B7B8BA7-0000000000000002.m4a [9572528]
O61 - LFC: 02/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\09\06\12\000000003C2A008C-0000BF0034C43C69-0000000000000002.m4a [9980100]
O61 - LFC: 02/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\10\07\08\000000003C2A008C-0000BF002093087A-0000000000000002.m4a [10694858]
O61 - LFC: 02/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\10\15\13\000000003C2A008C-0000BEFFBC634DFA-0000000000000002.m4a [6959339]
O61 - LFC: 02/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\12\07\11\000000003C2A008C-0000BEFF2932EB7C-0000000000000002.m4a [13558377]
O61 - LFC: 02/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\13\02\00\000000003C2A008C-0000BEFEBE4B602D-0000000000000002.m4a [17005059]
O61 - LFC: 02/02/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\13\11\11\000000003C2A008C-0000BF004B7ECBBD-0000000000000002.m4a [18909772]
O61 - LFC: 02/02/2014 - 21:26:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\14\13\04\000000003C2A008C-0000BEFEC6EB84DE-0000000000000002.m4a [11481924]
O61 - LFC: 02/02/2014 - 21:26:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\PlayCacheInfo.xml [13651]
O61 - LFC: 02/02/2014 - 21:26:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\iTunesPrefs.xml [1726950]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Index\MainChunk\ChunkFD.dat [2224]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Index\MainChunk\ChunkI.dat [0]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Index\MainChunk\ChunkSCSF.dat [264]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Index\MainChunk\ChunkV.dat [8]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Index\MainChunk\DocumentsDI.dat [12504]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Index\MainChunk\DocumentsI.dat [8]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Index\MainChunk\KeywordsI.dat [0]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Queue\MainChunk\IndexingQueueEl.dat [48]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Queue\MainChunk\IndexingQueueGr.dat [42]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Queue\MainChunk\IndexingQueueIf.dat [0]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Index\Queue\MainChunk\IndexingQueueV.dat [8]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Logs\SPLog.0.xml [1231338]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\config.xml [13238]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\config.xml.bak [13238]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\savedSearches.xml [26007]
O61 - LFC: 02/02/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\savedSearches.xml.bak [26007]
O61 - LFC: 02/02/2014 - 21:26:54 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\AutoUpdate\CurrentReleaseNotes.html [8765]
O61 - LFC: 02/02/2014 - 21:26:54 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\AutoUpdate\current.xml [531]
O61 - LFC: 02/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Databases\lepagem174.exb [1048576]
O61 - LFC: 02/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Databases\lepagem174.exb.announcements [285072]
O61 - LFC: 02/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Databases\lepagem174.exb.cardview.snippets [44640]
O61 - LFC: 02/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Databases\lepagem174.exb.related [83944]
O61 - LFC: 02/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Databases\lepagem174.exb.snippets [90368]
O61 - LFC: 02/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\AppLog_2014-02-02.txt [15486]
O61 - LFC: 02/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\enclipper_2014-02-02.txt [1251]
O61 - LFC: 02/02/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\FastStone\FSC\fsc.db [6280]
O61 - LFC: 02/02/2014 - 21:27:33 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Archived History [57344]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Archived History-journal [16384]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Bookmarks [20334]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak [20334]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Cookies [602112]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal [16384]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Cookies [6144]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Cookies-journal [4640]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000055.ldb [436]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000072.ldb [231]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\CURRENT [16]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG [0]
O61 - LFC: 02/02/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_hdokiejnpimakedhajhdlcegeplioahd_0\1 [98304]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG.old [145]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\MANIFEST-000076 [707]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension State\000084.ldb [2246]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension State\000086.ldb [32550]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension State\000089.ldb [17294]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension State\CURRENT [16]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG [0]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old [266]
O61 - LFC: 02/02/2014 - 21:27:35 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000088 [462] =>.Google Inc
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\background.html [61]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\background.js [1106]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\browserSpecificScript.js [2097]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\c2c_128x128.png [4962]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\c2c_16x16.png [604]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\c2c_48x48.png [1826]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\c2c_options_handler_script.js [1669]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\c2c_options_menu.css [693]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\c2c_options_menu.html [756]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\call_icon.png [1271]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\call_skype_logo.png [705]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\contentscript.js [17348]
O61 - LFC: 02/02/2014 - 21:27:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\fpnr.js [3044]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\jquery-2.0.3.min.js [83613]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\localization.js [1727]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\manifest.json [1346]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\menu_handler.js [18752]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\mutation-summary.js [55636]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\number_highlighting.css [6290]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\number_highlighting_builder.js [16981]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\number_highlighting_chrome.css [341]
O61 - LFC: 02/02/2014 - 21:27:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\pnr.js [1867]
