Downloaded from:

Rapport de ZHPDiag v1.28.2423 par Nicolas Coolman, Update du 27/11/2011 Run by ANONYMOUS at 11/30/2011 3:22:38 PM Web site : State : Version à jour.

---\\ MSIE: v9.0.8112.16421 MFIE: Mozilla 4.0.1 v4.0.1 GCIE: v15.0.874.121 (Defaut) ---\\ Windows Product Information ~ Langage: Français Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 7QJB7 Windows License : OK ~ Windows Remaining Initializations Number : 3 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System Information ~ Processor: Intel64 Family 6 Model 37 Stepping 2, GenuineIntel ~ : 64 Bits Boot mode: Normal (Normal boot) Total RAM: 8183.1 MB (75% free) System Restore: Activé (Enable) System drive C: has 207 GB (45%) free of 458 GB ---\\ Logged in mode ~ Computer Name: ANONYMOUS-PC ~ User Name: ANONYMOUS ~ All Users Names: UpdatusUser, HomeGroupUser$, ANONYMOUS, Administrateur, ~ Unselected Option: O45,O61,O62,O65,O66,O82,O89 Logged in as Administrator ---\\ Environnement Variables ~ System Unit : C:\ ~ %AppData% : C:\Users\ANONYMOUS\AppData\Roaming\ ~ %Desktop% : C:\Users\ANONYMOUS\Desktop\ ~ %Favorites% : C:\Users\ANONYMOUS\Favorites\ ~ %LocalAppData% : C:\Users\ANONYMOUS\AppData\Local\ ~ %StartMenu% : C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\system32\ ---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 207 Go of 458 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 55 Go of 458 Go) E:\ CD-ROM drive (Not Inserted) F:\ CD-ROM drive (Not Inserted) G:\ CD-ROM drive (Not Inserted)

---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoStartMenuSubFolder: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoResolveSearch: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoClose: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NO HIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyComputer: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SH OWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : Out Of Date ~ Scan Security Center in 00mn AMs

---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.4/27/2011 - 7:19:30 AM.) -- C:\Windows\Explorer.exe [2871808] [MD5.DD81D91FF3B0763C392422865C9AC12E] - (....) (.7/14/2009 - 2:39:31 AM.) -- C:\Windows\system32\rundll32.exe [45568] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.7/14/2009 - 2:39:52 AM.) -- C:\Windows\system32\Wininit.exe [129024] [MD5.271E8FB1354AA205A214F280A6766E30] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/14/2011 - 6:17:57 AM.) -- C:\Windows\system32\wininet.dll [1389056] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (....) (.3/5/2011 - 2:25:30 PM.) -- C:\Windows\system32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.3/5/2011 - 2:27:26 PM.) -- C:\Windows\system32\sppcomapi.dll [232448] [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (....) (.3/5/2011 - 2:07:20 PM.) -- C:\Windows\system32\fr-FR\user32.dll.mui [20480] [MD5.D5B031C308A409A0A576BFF4CF083D30] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.6/16/2011 - 3:34:03 AM.) -- C:\Windows\system32\drivers\AFD.sys [499200] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.7/14/2009 - 2:52:21 AM.) -- C:\Windows\system32\drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.7/14/2009 - 12:19:47 AM.) -- C:\Windows\system32\drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.3/5/2011 - 10:19:21 AM.) -- C:\Windows\system32\drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.3/5/2011 - 10:26:32 AM.) -- C:\Windows\system32\drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.3/5/2011 - 11:43:43 AM.) -- C:\Windows\system32\drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.7/14/2009 - 12:19:57 AM.) -- C:\Windows\system32\drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.7/14/2009 - 1:10:03 AM.) -- C:\Windows\system32\drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.6/16/2011 - 3:40:40 AM.) -- C:\Windows\system32\drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.3/5/2011 - 10:23:20 AM.) -- C:\Windows\system32\drivers\netBT.sys [261632] [MD5.A2F74975097F52A00745F9637451FDD8] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.4/27/2011 - 7:41:34 AM.) -- C:\Windows\system32\drivers\ntfs.sys [1659776] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.7/14/2009 - 1:00:41 AM.) -- C:\Windows\system32\drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini- port/call-manager driver.) (.3/5/2011 - 11:52:35 AM.) -- C:\Windows\system32\drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.7/14/2009 - 1:09:09 AM.) -- C:\Windows\system32\drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.3/5/2011 - 10:21:56 AM.) -- C:\Windows\system32\drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.3/5/2011 - 2:34:02 PM.) -- C:\Windows\system32\drivers\volsnap.sys [295808] ~ Scan Generic Processes in 00mn AMs

---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 2/4077 ~ Mes musiques (My Musics) : 3/12 ~ Mes Videos (My Videos) : 2/67 ~ Mes Favoris (My Favorites) : 3/29 ~ Mes Documents (My Documents) : 8/3485 ~ Mon Bureau (My Desktop) : 14/8523 ~ Menu demarrer (Programs) : 8/131 ~ Scan Hidden Files in 16mn AMs

---\\ Processus lancés [MD5.A1F86A5A0DA1BEC12B7DD19C6234BB15] - (...) -- C:\Users\ANONYMOUS\Local Settings\Apps\F.lux\flux.exe [966656] [PID.2776] [MD5.A07E8935CC8DCE6DB787DC99129CA17C] - (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [1305408] [PID.2940] [MD5.E5CEAE03ADBE620AB405FC609B6C978D] - (.D-Link Corp. - D-Link WLAN Application.) -- C:\Program Files (x86)\D-Link\DWA-125 revA\AirGCFG.exe [995328] [PID.3028] [MD5.C0E0151199EC1BE8007438308616BC06] - (.Wireless Service - ANIWZCS2 launcher for Windows..) -- C:\Program Files (x86)\D-Link\DWA-125 revA\WZCSLDR2.exe [122880] [PID.3044] [MD5.694F9DF744C0A9AB702B6B4AF25C7EDE] - (.MetaQuotes Software Corp. - MetaTrader.) -- C:\Program Files (x86)\MetaTrader - AAAFx\terminal.exe [2795184] [PID.4112] [MD5.C053EDA58002E7A809CB4E7035313F0C] - (.Binary Fortress Software - AppHook x86.) -- C:\Program Files (x86)\DisplayFusion\AppHookx86.exe [95640] [PID.4656] [MD5.BCD9CBF0621F9A6767276A2E0BF1DD15] - (.Google - Google Talk.) -- C:\Program Files (x86)\Google\Google Talk\googletalk.exe [3739648] [PID.2492] [MD5.67384147DD005E54D2C0A20408E28579] - (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe [1242448] [PID.3960] [MD5.5E101BF6336D3DEF4A588BF56BB2AA38] - (.Google Inc. - Google Chrome.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe [1036344] [PID.4272] [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (...) -- C:\Windows\SysWOW64\rundll32.exe [44544] [PID.4256] [MD5.A29999E6CF54648B4C9DA986A0AEB325] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [707072] [PID.4600] [MD5.9E1222C417291BC836210743624A8E5E] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [381248] [PID.] [MD5.9015BC03F62940527EC92D45EE89E46F] - (.Avira GmbH - Antivirus Scheduler.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [108289] [PID.] [MD5.FBBF761888B1B394ACD64333737485BE] - (.Acunetix Ltd. - Acunetix WVS Scheduler.) -- C:\Program Files (x86)\Acunetix\Web Vulnerability Scanner 7\WVSScheduler7.exe [675128] [PID.] [MD5.11A52CF7B265631DEEB24C6149309EFF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [64952] [PID.] [MD5.B8720A787C1223492E6F319465E996CE] - (.Avira GmbH - Antivirus On-Access Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [185089] [PID.] [MD5.790DB871FCDE140DED3F2F62C25FDA36] - (.Outertech - Cacheman - controls RAM and File Cache.) -- C:\Program Files (x86)\Cacheman\CachemanServ.exe [235872] [PID.] [MD5.4DB0907D750E0810309F8D8FA36625A6] - (.Pas de propriétaire - ANIWConnService.) -- C:\Program Files (x86)\D-Link\DWA-125 revA\ANIWConnService.exe [40960] [PID.] [MD5.A287668C7680E5D138C203F3302EB34F] - (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) -- C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1220608] [PID.] [MD5.816FD5A6F3C2F3D600900096632FC60E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [1150496] [PID.] [MD5.BD691091AC7D9713D8F0B07C6B099E6C] - (.NewTech Infosystems, Inc. - Backup Manager Module.) -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [62208] [PID.] [MD5.3A2BDD76E7D2A5F40A7174793D1BA794] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [75136] [PID.] [MD5.E3DC3CD33CA4B07D0FDA743EBAA6E021] - (.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2337144] [PID.] [MD5.70DDE3A86DBEB1D6C3C30AD687B1877A] - (.Acer - Acer Update Service.) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe [240160] [PID.] [MD5.9B08F70037CD7AAA87419C6C485C6567] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [432752] [PID.] [MD5.7548066DF68A8A1A56B043359F915F37] - (.Intel Corporation - RAID Monitor.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [354840] [PID.] [MD5.0FC29ADB3F634ED3E535A76395B470B5] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [79872] [PID.] [MD5.58B2C15F4D26E7E34ADE53CAC695FBE8] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [354416] [PID.] [MD5.0B82C21C79BC67ECF416F1E1655E5F65] - (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [11837440] [PID.] [MD5.94E920BE59B9AB65D95E582DBAA136AC] - (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti- Malware\mbamservice.exe [366152] [PID.] [MD5.9D1CCE440552500DED3A62F9D779CDB4] - (.Nero AG - NeroUpdate.) -- C:\Program Files (x86)\Nero\Update\NASvc.exe [503080] [PID.] [MD5.7E22DE30E222BFDFCEC7E77032BAF3CD] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2253120] [PID.] ~ Scan Processes Running in 00mn AMs

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G0 - GCSP: Preference [User Data\Default][HomePage] G2 - GCE: Preference [User Data\Default] [caehdcpeofiiigpdhbabniblemipncjj] Proxy Switchy! v.1.6.3 (Désactivé) G2 - GCE: Preference [User Data\Default] [dbpojpfdiliekbbiplijcphappgcgjfn] Ultimate Chrome Flag v.0.3.7 (Activé) G2 - GCE: Preference [User Data\Default] [fmknocfkgffdgekmfonabppnhdgmghem] Easy Youtube Video Downloader v.4.1 (Activé) G2 - GCE: Preference [User Data\Default] [fnjbmmemklcjgepojigaapkoodmkgbae] DivX HiQ v. (Activé) G2 - GCE: Preference [User Data\Default] [ggkljdkflooidjlkahdnfgodflkelkai] Fast YouTube Search v.1.2 (Activé) G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock v.2.4.32 (Activé) G2 - GCE: Preference [User Data\Default] [nneajnkjbffgblleaoojgaacokifdkhm] \u003Cvideo\u003E HTML5 DivX Plus Web Player v. (Activé) ~ Scan Google Browser in 00mn AMs

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\ANONYMOUS\AppData\Roaming\Mozilla\Firefox\Profiles\y6dert9v.default\prefs.js M3 - MFPP: Plugins - [ANONYMOUS] -- C:\Users\ANONYMOUS\AppData\Roaming\Mozilla\Firefox\Profiles\y6dert9v.default\searchplu gins\daemon-search.xml M3 - MFPP: Plugins - [ANONYMOUS] -- C:\Users\ANONYMOUS\AppData\Roaming\Mozilla\Firefox\Profiles\y6dert9v.default\searchplu gins\ShareazaWebSearch.xml M2 - MFEP: prefs.js [ANONYMOUS - y6dert9v.default\[email protected]] [illimitux] Illimitux v4.0 (. M2 - MFEP: prefs.js [ANONYMOUS - y6dert9v.default\{4D144BC3-23FB-47de-90C5- 63CCB0139CCF}] [] TradeManager-Plugin v1.0 (.Alibaba.) M2 - MFEP: prefs.js [ANONYMOUS - y6dert9v.default\{9c51bd27-6ed8-4000-a2bf- 36cb95c0c947}] [] Tamper Data v11.0.1 (.Adam Judson.) M2 - MFEP: prefs.js [ANONYMOUS - y6dert9v.default\{ACAA314B-EEBA-48e4-AD47- 84E31C44796C}] [] Free YouTube Download (Free Studio) Menu v11.0.1 (.DVDVideoSoft Ltd..) M2 - MFEP: prefs.js [ANONYMOUS - y6dert9v.default\{b9db16a4-6edc-47ec-a1f4- b86292ed211d}] [dwhelper] DownloadHelper v4.9.7 (.Michel Gutierrez.) M2 - MFEP: prefs.js [ANONYMOUS - y6dert9v.default\{D238F46A-64EC-11DE-9C5A- D54056D89593}] [] MediaBar v3.1 (.Discordia Limited. Portions copyright © Visicom Media. Dynamic Toolbar..) P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npdeployJava1.dll P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\NPOFF12.DLL P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.1.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin2.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin3.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin4.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin5.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin6.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin7.dll P2 - FPN: [HKLM] [] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll P2 - FPN: [HKLM] [] - (.Oracle Corporation - Next Generation Java Plug-in 10.1.0 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll P2 - FPN: [HKLM] [] - (.Cybelsoft - Plugin NPAPI Ma- # win64 # -- C:\Program Files\ma-\x64\nphardwaredetection.dll P2 - FPN: [HKLM] [] - (.Microsoft Corporation - Windows Activation Technologies Plugin for Mozilla.) -- C:\Windows\System32\Wat\npWatWeb.dll P2 - FPN: [HKCU] [ Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Update\\npGoogleUpdate3.dll P2 - FPN: [HKCU] [ Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Update\\npGoogleUpdate3.dll P2 - FPN: [HKCU] [] - (.Pando Networks - Pando Web Plugin.) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll ~ Scan Firefox Browser in 00mn AMs

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd- ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB- 00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\System32\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ Scan IE Browser in 00mn AMs

---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;; R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Scan Proxy management in 00mn AMs

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe ~ Scan Keys in 00mn AMs

---\\ Redirection du fichier Hosts (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Scan Hosts File in 00mn AMs

---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC- 5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74- 9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Increase performance and video formats for your HTML5

---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: DAEMON Tools Toolbar [64Bits] - {32099AAC-C132-4136-9E9A- 4E364A424E17} . (.Pas de propriétaire - ToolBand Module.) -- C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ~ Scan Toolbar in 00mn AMs

---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe O4 - HKCU\..\Run: [F.lux] . (...) -- C:\Users\ANONYMOUS\Local Settings\Apps\F.lux\flux.exe O4 - HKCU\..\Run: [DisplayFusion] . (.Binary Fortress Software - DisplayFusion.) -- C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O4 - HKLM\..\Wow6432Node\Run: [D-Link D-Link DWA-125] . (.D-Link Corp. - D-Link WLAN Application.) -- C:\Program Files (x86)\D-Link\DWA-125 revA\AirGCFG.exe O4 - HKLM\..\Wow6432Node\Run: [WZCSLDR2] . (.Wireless Service - ANIWZCS2 launcher for Windows..) -- C:\Program Files (x86)\D-Link\DWA-125 revA\WZCSLDR2.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-4057456930-615517595-1230037521-1005-4057456930-615517595- 1230037521-1000\..\Run: [F.lux] . (...) -- C:\Users\ANONYMOUS\Local Settings\Apps\F.lux\flux.exe O4 - HKUS\S-1-5-21-4057456930-615517595-1230037521-1005-4057456930-615517595- 1230037521-1000\..\Run: [DisplayFusion] . (.Binary Fortress Software - DisplayFusion.) -- C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe O4 - HKUS\S-1-5-21-4057456930-615517595-1230037521-1005-4057456930-615517595- 1230037521-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O4 - HKUS\S-1-5-21-4057456930-615517595-1230037521-1005-4057456930-615517595- 1230037521-1000\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ~ Scan Application in 00mn AMs

---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DFÜ-Optimierer.lnk . (.Mirko Böer.) -- C:\Program Files (x86)\DFÜ- Optimierer\dfueopt.exe O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\ANONYMOUS\Desktop\I-Doser.lnk . ( -- C:\Program Files (x86)\IDoser v4\IDoser.exe O4 - Global Startup: C:\Users\ANONYMOUS\Desktop\Particles.lnk . (...) -- C:\Program Files (x86)\Steam\steamapps\tf2owned\team fortress 2\tf\particles O4 - Global Startup: C:\Users\ANONYMOUS\Desktop\Saved.lnk . (...) -- C:\Users\ANONYMOUS\Desktop\Saved O4 - Global Startup: C:\Users\ANONYMOUS\Desktop\Update Checker.lnk . ( -- C:\Program Files (x86)\\UpdateChecker.exe O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\AAA Logo 2010.lnk . (.SWGSOFT.COM.) -- C:\Program Files (x86)\AAALOGO2010\alogo.exe O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Gyazo.lnk . (...) -- C:\Program Files (x86)\Gyazo\gyazowin.exe O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\VMware Workstation.lnk . (.VMware, Inc..) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe O4 - Global Startup: C:\Users\ANONYMOUS\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk . (.Yahoo! Inc..) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe ~ Scan Global Startup in 00mn AMs