O61 - LFC: 02/02/2014 - 21:27:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Favicons [622592]
O61 - LFC: 02/02/2014 - 21:27:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal [16384]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\History [1150976]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache [446391]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\History-journal [16384]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\000029.bak [1386]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\000029.ldb [1386]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\000031.bak [1284]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\000031.ldb [1284]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\000034.bak [1171]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\000034.ldb [1171]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\CURRENT [16]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\LOG [145]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\LOG.old [265]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.google.fr_0.indexeddb.leveldb\MANIFEST-000036 [203]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Last Session [26669]
O61 - LFC: 02/02/2014 - 21:27:56 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Last Tabs [24823]
O61 - LFC: 02/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ajakpekbmnkgnjbpajgkdhimcbeoocam_0.localstorage [95232]
O61 - LFC: 02/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ajakpekbmnkgnjbpajgkdhimcbeoocam_0.localstorage-journal [16384]
O61 - LFC: 02/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bhmmomiinigofkjcapegjjndpbikblnp_0.localstorage [76800]
O61 - LFC: 02/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bhmmomiinigofkjcapegjjndpbikblnp_0.localstorage-journal [16384]
O61 - LFC: 02/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hdokiejnpimakedhajhdlcegeplioahd_0.localstorage [70656]
O61 - LFC: 02/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hdokiejnpimakedhajhdlcegeplioahd_0.localstorage-journal [12896]
O61 - LFC: 02/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lifbcibllhkdhoafpjfnlhfpfgnpldfl_0.localstorage [3072]
O61 - LFC: 02/02/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lifbcibllhkdhoafpjfnlhfpfgnpldfl_0.localstorage-journal [3608]
O61 - LFC: 02/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage [3072]
O61 - LFC: 02/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal [3608]
O61 - LFC: 02/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_productforums.google.com_0.localstorage [4096]
O61 - LFC: 02/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_productforums.google.com_0.localstorage-journal [4640]
O61 - LFC: 02/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage [3072]
O61 - LFC: 02/02/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage-journal [3608]
O61 - LFC: 02/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_filehippo.com_0.localstorage [3072]
O61 - LFC: 02/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_filehippo.com_0.localstorage-journal [3608]
O61 - LFC: 02/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ib.adnxs.com_0.localstorage [3072]
O61 - LFC: 02/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ib.adnxs.com_0.localstorage-journal [3608]
O61 - LFC: 02/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_labs.adobe.com_0.localstorage [3072]
O61 - LFC: 02/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_labs.adobe.com_0.localstorage-journal [3608]
O61 - LFC: 02/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sync.graph.bluecava.com_0.localstorage [3072]
O61 - LFC: 02/02/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sync.graph.bluecava.com_0.localstorage-journal [3608]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Login Data [45056]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Login Data-journal [12848]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor [46080]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor-journal [16384]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Origin Bound Certs [29696]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Origin Bound Certs-journal [3608]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JCJ8PLVJ\macromedia.com\support\flashplayer\sys\settings.sol [709]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Preferences [247181]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\QuotaManager [19456]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\QuotaManager-journal [8768]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000123.ldb [53708]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000125.ldb [256]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT [16]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG [0]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old [784]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000124 [233] =>.Google Inc
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Shortcuts [12288]
O61 - LFC: 02/02/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal [12824]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Sync Data\SyncData.sqlite3 [1806336]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Sync Data\SyncData.sqlite3-journal [16384]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Top Sites [53248]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal [16384]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity [3828]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Visited Links [131072]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Web Data [247808]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal [10792]
O61 - LFC: 02/02/2014 - 21:28:01 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Local State [60474]
O61 - LFC: 02/02/2014 - 21:28:03 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [5502848]
O61 - LFC: 02/02/2014 - 21:28:03 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Prefix Set [1383836]
O61 - LFC: 02/02/2014 - 21:28:03 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom_new [0]
O61 - LFC: 02/02/2014 - 21:28:03 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies [6144]
O61 - LFC: 02/02/2014 - 21:28:03 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies-journal [2576]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Csd Whitelist [135496]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Csd Whitelist_new [0]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Download [1101696]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Download Whitelist [19504]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Download Whitelist_new [0]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Download_new [0]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Extension Blacklist [7628]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing Extension Blacklist_new [0]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing IP Blacklist [500]
O61 - LFC: 02/02/2014 - 21:28:04 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Safe Browsing IP Blacklist_new [0]