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8) O8 - Extra context menu item: E&xport to Microsoft Excel - (.not file.) - C:\Program Files\MICROS~1\Office12\EXCEL.exe O8 - Extra context menu item: Free YouTube to MP3 Converter . (...) -- C:\Users\ANONYMOUS\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3conver ter.htm O8 - Extra context menu item: Télécharger en Utilisant &BitSpirit . (...) -- C:\Program Files (x86)\BitSpirit\bsurl.htm ~ Scan IE Menu Contextuel in 00mn AMs

---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de .) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL ~ Scan Winsock in 00mn AMs

---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{33303AA7-F9A5-4BCF-BD37-30A3270856F9}: DhcpNameServer = O17 - HKLM\System\CCS\Services\Tcpip\..\{843DDCED-7A41-4973-A9D4-2D9ABB536B3D}: DhcpNameServer = O17 - HKLM\System\CCS\Services\Tcpip\..\{9F5E040E-AF2E-410A-A65F-3E0D8B4D5DA3}: DhcpNameServer = O17 - HKLM\System\CCS\Services\Tcpip\..\{B108EB49-2193-43D2-AD49-91D1FBE45651}: DhcpNameServer = O17 - HKLM\System\CS1\Services\Tcpip\..\{33303AA7-F9A5-4BCF-BD37-30A3270856F9}: DhcpNameServer = O17 - HKLM\System\CS1\Services\Tcpip\..\{843DDCED-7A41-4973-A9D4-2D9ABB536B3D}: DhcpNameServer = O17 - HKLM\System\CS1\Services\Tcpip\..\{9F5E040E-AF2E-410A-A65F-3E0D8B4D5DA3}: DhcpNameServer = O17 - HKLM\System\CS1\Services\Tcpip\..\{B108EB49-2193-43D2-AD49-91D1FBE45651}: DhcpNameServer = O17 - HKLM\System\CS2\Services\Tcpip\..\{33303AA7-F9A5-4BCF-BD37-30A3270856F9}: DhcpNameServer = O17 - HKLM\System\CS2\Services\Tcpip\..\{843DDCED-7A41-4973-A9D4-2D9ABB536B3D}: DhcpNameServer = O17 - HKLM\System\CS2\Services\Tcpip\..\{9F5E040E-AF2E-410A-A65F-3E0D8B4D5DA3}: DhcpNameServer = O17 - HKLM\System\CS2\Services\Tcpip\..\{B108EB49-2193-43D2-AD49-91D1FBE45651}: DhcpNameServer = ~ Scan Domain in 00mn AMs

---\\ Protocole additionnel (O18) O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: ms-itss [64Bits] - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710- 00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL ~ Scan Protocole Additionnel in 00mn AMs

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ Scan SSODL in 00mn AMs

---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Acunetix WVS Scheduler v7 (AcuWVSSchedulerv7) . (.Acunetix Ltd. - Acunetix WVS Scheduler.) - C:\Program Files (x86)\Acunetix\Web Vulnerability Scanner 7\WVSScheduler7.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe O23 - Service: Cacheman Service (CachemanService) . (.Outertech - Cacheman - controls RAM and File Cache.) - C:\Program Files (x86)\Cacheman\CachemanServ.exe O23 - Service: D_Link_DWA-125 Service (D_Link_DWA-125) . (.Wireless Service - ANIWZCS2 Service Launcher.) - C:\Program Files (x86)\D-Link\DWA-125 revA\ANIWZCSdS.exe O23 - Service: D_Link_DWA-125_WPS Service (D_Link_DWA-125_WPS) . (.Pas de propriétaire - ANIWConnService.) - C:\Program Files (x86)\D-Link\DWA-125 revA\ANIWConnService.exe O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: GRegService (Greg_Service) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: C:\Program Files (x86)\Nero\Update\NASvc.exe (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NewTech Infosystems, Inc. - Backup Manager Module.) - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe O23 - Service: Performance Service (nTuneService) . (.NVIDIA - NVIDIA Performance Service.) - C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 285.6.) - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\SysWOW64\PnkBstrA.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: TeamViewer 6 (TeamViewer6) . (.TeamViewer GmbH - TeamViewer Remote Control Application.) - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe O23 - Service: Updater Service (Updater Service) . (.Acer - Acer Update Service.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware- authd.exe O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe O23 - Service: VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe ~ Scan Services in 00mn AMs

---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Scan Desktop Component in 00mn AMs

---\\ BootExecute (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ Scan Keys in 00mn AMs

---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21- 4057456930-615517595-1230037521-1000Core.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21- 4057456930-615517595-1230037521-1000UA.job [MD5.47C1DE0A890613FFCFF1D67648EEDF90] [APT] [Adobe Reader and Acrobat Manager] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [Google Updater and Installer] (.Google Inc..) -- C:\Users\ANONYMOUS\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21- 4057456930-615517595-1230037521-1000Core] (.Google Inc..) -- C:\Users\ANONYMOUS\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21- 4057456930-615517595-1230037521-1000UA] (.Google Inc..) -- C:\Users\ANONYMOUS\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.6E3245DF783E58375B3465F03274743E] [APT] [Java Update Scheduler] (.Sun Microsystems, Inc..) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [MD5.00000000000000000000000000000000] [APT] [TuneUpUtilities_Task_BkGndMaintenance] (...) -- C:\Program Files (x86)\TuneUp Utilities 2010\OneClick.exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{070BC0AD-92A4-443B-9F2F- 8D52D60C0953}] (...) -- C:\Program Files (x86)\LucasArts\Infernal Machine\Jones3D.exe (.not file.) [MD5.5E101BF6336D3DEF4A588BF56BB2AA38] [APT] [{3286E18C-AC20-49F4-BE57- 07929EBCEDBF}] (.Google Inc..) -- c:\users\ANONYMOUS\appdata\local\google\chrome\application\chrome.exe [MD5.2FDC5BF4192028E59916036BFFA5C6C0] [APT] [{C84A4776-9CF9-4E04-97DE- 1DFAA69E21B8}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [MD5.2FDC5BF4192028E59916036BFFA5C6C0] [APT] [{FAF26CF3-416E-49A8-92F9- 17FF2FD6625B}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ~ Scan Scheduled Task in 03mn AMs

---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953- 00A0C90347FF} . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll O40 - ASIC: Java (Sun) [64Bits] - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Oracle Corporation - Java(TM) Deployment Library.) -- C:\Program Files\Java\jre7\bin\deploy.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab- 0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153- 00C04F79FAA6} . (.Microsoft Corporation - Windows Media Player.) -- C:\Windows\system32\wmp.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85- 00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Scan Active Setup in 00mn AMs

---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (anodlwf) . (.Pas de propriétaire - NDIS 6.0 Filter Driver.) - C:\Windows\system32\DRIVERS\anodlwfx.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\system32\Drivers\dfsc.sys O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\system32\drivers\discache.sys O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\system32\DRIVERS\dtsoftbus01.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (mwlPSDFilter) . (.Egis Technology Inc. - PSD Filter Driver.) - C:\Windows\system32\DRIVERS\mwlPSDFilter.sys O41 - Driver: (mwlPSDNServ) . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) - C:\Windows\system32\DRIVERS\mwlPSDNServ.sys O41 - Driver: (mwlPSDVDisk) . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) - C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\system32\DRIVERS\netbios.sys O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\system32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\system32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\system32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\system32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\system32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\system32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (truecrypt) . (.TrueCrypt Foundation - TrueCrypt Driver.) - C:\Windows\system32\drivers\truecrypt.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\system32\DRIVERS\wfplwf.sys O41 - Driver: Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (ws2ifsl) . (.Microsoft Corporation - Couche IFS Winsock2.) - C:\Windows\system32\drivers\ws2ifsl.sys ~ Scan Drivers in 00mn AMs

---\\ Logiciels installés (O42) O42 - Logiciel: $APPNAME> 2.31 - (.Bytescout Software.) [HKLM] -- Bytescout XLS Viewer_is1 O42 - Logiciel: 3D Ripper DX v1.8.1 - (.Roman Lut.) [HKLM] -- 3D Ripper DX_is1 O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {55D55008-E5F6-47D6-B16F-B2A40D4D145F} O42 - Logiciel: AAA Logo Business Edition 3.10 - ( [HKLM] -- AAA Logo 3.10 Business_is1 O42 - Logiciel: ASIO4ALL - (.Pas de propriétaire.) [HKLM] -- ASIO4ALL O42 - Logiciel: AV Voice Changer Software DIAMOND 6.0 - (.Pas de propriétaire.) [HKLM] -- AV Voice Changer Software DIAMOND 6.0 O42 - Logiciel: AVI ReComp 1.4.5 - (.Mateusz Gola (aka Prozac).) [HKLM] -- AVI ReComp O42 - Logiciel: AVS Audio Converter version 6.2 - (.Online Media Technologies Ltd..) [HKLM] - - AVS Audio Converter 6.2_is1 O42 - Logiciel: AVS Update Manager 1.0 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Update Manager_is1 O42 - Logiciel: AVS Video Converter 8 - (.Online Media Technologies Ltd..) [HKLM] -- AVS4YOU Video Converter 7_is1 O42 - Logiciel: AVS4YOU Software Navigator 1.4 - (.Online Media Technologies Ltd..) [HKLM] -- AVS4YOU Software Navigator_is1 O42 - Logiciel: Acer Backup Manager - (.NewTech Infosystems.) [HKLM] -- InstallShield_{30075A70-B5D2-440B-AFA3-FB2021740121} O42 - Logiciel: Acer Registration - (.Acer Incorporated.) [HKLM] -- Acer Registration O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM] -- Acer Screensaver O42 - Logiciel: Acer Updater - (.Acer Incorporated.) [HKLM] -- {EE171732-BEB4-4576-887D- CB62727F01CA} O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54- 5A09-4579-90E1-C93498E230D9} O42 - Logiciel: - (.Adobe Systems Incorporated.) [HKLM] -- {287ECFA4-719A- 2143-A09B-D6A12DE54E40} O42 - Logiciel: ActivePerl 5.12.3 Build 1204 (64-bit) - (.ActiveState.) [HKLM] -- {79CFB0AF- 7F21-415D-AF84-B1F3DEE44ED9} O42 - Logiciel: Acunetix Web Vulnerability Scanner 7.0 - (.Acunetix.) [HKLM] -- {2B040D56- BD5A-4990-A50C-33CDBCE03112}_is1 O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {ACEB2BAF-96DF- 48FD-ADD5-43842D4C443D} O42 - Logiciel: Adobe Connect Add-in - (.Pas de propriétaire.) [HKCU] -- Adobe Connect Add- in O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 11 Plugin 64-bit - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader X (10.1.1) - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-AA1000000001} O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM] -- {b2ec4a38-b545-4a00-8214- 13fe0e915e6d} O42 - Logiciel: Aiseesoft Streaming Video Recorder - (.Pas de propriétaire.) [HKLM] -- Aiseesoft Streaming Video Recorder_is1 O42 - Logiciel: Amazon MP3 Downloader 1.0.9 - (.Pas de propriétaire.) [HKLM] -- Amazon MP3 Downloader O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {6A3F9D74-BB80-4451- 8CA1-4B3A857F1359} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5- 915A-F0FC0A1B7BFE} O42 - Logiciel: Arbitro - (.Pas de propriétaire.) [HKLM] -- Arbitro O42 - Logiciel: Asoftech Speeder - (.Pas de propriétaire.) [HKLM] -- {4119178B-EC08-4017- 98BA-FF7E76B69918} O42 - Logiciel: Assassin's Creed Brotherhood - (.Pas de propriétaire.) [HKLM] -- Steam App 48190 O42 - Logiciel: Assassin's Creed Brotherhood - (.Ubisoft.) [HKLM] -- {BE4BA698-8533-4F77- 9559-C7F3F78C0B05} O42 - Logiciel: Audacity 1.2.6 - (.Pas de propriétaire.) [HKLM] -- Audacity_is1 O42 - Logiciel: Auslogics BoostSpeed - (.Auslogics Software Pty Ltd.) [HKLM] -- {7216871F- 869E-437C-B9BF-2A13F2DCE63F}_is1 O42 - Logiciel: AviSynth 2.5 - (.Pas de propriétaire.) [HKLM] -- AviSynth O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop O42 - Logiciel: Backup Manager Advance - (.NewTech Infosystems.) [HKLM] -- {30075A70- B5D2-440B-AFA3-FB2021740121} O42 - Logiciel: Better Explorer - (.Pas de propriétaire.) [HKLM] -- Better Explorer O42 - Logiciel: BitSpirit v3.6.0.403 Stable - (.LANSPIRIT.NET.) [HKLM] -- BitSpirit_is1 O42 - Logiciel: Bitcoin - (.Bitcoin project.) [HKCU] -- Bitcoin O42 - Logiciel: Brother MFL-Pro Suite DCP-135C - (.Brother Industries, Ltd..) [HKLM] -- {A3FEC306-FBFF-4B0D-95B9-F9C67C65079E} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696- F40D983F3B07}_is1 O42 - Logiciel: Cacheman - (.Outertech.) [HKLM] -- Cacheman O42 - Logiciel: CamStudio - (.Pas de propriétaire.) [HKLM] -- CamStudio O42 - Logiciel: Cheat Engine 6.0 - (.Dark Byte.) [HKLM] -- Cheat Engine 6.0_is1 O42 - Logiciel: Comm100 Live Chat Visitor Monitor - (.Comm100 Network Corporation.) [HKLM] -- Com.Comm100.LiveChat.AirVisitorMonitor.En.98637D25BBBF4FE1AADC1A429B4293B71C BA63FE.1 O42 - Logiciel: Comm100 Live Chat Visitor Monitor - (.Comm100 Network Corporation.) [HKLM] -- {4234AB23-ABC9-687F-58FF-E9B08344C46E} O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX O42 - Logiciel: Counter-Strike - (.Valve.) [HKLM] -- Steam App 10 O42 - Logiciel: Counter-Strike: Condition Zero - (.Valve.) [HKLM] -- Steam App 80 O42 - Logiciel: Curse Client - (.Curse.) [HKCU] -- 090215de958f1060 O42 - Logiciel: D-Link DWA-125 - (.D-Link.) [HKLM] -- {E45CACFE-0576-4375-A84F- C34B99A7B652} O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite O42 - Logiciel: DAEMON Tools Toolbar - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Toolbar O42 - Logiciel: DFÜ-Optimierer 1.40 - (.Pas de propriétaire.) [HKLM] -- DFÜ-Optimierer O42 - Logiciel: DRKSpider 3.01 - (.Leandro H. Fernández.) [HKLM] -- DRKSpider O42 - Logiciel: DisplayFusion 3.4.0 - (.Binary Fortress Software.) [HKLM] -- B076073A-5527- 4f4f-B46B-B10692277DA2_is1 O42 - Logiciel: Dream Day First Home - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2- B88C-5FA03AA848C7-113832110} O42 - Logiciel: EVGA Precision 2.0.4 - (.EVGA Corporation.) [HKLM] -- Precision O42 - Logiciel: EarthDesk - (.Xeric Design, Ltd..) [HKLM] -- EarthDesk O42 - Logiciel: Elemental Trader 1.5 - (.Forex Traders Daily.) [HKLM] -- Elemental Trader_is1 O42 - Logiciel: F.lux - (.Pas de propriétaire.) [HKCU] -- Flux O42 - Logiciel: Fann2MQL - (.PipsComfort.) [HKLM] -- {B0ED7FB3-2012-41FB-8E51- D65C2E85A6B1} O42 - Logiciel: Update Checker - (.Pas de propriétaire.) [HKLM] -- O42 - Logiciel: FileZilla Client 3.5.0 - (.Pas de propriétaire.) [HKLM] -- FileZilla Client O42 - Logiciel: Firebird SQL Server - MAGIX Edition - (.MAGIX AG.) [HKLM] -- {AF37F9DE- 0726-439E-BC10-43D9195394D0} O42 - Logiciel: Fraps - (.Pas de propriétaire.) [HKLM] -- Fraps O42 - Logiciel: Free FLV Converter V 6.97.0 - (.Koyote Soft.) [HKLM] -- Free FLV Converter_is1 O42 - Logiciel: Free ISO Creator version 2.8 - ( [HKLM] -- Free ISO Creator (by minidvdsoft)_is1 O42 - Logiciel: Free YouTube to MP3 Converter version - (.DVDVideoSoft Ltd..) [HKLM] -- Free YouTube to MP3 Converter_is1 O42 - Logiciel: GIMP 2.6.10 - (.The GIMP Team.) [HKLM] -- WinGimp-2.0_is1 O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {1EE04769-91C4-4A06-92B7-FCAFE6BABDD9} O42 - Logiciel: GameGain - (.PGWARE LLC.) [HKLM] -- GameGain_is1 O42 - Logiciel: GnuWin32: OpenSSL-0.9.8h-1 - (.GnuWin32.) [HKLM] -- OpenSSL-0.9.8h- 1_is1 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM] -- {2934DCB0-F8EE-11E0-A4A5- B8AC6F97B88E} O42 - Logiciel: Google Talk (remove only) - (.Pas de propriétaire.) [HKLM] -- {226b64e8-dc75- 4eea-a6c8-abcb496320f2}-Google Talk O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304- 9AB6-BC44E68B55E2} O42 - Logiciel: Gyazo 1.0 - (.Toshiyuki Masui.) [HKLM] -- {6DB8C365-E719-4BA5-9594- 10DFC244D3FD}_is1 O42 - Logiciel: HP Officejet J4500 Series - (.HP.) [HKLM] -- {E11448F2-0B44-4239-B04E- D88FE743E929} O42 - Logiciel: HamsterFreeVideoConverter - (.HamsterSoft, Inc..) [HKLM] -- Hamster Free Video Converter_is1 O42 - Logiciel: Harmony Assistant - (.Myriad SARL.) [HKLM] -- Harmony Assistant O42 - Logiciel: Hotkey Utility - (.Acer Incorporated.) [HKLM] -- Hotkey Utility O42 - Logiciel: I-Doser v4 - (.Pas de propriétaire.) [HKCU] -- I-Doser v4 O42 - Logiciel: IP Locator version 1.0 - (. [HKLM] -- {0493C616-670D-431D-98D7-9A020CD74425}_is1 O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM] -- Identity Card O42 - Logiciel: Inpaint 2.4.1 - (.Teorex.) [HKLM] -- {30283233-3BE6-473D-A47C- ED964A2F78B4}_is1 O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3 O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA- 6F46-4D3E-85AF-78631D9AD8B8} O42 - Logiciel: Intel(R) Network Connections - (.Intel.) [HKLM] -- PROSetDX O42 - Logiciel: Intel(R) Network Connections - (.Intel.) [HKLM] -- {DEEECCDA- D9BB-4DDC-9CA8-2A6ECC49131C} O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM] -- {9068B2BE- D93A-4C0A-861C-5E35E2C0E09E} O42 - Logiciel: Internet Explorer - (.Microsoft Corporation..) [HKLM] -- Internet Explorer O42 - Logiciel: Invisible Secrets 4 - (.NeoByte Solutions.) [HKLM] -- Invisible Secrets 4 O42 - Logiciel: JMicron JMB36X Driver - (.JMicron Technology Corp..) [HKLM] -- {3A1B5D40- 41E9-43FA-8C7B-A8667F5586EF} O42 - Logiciel: James Cameron's AVATAR(tm): THE GAME - (.Ubisoft.) [HKLM] -- {7E19B002- 4CA3-4C9F-BA92-91D101B97219} O42 - Logiciel: Java(TM) 6 Update 20 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4- 039D-4CA4-87B4-2F83216020F0} O42 - Logiciel: Java(TM) 6 Update 25 (64-bit) - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4- 87B4-2F86416025FF} O42 - Logiciel: Java(TM) 6 Update 29 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4- 039D-4CA4-87B4-2F83216020FF} O42 - Logiciel: Java(TM) 7 Update 1 (64-bit) - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4- 87B4-2F86417001FF} O42 - Logiciel: K-Lite Codec Pack 6.1.0 (Basic) - (.Pas de propriétaire.) [HKLM] -- KLiteCodecPack_is1 O42 - Logiciel: LADSPA_plugins-win-0.4.15 - (.Audacity Team.) [HKLM] -- LADSPA_plugins- win_is1 O42 - Logiciel: Laggsta 2.1.0 - ( [HKLM] -- {8453C603-E376-4473-9308- 6ADDF605F8B3}_is1 O42 - Logiciel: LanSpy - ( [HKLM] -- LanSpy_is1 O42 - Logiciel: League of Legends - (.Pas de propriétaire.) [HKLM] -- League of Legends_is1 O42 - Logiciel: League of Legends - ACE Client by Matricus - (.Matricus & Riot Games.) [HKLM] -- ACE LoL Client O42 - Logiciel: Leawo Free MP4 Converter version - (.Pas de propriétaire.) [HKLM] -- {14021E77-2FC1-4972-8C51-08808CD62838}_is1 O42 - Logiciel: Logiciel Logitech Unifying 2.00 - (.Logitech.) [HKLM] -- Logitech Unifying O42 - Logiciel: MAGIX Music Maker 16 Premium Version à télécharger - (.MAGIX AG.) [HKLM] -- MAGIX Music Maker 16 Premium Version à télécharger F O42 - Logiciel: MAGIX Screenshare - (.MAGIX AG.) [HKLM] -- MAGIX Screenshare F O42 - Logiciel: MAGIX Speed burnR - (.MAGIX AG.) [HKLM] -- MAGIX Speed burnR F O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10- 9A5E3257BD94} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6- F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: (64 bits) - (.Cybelsoft.) [HKLM] -- {77FF1F55-E7D8-4EC2- A0DB-9DFB0F9B7354} O42 - Logiciel: Magic Reversi 4.00 - (.Pas de propriétaire.) [HKLM] -- MagicReversi_is1 O42 - Logiciel: MagicCamera 7.2.1 - (.ShiningMorning Inc..) [HKLM] -- {70376A8D-C6E7- 4A61-9E30-42AD268CD45D}_is1 O42 - Logiciel: Malwarebytes' Anti-Malware version - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: MediaBar - (.Discordia, LTD.) [HKLM] -- Shareaza MediaBar O42 - Logiciel: MediaCUB - (.zoug.) [HKLM] -- {B1493D8A-C782-4ED3-A34D- 8A9B8D9925BF} O42 - Logiciel: Melody Assistant - (.Myriad SARL.) [HKLM] -- Melody Assistant O42 - Logiciel: Merriam Websters Spell Jam - (.Oberon Media.) [HKLM] -- {82C36957-D2B8- 4EF2-B88C-5FA03AA848C7-112662477} O42 - Logiciel: Messenger Plus! 5 - (.Yuna Software.) [HKLM] -- Messenger Plus! O42 - Logiciel: MetaTrader 4.00 - (.MetaQuotes Software Corp..) [HKLM] -- {3E5CBADD- 2E51-47C1-BBE2-B802DB6DA56A} O42 - Logiciel: MetaTrader 5 - (.MetaQuotes Software Corp..) [HKLM] -- MetaTrader 5 O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643} O42 - Logiciel: Microsoft .NET Framework 4 Extended - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Extended O42 - Logiciel: Microsoft .NET Framework 4 Extended - (.Microsoft Corporation.) [HKLM] -- {8E34682C-8118-31F1-BC4C-98CD9675E1C2} O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA- AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM] -- {F2508213-9989-4E85-A078-72BE483917EF} O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM] - - {4CB0307C-565E-4441-86BE-0DF2E4FB828C} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB- 199F86A2CD93} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58- 7EAF7B0B2862} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}{8283FD64-6A3B-4104-9E12- 7CA25EF29A1A} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12- 7CA25EF29A1A} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}{8283FD64-6A3B-4104-9E12- 7CA25EF29A1A} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12- 7CA25EF29A1A} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-00BA-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0100-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0101-040C-0000-0000000FF1CE}{CF3C20A6-47B7-48DA-95C1- 6FBB5A439AF8} O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] - - {90120000-0015-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office File Validation Add-In - (.Microsoft Corporation.) [HKLM] -- {90140000-2005-0000-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Groove MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] - - {90120000-00BA-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Language Pack 2007 - French/Français - (.Microsoft Corporation.) [HKLM] -- O42 - Logiciel: Microsoft Office O MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0100-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE} O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM] -- {95120000-00AF-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM] -- PROPLUS O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}{3E8EA473-ECCE-405F- A9CA-59446AEADD3A} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_PROPLUS_{3E8EA473-ECCE- 405F-A9CA-59446AEADD3A} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}{928D7B99-2BEA-49F9- 83B8-20FA57860643} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9- 