O61 - LFC: 02/02/2014 - 21:28:04 --HA- . (...) -- C:\Users\Lepage\AppData\Local\IconCache.db [1144607]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Temp\8247e224-3e56-4d8f-88c1-4882094675fa.dmp [382825]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Temp\AUCHECK_PARSER.txt [366]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Temp\CVR7FAB.tmp.cvr [0]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Temp\FXSAPIDebugLogFile.txt [0]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp8rfcaz.dll [41984]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp8rfcaz.lck [0]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Temp\exc6685.dmp [139024]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Temp\exc6906.txt [42312]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (.Evernote Corp..) -- C:\Users\Lepage\AppData\Local\Temp\Evernote.msi [58867712]
O61 - LFC: 02/02/2014 - 21:28:20 ---A- . (.Microsoft Corporation.) -- C:\Users\Lepage\AppData\Local\Temp\Low\SkypeClickToCall\Bootstrapper\SkypeToolbars.msi [10551296]
O61 - LFC: 02/02/2014 - 21:28:22 R---- . (.Gilles Bonnerot.) -- C:\Users\Lepage\AppData\OICE_15_974FA576_32C1D314_30A4\B024A965.doc [29696]
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Apple Computer\Preferences\com.apple.iTunes.plist [659]
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Apple Computer\iTunes\iTunesPrefs.xml [188248]
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\PENDING_atppcb [6144] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\TO_HASH_awkwfq [0] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\UPDATED_p7_xf0 [42407936] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\config.dbx [5120] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\filecache.dbx [54779904] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\filecache.dbx-mjABE50B9FD [125] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\host.db [73] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\host.dbx [205] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\notifications.dbx [2048] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\photo.dbx [17408] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\s52ed878f [0] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\s52ed9e9f [0] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\s52ee251c [0] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\shellext\l\52eea7cc [156] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\shellext\l\52eea8a6 [136] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\shellext\l\new_trace [0] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Dropbox\unlink.db [264] =>.Dropbox
O61 - LFC: 02/02/2014 - 21:28:23 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\FastStone\FSC\fsc.db [6280]
O61 - LFC: 02/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\FastStone\FSIV\FSViewer.db [3351062]
O61 - LFC: 02/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Leadertech\PowerRegister\PowerReg.dat [352]
O61 - LFC: 02/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-02 (00-28-00).txt [75704]
O61 - LFC: 02/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-02 (02-38-15).txt [2258]
O61 - LFC: 02/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-02 (11-27-11).txt [2260]
O61 - LFC: 02/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\310513.LSM7.doc.LNK [1279]
O61 - LFC: 02/02/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\La Chambre d'écho 04.jpg.LNK [1049]
O61 - LFC: 02/02/2014 - 21:28:24 --H-- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\index.dat [1693]
O61 - LFC: 02/02/2014 - 21:28:25 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\Une parabole de la MaАажчonnerie symbolique.doc.LNK [1324]
O61 - LFC: 02/02/2014 - 21:28:25 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Outlook\Outlook.xml [4110]
O61 - LFC: 02/02/2014 - 21:28:25 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Publisher Building Blocks\ContentStore.xml [168]
O61 - LFC: 02/02/2014 - 21:28:25 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Publisher\pubcmd15.dat [964]
O61 - LFC: 02/02/2014 - 21:28:26 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\bistats.db [69632]
O61 - LFC: 02/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\bistats.db-journal [37448]
O61 - LFC: 02/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\bistats.lock [0]
O61 - LFC: 02/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\18\1876c6442995381f.dat [1926]
O61 - LFC: 02/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\46\464ac6acbecd1227.dat [1966]
O61 - LFC: 02/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\4e\4e4c9c1b100fa652.dat [1966]
O61 - LFC: 02/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\b6\b6df6fdaecad620d.dat [1963]
O61 - LFC: 02/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\config.xml [12932]
O61 - LFC: 02/02/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\dc.db [49152]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\eas.db [864256]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\httpfe\cookies.dat [2]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\keyval.db [65536]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\keyval.db-journal [49760]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\keyval.lock [0]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\main.db [442368]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\main.db-journal [176984]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\main.lock [0]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\mmanager\mediacache.ldb [40]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\msn.db [49152]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\msn.db-journal [37448]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\msn.lock [0]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\qikdb\qik_main.db [32768]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\simcache\streamlist [44]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\statistics.db [61440]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\statistics.db-journal [37448]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\statistics.lock [0]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\thmanager\thumbcache.ldb [40]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\voicemail\V1391344236M2M15335D4190444272.dat [0]
O61 - LFC: 02/02/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\shared.xml [90284]
O61 - LFC: 02/02/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\shared_dynco\dc.db [2609152]
O61 - LFC: 02/02/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\shared_dynco\dc.db-journal [8720]
O61 - LFC: 02/02/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Thunderbird\Crash Reports\InstallTime20131218142620 [10] =>.Mozilla Corporation
O61 - LFC: 02/02/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\ZHP\HOSTS.txt [2306548] =>.Nicolas Coolman
O61 - LFC: 02/02/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\ZHP\Log.txt [34323] =>.Nicolas Coolman
O61 - LFC: 02/02/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\ZHP\TestsZHPDiag.txt [2836] =>.Nicolas Coolman
O61 - LFC: 02/02/2014 - 21:29:18 ---A- . (...) -- C:\Users\Lepage\Downloads\FHSetup (2).exe [264757]