83B8-20FA57860643} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}{1FF96026-A04A-4C3E- B50A-BB7022654D0F} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E- B50A-BB7022654D0F} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}{71F055E8-E2C6-4214- BB3D-BFE03561B89E} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214- BB3D-BFE03561B89E} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}{2C95E7EE-FEA7-4B3A- A6E5-DF90A88B816A} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_PROPLUS_{2C95E7EE-FEA7- 4B3A-A6E5-DF90A88B816A} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}{2314F9A1-126F-45CC- 8A5E-DFAF866F3FBC} O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{2314F9A1-126F- 45CC-8A5E-DFAF866F3FBC} O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0017-040C-0000-0000000FF1CE}{879D8136-C3A7-4A13- A8F4-309467087372} O42 - Logiciel: Microsoft Office SharePoint Designer MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0017-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] - - {90120000-006E-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Suite Activation Assistant - (.Microsoft Corporation.) [HKLM] -- {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E} O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office X MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0101-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26- 4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d} O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {EE936C7A-EA40-31D5-9B65-8E3E089C3828} O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {8338783A-0968-3B85-AFC7-BAAE0A63DC50} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {350AA351-21FA-3270-8B7A-835434E766AD} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {8220EEFE-38CD-377E-8595-13398D740ACE} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 - (.Microsoft Corporation.) [HKLM] -- {820B6609-4C97-3A2B-B644-573B06A0F0CC} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM] -- {DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E} O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} O42 - Logiciel: Microsoft Visual C++ Run Time Lib Setup - (.Microsoft.) [HKLM] -- {AAF4238F- 7C29-451D-9925-C753271A5728} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E- B5EE-8B92BF30A710} O42 - Logiciel: Mirror's Edge - (.DICE.) [HKLM] -- Steam App 17410 O42 - Logiciel: Mises à jour NVIDIA 1.5.20 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952- 0186-46C3-BAEC-A80AA35AC5B8}_Display.Update O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-040C-0000-0000000FF1CE} O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack O42 - Logiciel: Mozilla Firefox 4.0.1 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Firefox 4.0.1 (x86 en-US) O42 - Logiciel: Mumble and Murmur - (.Mumble.) [HKLM] -- Mumble O42 - Logiciel: MyWinLocker - (.Egis Technology Inc..) [HKLM] -- {68301905-2DEA-41CE- A4D4-E8B443B099BA} O42 - Logiciel: N-Stalker Security Scanner 7.0 (Free Edition) - (.N-Stalker, Inc.) [HKLM] -- N-Stalker Free Web Application Security O42 - Logiciel: NVIDIA 3D Vision Controller Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIA StereoUSB Driver O42 - Logiciel: NVIDIA 3D Vision Video Player - (.NVIDIA Corporation.) [HKLM] -- {FE3B9518- 9FF3-4D89-8A8D-E540C9CCAF3B} O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers O42 - Logiciel: NVIDIA Logiciel système PhysX 9.11.0621 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA Performance - (.NVIDIA Corporation.) [HKLM] -- InstallShield_{7C7F30F4-94E7-4AA8-8941-90C4A80C68BF} O42 - Logiciel: NVIDIA Performance - (.NVIDIA Corporation.) [HKLM] -- {7C7F30F4-94E7- 4AA8-8941-90C4A80C68BF} O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {7F6D7FD9-648D-4DD9- BB6E-3990C675ECA4} O42 - Logiciel: NVIDIA Pilote 3D Vision 285.62 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision O42 - Logiciel: NVIDIA Pilote audio HD : - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 285.62 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB O42 - Logiciel: NVIDIA Pilote graphique 285.62 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo O42 - Logiciel: Nero 9 Essentials - (.Nero AG.) [HKLM] -- {0638268c-b727-4f78-a92b- a4f68176e670} O42 - Logiciel: Nero BurnLite 10 - (.Nero AG.) [HKLM] -- {842BEE12-CCCB-43F4-ABAF- CBA6DFE2583D} O42 - Logiciel: Nero BurnLite 10 - (.Nero AG.) [HKLM] -- {AB627AF2-9C7E-4DBD-816B- 3B2646B81E89} O42 - Logiciel: Nero Control Center 10 - (.Nero AG.) [HKLM] -- {6DFB899F-17A2-48F0-A533- ED8D6866CF38} O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {bd5ca0da-71ad-43da-b19e- 6eee0c9adc9a} O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {f4041dce-3fe1-4e18-8a9e- 9de65231ee36} O42 - Logiciel: Nero ControlCenter 10 Help (CHM) - (.Nero AG.) [HKLM] -- {523B2B1B-D8DB- 4B41-90FF-C4D799E2758A} O42 - Logiciel: Nero Core Components 10 - (.Nero AG.) [HKLM] -- {2436F2A8-4B7E-4B6C- AE4E-604C84AA6A4F} O42 - Logiciel: Nero DiscSpeed - (.Nero AG.) [HKLM] -- {869200db-287a-4dc0-b02b- 2b6787fbcd4c} O42 - Logiciel: Nero DiscSpeed Help - (.Nero AG.) [HKLM] -- {cc019e3f-59d2-4486-8d4b- 878105b62a71} O42 - Logiciel: Nero DriveSpeed - (.Nero AG.) [HKLM] -- {33cf58f5-48d8-4575-83d6- 96f574e4d83a} O42 - Logiciel: Nero DriveSpeed Help - (.Nero AG.) [HKLM] -- {e5c7d048-f9b4-4219-b323- 8bdb01a2563d} O42 - Logiciel: Nero Express Help - (.Nero AG.) [HKLM] -- {83202942-84b3-4c50-8622- b8c0aa2d2885} O42 - Logiciel: Nero InfoTool - (.Nero AG.) [HKLM] -- {fbcdfd61-7dcf-4e71-9226- 873ba0053139} O42 - Logiciel: Nero InfoTool Help - (.Nero AG.) [HKLM] -- {20400dbd-e6db-45b8-9b6b- 1dd7033818ec} O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM] -- {e8a80433-302b-4ff1-815d-fcc8eac482ff} O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM] -- {dba84796-8503-4ff0-af57- 1747dd9a166d} O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM] -- {7748ac8c-18e3-43bb-959b- 088faea16fb2} O42 - Logiciel: Nero StartSmart Help - (.Nero AG.) [HKLM] -- {2348b586-c9ae-46ce-936c- a68e9426e214} O42 - Logiciel: Nero StartSmart OEM - (.Nero AG.) [HKLM] -- {4D43D635-6FDA-4fa5-AA9B- 23CF73D058EA} O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM] -- {65BB0407-4CC8-4DC7-952E- 3EEFDF05602A} O42 - Logiciel: NeroExpress - (.Nero AG.) [HKLM] -- {595a3116-40bb-4e0f-a2e8- d7951da56270} O42 - Logiciel: NetTools 5.0 - (.Mohammad Ahmadi Bidakhvidi.) [HKLM] -- NetTools_is1 O42 - Logiciel: NetTransport 2.96c.620 - (.Xi.) [HKLM] -- {78D2B9D0-E680-4295-9830- 6B23397B4746}_is1 O42 - Logiciel: Notepad++ - (.Pas de propriétaire.) [HKLM] -- Notepad++ O42 - Logiciel: 3.2 - ( [HKLM] -- {266517E6-D866-439D- 919C-B8B1A52E6080} O42 - Logiciel: OpenVPN 2.1.3 - (.Pas de propriétaire.) [HKLM] -- OpenVPN O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238} O42 - Logiciel: Pando Media Booster - (.Pando Networks Inc..) [HKLM] -- {980A182F-E0A2- 4A40-94C1-AE0C1235902E} O42 - Logiciel: Photo Magician - (.Sheldon Solutions.) [HKLM] -- {AF766933-2E99- 4D86-916E-FEA0A482B89E}_is1 O42 - Logiciel: Pinnacle VideoSpin - (.Pinnacle