O61 - LFC: 02/02/2014 - 21:29:18 ---A- . (...) -- C:\Users\Lepage\Downloads\FHSetup (3).exe [264757]
O61 - LFC: 02/02/2014 - 21:29:18 ---A- . (...) -- C:\Users\Lepage\Downloads\adwcleaner.exe [1166132]
O61 - LFC: 02/02/2014 - 21:29:18 ---A- . (.Evernote Corp., 305 Walnut Street, Redwood.) -- C:\Users\Lepage\Downloads\Evernote_5.1.2.2387.exe [59310944]
O61 - LFC: 02/02/2014 - 21:29:18 ---A- . (.Oracle Corporation.) -- C:\Users\Lepage\Downloads\chromeinstall-7u51.exe [921000]
O61 - LFC: 02/02/2014 - 21:29:19 ---A- . (...) -- C:\Users\Lepage\Downloads\flashplayer13_uninstall_mac.dmg [235814]
O61 - LFC: 02/02/2014 - 21:29:19 ---A- . (.Adobe Systems Incorporated.) -- C:\Users\Lepage\Downloads\flashplayer13_uninstall_win.exe [840584]
O61 - LFC: 02/02/2014 - 21:29:19 ---A- . (.Oracle Corporation.) -- C:\Users\Lepage\Downloads\jre-7u51-windows-i586.exe [29141928]
O61 - LFC: 02/02/2014 - 21:29:24 ---A- . (.Microsoft Corporation.) -- C:\Users\Lepage\Downloads\SkypeClicktoCall.exe [11570848]
O61 - LFC: 02/02/2014 - 21:29:26 ---A- . (.Gilles Bonnerot.) -- C:\Users\Lepage\Downloads\Une parabole de la MaАажчonnerie symbolique.doc [29696]
O61 - LFC: 02/02/2014 - 21:29:26 ---A- . (.Mozilla.) -- C:\Users\Lepage\Downloads\Thunderbird Setup 27.0b1.exe [23456888] =>.Mozilla Corporation
O61 - LFC: 02/02/2014 - 21:29:27 ---A- . (.Nicolas Coolman.) -- C:\Users\Lepage\Downloads\ZHPDiag2 (1).exe [6862845] =>.Nicolas Coolman
O61 - LFC: 02/02/2014 - 21:29:29 ---A- . (.Nicolas Coolman.) -- C:\Users\Lepage\Downloads\ZHPDiag2.exe [6862845] =>.Nicolas Coolman
O61 - LFC: 02/02/2014 - 21:29:50 ---A- . (...) -- C:\Users\Lepage\Music\iTunes\iTunes Library Extras.itdb [16384]
O61 - LFC: 02/02/2014 - 21:29:50 ---A- . (...) -- C:\Users\Lepage\Music\iTunes\iTunes Library.itl [198401]
O61 - LFC: 02/02/2014 - 21:29:51 ---A- . (...) -- C:\Users\Lepage\Music\iTunes\iTunes Music Library.xml [693171]
O61 - LFC: 02/02/2014 - 21:29:51 --HA- . (...) -- C:\Users\Lepage\Music\iTunes\sentinel [8]
O61 - LFC: 02/02/2014 - 21:29:52 R--A- . (...) -- C:\Users\Lepage\SkyDrive\Documents\Ma Base de données idéale Isaac Scarbo 291213.url [121]
O61 - LFC: 30/01/2014 - 21:26:45 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\02\09\06\000000003C2A008C-0000BEFEABA3E692-0000000000000002.m4a [9044865]
O61 - LFC: 30/01/2014 - 21:26:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\07\09\01\000000003C2A008C-0000BEFEBA573197-0000000000000002.m4a [15274231]
O61 - LFC: 30/01/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\12\15\02\000000003C2A008C-0000BEFEBE4B12FC-0000000000000002.m4a [13875709]
O61 - LFC: 30/01/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Databases\lepagem174.exb.context [152]
O61 - LFC: 30/01/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Databases\lepagem174.exb.maptiles [428000]
O61 - LFC: 30/01/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\AppLog_2014-01-29.txt [47250]
O61 - LFC: 30/01/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\enclipper_2014-01-29.txt [263]
O61 - LFC: 30/01/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\enclipper_2014-01-30.txt [534]
O61 - LFC: 30/01/2014 - 21:27:34 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\databases\https_login.skype.com_0\2 [5120]
O61 - LFC: 30/01/2014 - 21:27:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\background-ga.js [372]
O61 - LFC: 30/01/2014 - 21:27:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\22tracks.js [2573]
O61 - LFC: 30/01/2014 - 21:27:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\61.js [3829]
O61 - LFC: 30/01/2014 - 21:27:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\8tracks.js [4210]
O61 - LFC: 30/01/2014 - 21:27:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\amazon.js [6954]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\aolradio.js [2659]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\baidu.js [4487] =>Adware.BDSearch
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\bandcamp.js [2478]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\beats.js [5346]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\daytrotter.js [4200]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\deezer.js [3391]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\difm.js [3117]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\douban-programme.js [2333]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\dummy.js [211]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\fizy.js [3362]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\focusatwill.js [2238]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\ghostly.js [2569]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\googlemusic.js [3526]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\grooveshark.js [3911]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\hillydilly.js [3018]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\iheart.js [3251]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\indieshuffle.js [2058]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\jango-dom-inject.js [1959]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\jango.js [2493]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\letournedisque.js [6100]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\megalyrics.js [2483] =>Adware.AddLyrics
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\mojepolskieradio.js [1940]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\myspace.js [3301]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\novaplanet.js [6191]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\pandora.js [2695]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\pitchfork.js [3516]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\plugdj-dom-inject.js [1785]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\plugdj.js [4817]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\radioplusbe.js [3162]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\rdio.js [3776]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\redditplayer.js [5284]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\slacker.js [2638]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\slacker2.js [2659]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\songza.js [2273]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\soundcloud.js [4899]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\spotify.js [3973]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\sullen-ural.js [915]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\ttnet.js [3530]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\tubafm.js [1379]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\turntable.js [3022]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\virginradiotr.js [2322]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\vk.js [1976]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\weborama.js [2585]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\xboxmusic.js [3918]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\youtube.js [8622]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\zmusic.js [1510]
O61 - LFC: 30/01/2014 - 21:27:47 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\connectors\zvooq.js [1598]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\defines.js [1127]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon.png [782]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon128.png [6918]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon_cross_gray.png [470]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon_note.png [3139]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon_note_gray.png [3143]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon_tick.png [3052]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon_tick_big.png [1205]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon_tick_gray.png [3035]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\icon_unknown.png [3005]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\inject.js [11665]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\jquery-1.10.2.min.js [93107]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\jquery-1.6.1.min.js [91342]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\jquery.dump.js [4318]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\manifest.json [1307]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\md5.js [6503]
O61 - LFC: 30/01/2014 - 21:27:48 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\options\bootstrap-combined.no-icons.min.css [118578]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\options\bootstrap.min.js [28631]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\options\fontawesome\font-awesome.css [26937]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\options\fontawesome\fontawesome-webfont.woff [43572]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\options\options.css [751]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\options\options.html [25949]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\options\options.js [3087]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\popup.html [1346]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\popup.js [2193]
O61 - LFC: 30/01/2014 - 21:27:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm\1.31_0\scrobbler.js [21914]
O61 - LFC: 30/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_login.skype.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dz-en-vie.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dz-en-vie.com_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_login.skype.com_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_people.directory.live.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_people.directory.live.com_0.localstorage-journal [512]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.skype.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.skype.com_0.localstorage-journal [512]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.airbnb.fr_0.localstorage [7168]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.airbnb.fr_0.localstorage-journal [6704]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage [12288]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal [7736]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.com_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage [358400]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage-journal [16384]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_forums.adobe.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_forums.adobe.com_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imagesrv.adition.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imagesrv.adition.com_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.abritel.fr_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.abritel.fr_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.baiedesomme.fr_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.baiedesomme.fr_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.booking.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.booking.com_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.housetrip.fr_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.housetrip.fr_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.location-vacances-treport.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.location-vacances-treport.com_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.logic-immo.com_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.logic-immo.com_0.localstorage-journal [512]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.vacancesweb.be_0.localstorage [3072]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.vacancesweb.be_0.localstorage-journal [3608]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JCJ8PLVJ\macromedia.com\support\flashplayer\sys\#mpsnare.iesnare.com\settings.sol [89]
O61 - LFC: 30/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JCJ8PLVJ\macromedia.com\support\flashplayer\sys\#skype.com\settings.sol [79]
O61 - LFC: 30/01/2014 - 21:28:13 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Skype\Apps\login.md5 [34]
O61 - LFC: 30/01/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\MMC\eventvwr [145575]
O61 - LFC: 30/01/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\51c980831ed2b743 sur d.docs.live.net.url [67]
O61 - LFC: 30/01/2014 - 21:28:25 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\outil_1_-_prevoir_mon_budget_sur_lannee_pour_mieux_anticiper CAF.xls.url [137]
O61 - LFC: 30/01/2014 - 21:28:25 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\Recent\outil_2_-_suivre_mes_depenses CAF.xls.url [106]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\00\00b637af2d453c36.dat [2918]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\06\061305d1b69170e0.dat [2922]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\09\094722e555360e44.dat [2975]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\0e\0e3e511317c5f72a.dat [2971]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\41\41894ce943717c58.dat [2988]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\42\4293891570bd5d34.dat [3015]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\4f\4fc0701982d97c48.dat [2948]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\50\50608ed793c407fe.dat [2956]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\64\64e5ba7d60632c3c.dat [3006]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\75\75281f87a66cab6e.dat [3010]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\79\793825bb2cb0b672.dat [2979]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\9b\9b53e963f62e20ba.dat [3026]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\c5\c5862c3735e9bade.dat [3103]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\cd\cd91fb01d25e8ad0.dat [2998]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\ea\ead6cb6b983fc2e2.dat [3034]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\f0\f0f5eeadb11f812c.dat [2969]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\chatsync\f1\f128a65fad1635a6.dat [3007]
O61 - LFC: 30/01/2014 - 21:28:27 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\live#3api8l4vion\config.lck [0]
O61 - LFC: 30/01/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\Pictures\Photo de moi 1.png [265021]
O61 - LFC: 30/01/2014 - 21:28:28 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\shared.lck [0]
O61 - LFC: 30/01/2014 - 21:28:29 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Skype\shared_httpfe\queue.db [40960]
O61 - LFC: 30/01/2014 - 21:29:19 ---A- . (.Google Inc..) -- C:\Users\Lepage\Downloads\GoogleEarthPluginSetup.exe [819160]
O61 - LFC: 30/01/2014 - 21:29:19 ---A- . (.jojo et amel.) -- C:\Users\Lepage\Downloads\outil_1_-_prevoir_mon_budget_sur_lannee_pour_mieux_anticiper.xls [103936]
O61 - LFC: 30/01/2014 - 21:29:25 ---A- . (.Skype Technologies S.A..) -- C:\Users\Lepage\Downloads\SkypeSetup.exe [1659552]
O61 - LFC: 30/01/2014 - 21:29:54 ---A- . (...) -- C:\Users\Lepage\SkyDrive\outil_1_-_prevoir_mon_budget_sur_lannee_pour_mieux_anticiper CAF.xlsx [25182]
O61 - LFC: 30/01/2014 - 21:29:54 ---A- . (...) -- C:\Users\Lepage\SkyDrive\outil_2_-_suivre_mes_depenses CAF.xlsx [11567]
O61 - LFC: 31/01/2014 - 21:26:45 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\01\11\01\000000003C2A008C-0000BF002C6A71B1-0000000000000002.m4a [9014495]
O61 - LFC: 31/01/2014 - 21:26:46 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\05\10\00\000000003C2A008C-0000BEFF6DB3E0A5-0000000000000002.m4a [19105733]
O61 - LFC: 31/01/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\10\10\05\000000003C2A008C-0000BEFF6DB3D5AA-0000000000000002.m4a [10667825]
O61 - LFC: 31/01/2014 - 21:26:49 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\13\09\06\000000003C2A008C-0000BEFF6A97969D-0000000000000002.m4a [16638480]
O61 - LFC: 31/01/2014 - 21:26:50 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Apple Computer\iTunes\CloudPurchasesPlayCache\000000003C2A008C\13\15\12\000000003C2A008C-0000BEFF6C3FFCFD-0000000000000002.m4a [10911578]
O61 - LFC: 31/01/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\Logs\SPLog.1.xml [220074]
O61 - LFC: 31/01/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\refineshistory.xml [1386]
O61 - LFC: 31/01/2014 - 21:26:51 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Copernic\DesktopSearch4\refineshistory.xml.bak [1386]
O61 - LFC: 31/01/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\LocalStorage\lepagem174\Local Storage\__0.localstorage [10240]
O61 - LFC: 31/01/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\AppLog_2014-01-30.txt [26734]
O61 - LFC: 31/01/2014 - 21:26:55 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Evernote\Evernote\Logs\enclipper_2014-01-31.txt [473]
O61 - LFC: 31/01/2014 - 21:27:41 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk\6.60.170_0\bg.html [69]
O61 - LFC: 31/01/2014 - 21:27:41 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk\6.60.170_0\bg.js [3452]
O61 - LFC: 31/01/2014 - 21:27:41 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk\6.60.170_0\content.js [5715]
O61 - LFC: 31/01/2014 - 21:27:41 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk\6.60.170_0\content_lores.js [1350]
O61 - LFC: 31/01/2014 - 21:27:41 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk\6.60.170_0\htmlhelpers.js [5651]
O61 - LFC: 31/01/2014 - 21:27:41 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk\6.60.170_0\icon128.png [4067]
O61 - LFC: 31/01/2014 - 21:27:41 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk\6.60.170_0\icon48.png [1529]
O61 - LFC: 31/01/2014 - 21:27:41 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk\6.60.170_0\manifest.json [2158]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_addons.mozilla.org_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_addons.mozilla.org_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_chrome.google.com_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_chrome.google.com_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_creative.adobe.com_0.localstorage [10240]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_creative.adobe.com_0.localstorage-journal [8768]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_fnac.livechat.iadvize.com_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_fnac.livechat.iadvize.com_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_googleads.g.doubleclick.net_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:57 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_googleads.g.doubleclick.net_0.localstorage-journal [512]
O61 - LFC: 31/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_support.google.com_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_support.google.com_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.adobe.com_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:58 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.adobe.com_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_korben.info_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_korben.info_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shop.delhaize.be_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shop.delhaize.be_0.localstorage-journal [512]
O61 - LFC: 31/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adobe.com_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:27:59 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adobe.com_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.skyrock.com_0.localstorage [3072]
O61 - LFC: 31/01/2014 - 21:28:00 ---A- . (...) -- C:\Users\Lepage\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.skyrock.com_0.localstorage-journal [3608]
O61 - LFC: 31/01/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Logitech\SetPoint\user.xml [24223]
O61 - LFC: 31/01/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Excel\Excel15.xlb [10104]
O61 - LFC: 31/01/2014 - 21:28:24 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Office\15.0\408ef5cf\Proofing\RoamingCustom.dic [176]
O61 - LFC: 31/01/2014 - 21:28:24 R--A- . (.Acresso Software Inc..) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe [53248]
O61 - LFC: 31/01/2014 - 21:28:25 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\Outlook\Outlook.srs [4096]
O61 - LFC: 31/01/2014 - 21:28:26 ---A- . (...) -- C:\Users\Lepage\AppData\Roaming\Microsoft\UProof\PT12W.XML [8544]
O61 - LFC: 31/01/2014 - 21:29:14 ---A- . (...) -- C:\Users\Lepage\Documents\Mes Comptes Scarbo Isaac 081213.docx [50301]
O61 - LFC: 31/01/2014 - 21:29:44 ---A- . (...) -- C:\Users\Lepage\Music\iTunes\Album Artwork\Cache\83689E22F8C01920\02\14\13\83689E22F8C01920-9A523AD10CD1ADE2.itc2 [455141]
O61 - LFC: 31/01/2014 - 21:29:50 ---A- . (...) -- C:\Users\Lepage\Music\iTunes\Album Artwork\Download\83689E22F8C01920\02\14\13\83689E22F8C01920-9A523AD10CD1ADE2.itc2 [921677]
~ 10 Fichiers temporaires (Temporary files)
~ 1 Fichiers cookies (Cookies files)
~ Files: 546 Scanned in 03mn 10s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Liste les services legacy du registre (LALS) (O64)
O64 - Services: CurCS - 10/01/2014 - C:\Windows\System32\DRIVERS\afcdp.sys (afcdp) .(.Acronis - File Level CDP Kernel Helper.) - LEGACY_AFCDP
O64 - Services: CurCS - 09/01/2014 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\atapi.sys (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP
O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS
O64 - Services: CurCS - 04/07/2013 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE
O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR
O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL
O64 - Services: CurCS - 06/01/2014 - C:\Windows\System32\drivers\GDBehave.sys (GDBehave) .(.G Data Software AG - Behavior Blocker.) - LEGACY_GDBEHAVE
O64 - Services: CurCS - 06/01/2014 - C:\Windows\system32\drivers\MiniIcpt.sys (GDMnIcpt) .(.G Data Software AG - Filesystem MiniInterceptor (Mini Filter).) - LEGACY_GDMNICPT
O64 - Services: CurCS - 06/01/2014 - C:\Windows\system32\drivers\PktIcpt.sys (GDPkIcpt) .(.G Data Software AG - WFP PktInterceptor 2 (Pkt2 Filter).) - LEGACY_GDPKICPT
O64 - Services: CurCS - 06/01/2014 - C:\Windows\System32\drivers\gdwfpcd32.sys (gdwfpcd) .(.G Data Software AG - G Data WFP Callout Driver (6.0).) - LEGACY_GDWFPCD
O64 - Services: CurCS - 06/01/2014 - C:\Windows\system32\drivers\GRD.sys (GRD) .(.G Data Software - G Data Rootkit Detector Driver.) - LEGACY_GRD
O64 - Services: CurCS - 06/01/2014 - C:\Windows\system32\drivers\HookCentre.sys (HookCentre) .(.G Data Software AG - Security Hook.) - LEGACY_HOOKCENTRE
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY
O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD
O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV
O64 - Services: CurCS - 04/04/2013 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP
O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\parvdm.sys (Parvdm) .(.Microsoft Corporation - Pilote parallèle VDM.) - LEGACY_PARVDM
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR
O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2
O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP
O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6
O64 - Services: CurCS - 25/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF
O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\WudfPf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF
~ Legacy: 74 Scanned in 00mn 01s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 11 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Google\Chrome\Application\chrome.exe" http://www.awesomehp.com =>PUP.Awesomehp
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- c:\program files\internet explorer\iexplore.exe" http://www.awesomehp.com =>PUP.Awesomehp
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
~ Keys: Scanned in 00mn 00s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [679424]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [473600]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [49664]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [300544]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242176]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [521216]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [1933848]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [585728]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [499712]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [21504]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [49664]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [71168]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [113664]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800]

~ Services: 32 Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.9EB54EABFB8B9FA02BFC48AF3A9FD020] [SPRF][02/02/2014] (...) -- C:\Users\Lepage\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp8rfcaz.dll [41984]
[MD5.47025DD5CBA8B43E9D26C960FF5B32A7] [SPRF][23/10/2013] (...) -- C:\Users\Lepage\AppData\Local\Temp\Quarantine.exe [344355]
~ Files: 2 Scanned in 00mn 00s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "WMP-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-LLMNR-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe
O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe
O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "{88D6FFBF-D45B-40DA-97C1-029E6C11B739}" | In - Public - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O87 - FAEL: "{6CCDAB96-048F-4BFB-876F-9FC4E5222FBA}" | In - Public - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O87 - FAEL: "{F913FFDB-ABD5-43E2-88C8-5669CE9B3334}" | In - Public - P6 - TRUE | .(.Pas de propriétaire - Printer Communication System.) -- C:\Windows\System32\lxdncoms.exe
O87 - FAEL: "{D1AD12F2-24D9-4B69-B279-12D9939F7419}" | In - Public - P17 - TRUE | .(.Pas de propriétaire - Printer Communication System.) -- C:\Windows\System32\lxdncoms.exe
O87 - FAEL: "{9A33CA31-DA31-4A96-9813-C24871E109E5}" | In - Public - P6 - TRUE | .(.Pas de propriétaire - Printer Status Window Interface.) -- C:\Windows\System32\spool\drivers\w32x86\3\lxdnpswx.exe
O87 - FAEL: "{3F07832F-DC57-42ED-B850-CA2562E287A1}" | In - Public - P17 - TRUE | .(.Pas de propriétaire - Printer Status Window Interface.) -- C:\Windows\System32\spool\drivers\w32x86\3\lxdnpswx.exe
O87 - FAEL: "{E5E81466-5AF8-4B0E-91B4-E7B8AA50CB96}" | In - Public - P6 - TRUE | .(.Pas de propriétaire - Printer Device Monitor.) -- C:\Program Files\Lexmark 2600 Series\lxdnmon.exe
O87 - FAEL: "{423EEC35-2C4D-4BC0-AA77-0D2571B11281}" | In - Public - P17 - TRUE | .(.Pas de propriétaire - Printer Device Monitor.) -- C:\Program Files\Lexmark 2600 Series\lxdnmon.exe
O87 - FAEL: "{92C36E5A-029C-4375-9276-1E3584D2F47D}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{0B3B8DA5-B507-447D-8CBB-724F34431FDD}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{E5A961D2-33AE-45C4-B5A3-A439E54F1B19}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
O87 - FAEL: "{C68A9A5A-C867-4D3F-98B8-F0A574C011BD}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Lepage\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation
O87 - FAEL: "{50189B48-EA53-431A-8AEA-A074CF9B5A09}" | In - Public - P6 - TRUE | .(.Acronis - TrueImage Sync Agent Service.) -- C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O87 - FAEL: "{8D69472F-E2AF-4EE4-A35C-B77BC2AB550E}" | In - Public - P17 - TRUE | .(.Acronis - TrueImage Sync Agent Service.) -- C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O87 - FAEL: "{F476ABEF-FD90-4BB2-9297-56E3A4760A72}" | In - Public - P6 - TRUE | .(.Dropbox, Inc. - Dropbox.) -- C:\Users\Lepage\AppData\Roaming\Dropbox\bin\Dropbox.exe =>.Dropbox
O87 - FAEL: "{70DCD8CB-2432-487B-A13D-0BD0B60028DF}" | In - Public - P17 - TRUE | .(.Dropbox, Inc. - Dropbox.) -- C:\Users\Lepage\AppData\Roaming\Dropbox\bin\Dropbox.exe =>.Dropbox
O87 - FAEL: "{8356115F-8A39-4C86-9704-0E659358B13F}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe
O87 - FAEL: "{C8113ACA-A54A-4E76-B90A-30F3FED3685A}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O87 - FAEL: "{E88B7956-7FFA-41EA-AEAF-8F59F1E318F5}" | In - None - P17 - TRUE | .(.Skype - Skype Web Plugin.) -- C:\Program Files\SkypeWebPlugin\SkypeWebPlugin.exe
~ Firewall: 180 Scanned in 00mn 00s



---\\ Enumère les codes produits des logiciels (PUC) (O90)
O90 - PUC: "11F45BA4C8F23E110BF98BCAF6798BE8" . (.Google Earth Plug-in.) -- C:\Windows\Installer\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}\ARPPRODUCTICON.exe =>.Google Inc
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc
O90 - PUC: "50E7C3A773EE6D74991EE20BA5D33A7F" . (.Skype™ 6.13.) -- C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe
O90 - PUC: "682F10E4CC3D7BF4B92B6BDF12D7E98F" . (.Acronis True Image 2014.) -- C:\Windows\Installer\{4E01F286-D3CC-4FB7-9BB2-B6FD217D9EF8}\product.ico
O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.06) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico
O90 - PUC: "6926BF2104883E11687D0061E3897E0D" . (.Evernote v. 5.1.2.) -- C:\Windows\Installer\{12FB6296-8840-11E3-86D7-00163E98E7D0}\Evernote.ico
O90 - PUC: "7B4C229A0E0578749AC495BD3F6CD5EB" . (.Apple Application Support.) -- C:\Windows\Installer\{A922C4B7-50E0-4787-A94C-59DBF3C65DBE}\WinInstall.ico
O90 - PUC: "ABFAB76BF9C4AF84496939E3B3520544" . (.QuickTime.) -- C:\Windows\Installer\{B67BAFBA-4C9F-48FA-9496-933E3B255044}\Installer.ico
O90 - PUC: "B2F5519759897D9468219D52080EEDB5" . (.Bonjour.) -- C:\Windows\Installer\{79155F2B-9895-49D7-8612-D92580E0DE5B}\Bonjour.ico
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "DD6A3E018D48A8D4BB11E53541CB7ADF" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{10E3A6DD-84D8-4D8A-BB11-5E5314BCA7FD}\Installer.ico
O90 - PUC: "E7E9FC18EBE14D24CA378ED0AA7736E3" . (.Copernic Desktop Search 4.) -- C:\Windows\Installer\{81CF9E7E-1EBE-42D4-AC73-E80DAA77633E}\ApplicationIcon.ico
O90 - PUC: "F64F662264E0C1942B87AD8FF0C7857D" . (.Skype Web Plugin.) -- C:\Windows\Installer\{2266F46F-0E46-491C-B278-DAF80F7C58D7}\icon.ico
O90 - PUC: "F9C582BB128C07749807654CBA258CE7" . (.Skype Click to Call.) -- C:\Windows\Installer\{BB285C9F-C821-4770-8970-56C4AB52C87E}\ICON_PRODUCT
O90 - PUC: "FA544616FCBB1C144A6DC8FF71C181D2" . (.iTunes.) -- C:\Windows\Installer\{616445AF-BBCF-41C1-A4D6-8CFF171C182D}\Installer.ico
~ Update Products: 29 Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.1535CD34366545AFB4B6362AF106F4B1] [WIS][29/01/2014] (.Copernic - Copernic Desktop Search 4 Installer.) -- C:\Windows\Installer\1361a80.msi [16084992]
[MD5.64C3570DC4A196751E29F8EFA7964604] [WIS][14/01/2014] (.Ableton - Ableton Live 9 Lite.) -- C:\Windows\Installer\3592ef.msi [701116416]
[MD5.2C3787E8787B8275CD023F21735DB76D] [WIS][30/01/2014] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\3cba52d.msi [25432064]
[MD5.4434E58AED5858DF7E6A4DDA5D0ECC25] [WIS][01/02/2014] (.Skype - Skype Web Plugin.) -- C:\Windows\Installer\76aad4.msi [4538368]
~ WIS: 29 Scanned in 00mn 16s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Auto 08/01/2014 116648 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 08/01/2014 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Auto 07/01/2014 285795 | (HOSTS Anti-PUPs) . (...) - C:\Program Files\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware.exe
SS - | Demand 13/06/2013 293144 | (LBTServ) . (.Logitech, Inc..) - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
SS - | Demand 19/12/2013 118896 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe

SR - | Auto 18/07/2013 777800 | (AcrSch2Svc) . (.Acronis.) - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
SR - | Auto 21/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 10/01/2014 3898360 | (afcdpsrv) . (.Acronis.) - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
SR - | Auto 07/01/2014 43336 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 26/08/2013 1970296 | (AVKProxy) . (...) - C:\Program Files\Common Files\G Data\AVKProxy\AVKProxy.exe
SR - | Auto 21/08/2013 635000 | (AVKService) . (...) - C:\Program Files\G Data\InternetSecurity\AVK\AVKService.exe
SR - | Auto 15/10/2013 2101280 | (AVKWCtl) . (.G Data Software AG.) - C:\Program Files\G Data\InternetSecurity\AVK\AVKWCtl.exe
SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Demand 17/10/2013 2373712 | (GDFwSvc) . (.G Data Software AG.) - C:\Program Files\G Data\InternetSecurity\Firewall\GDFwSvc.exe
SR - | Demand 22/08/2013 695416 | (GDScan) . (.G Data Software AG.) - C:\Program Files\Common Files\G Data\GDScan\GDScan.exe
SR - | Auto 14/01/2014 508016 | (IePluginService) . (.Cherished Technololgy LIMITED.) - C:\ProgramData\IePluginService\PluginService.exe =>Trojan.SProtector
SR - | Demand 20/01/2014 553288 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 28/11/2007 589824 | (lxdn_device) . (...) - C:\Windows\system32\lxdncoms.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 30/08/2012 645992 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SR - | Auto 30/08/2012 1258856 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
SR - | Auto 30/08/2012 382312 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - | Auto 22/10/2013 7151024 | (syncagentsrv) . (.Acronis.) - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
SR - | Auto 14/07/2009 20992 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 14/07/2009 20992 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

~ Services: Scanned in 00mn 19s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net

~ MBR: 1 Scanned in 00mn 02s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Lepage at 02/02/2014 21:32:02

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin

~ MBR: Scanned in 00mn 04s



---\\ Scan Additionnel (O88)
Database Version : 13030 - (25/01/2014)
Clés trouvées (Keys found) : 3
Valeurs trouvées (Values found) : 2
Dossiers trouvés (Folders found) : 6
Fichiers trouvés (Files found) : 7

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95D9ECF5-2A4D-4550-BE49-70D42F71296E}] =>Toolbar.LastPass^
[HKLM\SYSTEM\CurrentControlSet\Services\IePluginService] =>Trojan.SProtector^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\IePlugins] =>Trojan.SProtector^
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} =>Toolbar.LastPass^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:mobilegeni daemon =>PUP.Mobogenie^
C:\Program Files\AmiExt =>Adware.FlashEnhancer^
C:\Program Files\Bench =>PUP.GiganticSavings^
C:\Program Files\Mobogenie =>PUP.Mobogenie^
C:\ProgramData\IePluginService =>Trojan.SProtector^
C:\ProgramData\WPM =>PUP.WpManager^
C:\Users\Lepage\AppData\Local\Mobogenie =>PUP.Mobogenie^
[HKCU\Software\AmiExt] =>Adware.FlashEnhancer^
[HKLM\Software\AmiExt] =>Adware.FlashEnhancer^
[HKLM\Software\Bench] =>PUP.GiganticSavings^
[HKLM\Software\Wpm] =>PUP.WpManager^
[HKLM\Software\awesomehpSoftware] =>PUP.Awesomehp^
[HKLM\Software\flash-Enhancer] =>Adware.FlashEnhancer^
[HKLM\Software\supWPM] =>PUP.WpManager^
~ Additionnel Scan: 309149 Items scanned in 00mn 35s



---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/41011964-pup-awesomehp =>PUP.Awesomehp
~ http://nicolascoolman.webs.com/apps/blog/show/33962622-toolbar-lastpass =>Toolbar.LastPass
~ http://nicolascoolman.webs.com/apps/blog/show/41034005-pup-mobogenie =>PUP.Mobogenie
~ http://nicolascoolman.webs.com/apps/blog/show/40789592-trojan-sprotector =>Trojan.SProtector
~ http://nicolascoolman.webs.com/apps/blog/show/40653881-adware-flashenhancer =>Adware.FlashEnhancer
~ http://nicolascoolman.webs.com/apps/blog/show/37514218-pup-giganticsavings =>PUP.GiganticSavings
~ http://nicolascoolman.webs.com/apps/blog/show/38737316-pup-wpmanager =>PUP.WpManager
~ http://nicolascoolman.webs.com/apps/blog/show/32781187-pup-webconnect =>PUP.WebConnect
~ http://nicolascoolman.webs.com/apps/blog/show/28158343-adware-bdsearch =>Adware.BDSearch
~ http://nicolascoolman.webs.com/apps/blog/show/26601058-adware-addlyrics =>Adware.AddLyrics
~ MSI: 10 link(s) detected in 00mn 35s



End of the scan (2308 lines in 08mn 28s)(0)

Publicité


Signaler le contenu de ce document

Publicité