Systems.) [HKLM] -- {FEB15887-0932-4D2D- BB85-6AC03FBF1AA8} O42 - Logiciel: Polipo - (.Pas de propriétaire.) [HKLM] -- Polipo O42 - Logiciel: Portal 2 - (.Pas de propriétaire.) [HKLM] -- Postal 2_is1 O42 - Logiciel: ProAct Traders v1 - (.ProAct Traders LLC.) [HKLM] -- {08331DEF-700B-44B5- 938E-3ED6573B88FA} O42 - Logiciel: PunkBuster Services - (.Pas de propriétaire.) [HKLM] -- PunkBusterSvc O42 - Logiciel: Python 2.6.6 (64-bit) - (.Python Software Foundation.) [HKLM] -- {6151CF20- 0BD8-4023-A4A0-6A86DCFE58E6} O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {C9E14402-3631-4182-B377- 6B0DFB1C0339} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} O42 - Logiciel: SIW version 2010.07.14 - (.Topala Software Solutions.) [HKLM] -- {AB67580- 257C-45FF-B8F4-C8C30682091A}_is1 O42 - Logiciel: SQL-Splitter 1.1 - (.CoolFactory.) [HKLM] -- SQL-Splitter_is1 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2160841 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2446708 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2478663 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2518870 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2539636 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2572078 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Extended (KB2416472) - (.Microsoft Corporation.) [HKLM] -- {8E34682C-8118-31F1-BC4C- 98CD9675E1C2}.KB2416472 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Extended (KB2487367) - (.Microsoft Corporation.) [HKLM] -- {8E34682C-8118-31F1-BC4C- 98CD9675E1C2}.KB2487367 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37- B657F0852643}.KB2478663 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37- B657F0852643}.KB2518870 O42 - Logiciel: SensePost Wikto - (.SensePost.) [HKLM] -- {3DDFA9CC-53EF-48F6-ACA9- 93172E25DF70} O42 - Logiciel: Skype™ 5.5 - (.Skype Technologies S.A..) [HKLM] -- {AA59DDE4-B672-4621- A016-4C248204957A} O42 - Logiciel: SpeedFan (remove only) - (.Pas de propriétaire.) [HKLM] -- SpeedFan O42 - Logiciel: Star Wars JK II Jedi Outcast - (.Pas de propriétaire.) [HKLM] -- {576E71DA- 3000-48F6-9B21-B9A70D47DFCF} O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM] -- {048298C9-A4D3-490B-9FF9- AB023A9238F3} O42 - Logiciel: StreamTransport version: - (.Pas de propriétaire.) [HKLM] -- {FA0BBB87-91A1-4BFD-9005-EB058BBA0E14}_is1 O42 - Logiciel: Super macro 3.1 - (.Pas de propriétaire.) [HKLM] -- Super macro O42 - Logiciel: System Requirements Lab - (.Husdawg, LLC.) [HKLM] -- {9E1BAB75-EB78- 440D-94C0-A3857BE2E733} O42 - Logiciel: System Requirements Lab CYRI - (.Husdawg, LLC.) [HKLM] -- {1F77C418- 2C90-459C-BD33-B56A4182B9FA} O42 - Logiciel: System Requirements Lab for Intel - (.Husdawg, LLC.) [HKLM] -- {F7FC9307- 374E-4017-8E9D-DE1154780480} O42 - Logiciel: THV - (.Pas de propriétaire.) [HKLM] -- THV O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM] -- TeamSpeak 3 Client O42 - Logiciel: TeamViewer 6 - (.TeamViewer GmbH.) [HKLM] -- TeamViewer 6 O42 - Logiciel: Text-To-Speech-Runtime - (.Magix Development GmbH.) [HKLM] -- {7B3F0113-E63C-4D6D-AF19-111A3165CCA2} O42 - Logiciel: Thief: Deadly Shadows - (.Eidos.) [HKLM] -- Steam App 6980 O42 - Logiciel: Toolbar Cleaner 1.0 - (.Visicom Media Inc..) [HKLM] -- Toolbar Cleaner O42 - Logiciel: TopWinPrio - ( [HKLM] -- {1ACCB99F-6763-4255-B416- 401510B2C7A3} O42 - Logiciel: Tor - (.Pas de propriétaire.) [HKLM] -- Tor O42 - Logiciel: TortoiseSVN (64 bit) - (.TortoiseSVN.) [HKLM] -- {1DD03A94- C815-46EF-A43A-B36694002A7C} O42 - Logiciel: TrueCrypt - (.TrueCrypt Foundation.) [HKLM] -- TrueCrypt O42 - Logiciel: - Windows Repair (All in One) - ( [HKLM] -- - Windows Repair (All in One) O42 - Logiciel: Ubisoft Game Launcher - (.UBISOFT.) [HKLM] -- {888F1505-C2B3-4FDE- 835D-36353EBD4754} O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD- 47AAAA68E92D} O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2468871 O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2473228) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2473228 O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2533523) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4- 1DF6B63FC7B4}.KB2533523 O42 - Logiciel: Update for Microsoft .NET Framework 4 Extended (KB2468871) - (.Microsoft Corporation.) [HKLM] -- {8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2468871 O42 - Logiciel: Update for Microsoft .NET Framework 4 Extended (KB2533523) - (.Microsoft Corporation.) [HKLM] -- {8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2533523 O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0C5823AA-7B6F-44E1-8D5B- 8FD1FF0E6438} O42 - Logiciel: Update for Outlook 2007 Junk Email Filter (KB2596560) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{2964DDE1-4925-4DF1-AF2C- 0A36B3442228} O42 - Logiciel: VC80CRTRedist - 8.0.50727.4053 - (.DivX, Inc.) [HKLM] -- {5EE7D259-D137- 4438-9A5F-42F432EC0421} O42 - Logiciel: VLC media player 1.1.7 - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: VMware Workstation - (.VMware, Inc.) [HKLM] -- VMware_Workstation O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM] -- {0D94F75A-0EA6-4951- B3AF-B145FA9E05C6} O42 - Logiciel: VPNFacile - Sécurisation de votre ligne internet - (.Pas de propriétaire.) [HKLM] -- VPNFacile O42 - Logiciel: VPNFacile version 1 - ( [HKLM] -- {0CD5E1EF-4362-4BE1- 9766-BE8488BCB0EC}_is1 O42 - Logiciel: VSTax 2010 - (.Abraxas Informatik AG.) [HKLM] -- VSTax 2010 O42 - Logiciel: VTFEdit 1.3.0 - (.Neil Jedrzejewski & Ryan Gregg.) [HKLM] -- VTFEdit_is1 O42 - Logiciel: VaudTax2010 - (.DV Bern AG.) [HKLM] -- VaudTax2010 O42 - Logiciel: Vidalia 0.2.15 - (.Pas de propriétaire.) [HKLM] -- Vidalia O42 - Logiciel: Video Card Stability Test - (.FreeStone Group.) [HKLM] -- Video Card Stability Test O42 - Logiciel: VmciSockets - (.VMware, Inc..) [HKLM] -- {528E2373-AE49-4802-B4A8- 326BBFDAD6A0} O42 - Logiciel: VobSub 2.23 - (.Gabest.) [HKLM] -- VobSub O42 - Logiciel: WMV to AVI MPEG DVD WMV Converter 3.3.1210 - (.Allok Soft Inc..) [HKLM] - - WMV to AVI MPEG DVD WMV Converter_is1 O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM] -- Acer Welcome Center O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst O42 - Logiciel: WinRAR 4.01 (64-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171- 4376-9074-B28082CEB504} O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1} O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {76810709- A7D3-468D-9167-A1780C1E766C} O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {9B48B0AC-C813-4174-9042-476A887592C7} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D- F4F1-45C8-B9DB-F11355CA657B} O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {230B83A5- 7D88-4B95-B71E-F44C0C78B002} O42 - Logiciel: Wiztoo Monitor - (.Wiztoo Software.) [HKLM] -- {f0e7f200-87e5-438c-873e- 1f3aa8a7adf4}_is1 O42 - Logiciel: World of Warcraft - (.Blizzard Entertainment.) [HKLM] -- World of Warcraft O42 - Logiciel: World of Warcraft Public Test - (.Blizzard Entertainment.) [HKLM] -- World of Warcraft Public Test O42 - Logiciel: XSplit - (.SplitMediaLabs.) [HKLM] -- {6B1A1AD8-301F-46A8-9AB3- 816AD02EE752} O42 - Logiciel: Xfire (remove only) - (.Pas de propriétaire.) [HKLM] -- Xfire O42 - Logiciel: Xvid 1.2.1 - (.Koepi's build.) [HKLM] -- Xvid_is1 O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM] -- Yahoo! Messenger O42 - Logiciel: YouTube Downloader App 3.00 - (.Regensoft.) [HKLM] -- YouTube Downloader App O42 - Logiciel: Your Freedom (JET) - (.Pas de propriétaire.) [HKLM] -- Your_Deploy_0 O42 - Logiciel: aTube Catcher - (.DsNET Corp.) [HKLM] -- aTube Catcher O42 - Logiciel: dBpoweramp Music Converter - (.Illustrate.) [HKLM] -- dBpowerAMP Music Converter O42 - Logiciel: doPDF 7.1 printer - (.Softland.) [HKLM] -- doPDF 7 printer_is1 O42 - Logiciel: eReg - (.Logitech, Inc..) [HKLM] -- {3EE9BCAE-E9A9-45E5-9B1C- 83A4D357E05C} O42 - Logiciel: eToro - (.eToro.) [HKLM] -- eToro O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7- 9754A3E60F9B} O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C- 0F717DD82726} O42 - Logiciel: tools-freebsd - (.VMware, Inc..) [HKLM] -- {003BFBBD-6C67-419E-A24D- 0DCAFC3A5249} O42 - Logiciel: tools- - (.VMware, Inc..) [HKLM] -- {D102611A-6466-4101-A51D- 51069303AC65} O42 - Logiciel: tools-netware - (.VMware, Inc..) [HKLM] -- {197597A7-AD33-4898-9D8E- 73066818B464} O42 - Logiciel: tools-solaris - (.VMware, Inc..) [HKLM] -- {AB1C87CB-1807-4CF0-B4C2- CEE14C18CDB4} O42 - Logiciel: tools-winPre2k - (.VMware, Inc..) [HKLM] -- {AE0F62A7-A1A2-407F-9F4C- 48939BD9AD8D} O42 - Logiciel: tools-windows - (.VMware, Inc..) [HKLM] -- {FFD9383C-01D5-4897-A954- 43AF599AED30} ---\\ HKCU & HKLM Software Keys [HKCU\Software\!xSpeed] [HKCU\Software\!xSpeednet3] [HKCU\Software\!xSpeednethy] [HKCU\Software\1098531460] [HKCU\Software\AAA_LOGO] [HKCU\Software\AMD] [HKCU\Software\ANI] [HKCU\Software\ASIO4ALL v2 by Wuschel] [HKCU\Software\ATI] [HKCU\Software\AVI ReComp] [HKCU\Software\AVS4YOU] [HKCU\Software\Acer] [HKCU\Software\Adobe] [HKCU\Software\AhnLab] [HKCU\Software\AppDataLow\Software\Adobe] [HKCU\Software\AppDataLow\Software\Google] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software\Yahoo] [HKCU\Software\AppDataLow\Software\shareazamediabartb] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Audacity] [HKCU\Software\Auslogics] [HKCU\Software\Avira] [HKCU\Software\Binary Fortress Software] [HKCU\Software\BitTorrent] [HKCU\Software\Blizzard Entertainment] [HKCU\Software\Brother] [HKCU\Software\Bugsplat] [HKCU\Software\ByteLinker] [HKCU\Software\CBS Software] [HKCU\Software\Canneverbe Limited] [HKCU\Software\Cheat Engine] [HKCU\Software\] [HKCU\Software\ClassesB] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\ConvertDirect] [HKCU\Software\CyberLink] [HKCU\Software\Cygnus Solutions] [HKCU\Software\Cygwin] [HKCU\Software\D-Link] [HKCU\Software\DRKLHF] [HKCU\Software\DT Soft] [HKCU\Software\DVDVideoSoft] [HKCU\Software\DivXNetworks] [HKCU\Software\DivX] [HKCU\Software\Dyyno] [HKCU\Software\EVGA] [HKCU\Software\EasyBits] [HKCU\Software\] [HKCU\Software\Fraps3] [HKCU\Software\GNU] [HKCU\Software\Gabest] [HKCU\Software\Game Speed Changer] [HKCU\Software\Google] [HKCU\Software\HP] [HKCU\Software\Haali] [HKCU\Software\Hamster] [HKCU\Software\Hewlett-Packard] [HKCU\Software\HmelyoffLabs] [HKCU\Software\IGA] [HKCU\Software\IM Providers] [HKCU\Software\Illustrate] [HKCU\Software\Image-Line] [HKCU\Software\Intel] [HKCU\Software\JavaSoft] [HKCU\Software\Kick0r] [HKCU\Software\Laconic Software] [HKCU\Software\Lavalys] [HKCU\Software\Leadertech] [HKCU\Software\LiveZilla] [HKCU\Software\LoLBase] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\LogiShrd] [HKCU\Software\Logitech] [HKCU\Software\LtdStrInfo] [HKCU\Software\MAGIX AG] [HKCU\Software\MAGIX] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MetaQuotes Software] [HKCU\Software\Michael Herf] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mumble] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\NeoByte Solutions] [HKCU\Software\Nero] [HKCU\Software\Netscape] [HKCU\Software\Nilings] [HKCU\Software\ODBC] [HKCU\Software\OEM] [HKCU\Software\] [HKCU\Software\Outertech] [HKCU\Software\Pando Networks] [HKCU\Software\Peer2Me] [HKCU\Software\Pinnacle Systems] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Polipo] [HKCU\Software\Python] [HKCU\Software\Realtek] [HKCU\Software\RegisteredApplications] [HKCU\Software\RtkPCEE3sMsg] [HKCU\Software\SCC] [HKCU\Software\Screenshot Studio for Firefox] [HKCU\Software\Shareaza] [HKCU\Software\ShiningMorning] [HKCU\Software\SimonTatham] [HKCU\Software\SkypeApps] [HKCU\Software\Skype] [HKCU\Software\SoftVoice] [HKCU\Software\Softland] [HKCU\Software\Softonic] [HKCU\Software\Softpark] [HKCU\Software\SpeedFan] [HKCU\Software\SplitMediaLabs] [HKCU\Software\SpoonInstall] [HKCU\Software\Starwizz] [HKCU\Software\StudioV5] [HKCU\Software\Sun Microsystems] [HKCU\Software\Sunisoft] [HKCU\Software\Sysinternals] [HKCU\Software\System Requirements Lab] [HKCU\Software\TCP Optimizer] [HKCU\Software\TeamViewer] [HKCU\Software\Teorex] [HKCU\Software\ToMMTi-Systems] [HKCU\Software\ToolbarCleaner] [HKCU\Software\TortoiseMerge] [HKCU\Software\TortoiseSVN] [HKCU\Software\Trolltech] [HKCU\Software\TuneUp] [HKCU\Software\Ubisoft] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\VMware, Inc.] [HKCU\Software\VPNFacile] [HKCU\Software\Valve] [HKCU\Software\] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Winject] [HKCU\Software\Wiztoo Software] [HKCU\Software\Wow6432Node] [HKCU\Software\XTick Group] [HKCU\Software\Xfire] [HKCU\Software\Xi] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\Yahoo] [HKCU\Software\Yuna Software] [HKCU\Software\Zygor Guides] [HKCU\Software\aignes] [HKCU\Software\cybelsoft] [HKCU\Software\ej-technologies] [HKCU\Software\etoro] [HKCU\Software\fwc] [HKCU\Software\] [HKCU\Software\techPowerUp] [HKCU\Software\wcs] [HKCU\Software\] [HKCU\Software\xSpeed] [HKCU\Software\xSpeednet] [HKLM\Software\] [HKLM\Software\ACE] [HKLM\Software\AGEIA Technologies] [HKLM\Software\AMD] [HKLM\Software\ANIWConnd Service] [HKLM\Software\ANI] [HKLM\Software\ASIO] [HKLM\Software\ATI Technologies] [HKLM\Software\AVS4YOU] [HKLM\Software\Acer Incorporated] [HKLM\Software\AcerUtil] [HKLM\Software\Acer] [HKLM\Software\Act-3D] [HKLM\Software\ActiveState] [HKLM\Software\Acunetix] [HKLM\Software\Adobe] [HKLM\Software\Alienware] [HKLM\Software\Amazon] [HKLM\Software\America Online] [HKLM\Software\AppDataLow] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\Asoftech] [HKLM\Software\Audible] [HKLM\Software\Avira] [HKLM\Software\Avnex] [HKLM\Software\Babylon] [HKLM\Software\Bethesda Softworks] [HKLM\Software\BitSpirit] [HKLM\Software\Bitcoin] [HKLM\Software\Blizzard Entertainment] [HKLM\Software\Brother Industries, Ltd.] [HKLM\Software\Brother] [HKLM\Software\Brothers] [HKLM\Software\C07ft5Y] [HKLM\Software\Canneverbe Limited] [HKLM\Software\Caphyon] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Codec Tweak Tool] [HKLM\Software\CyberLink] [HKLM\Software\Cygnus Solutions] [HKLM\Software\Cygwin] [HKLM\Software\D-Link] [HKLM\Software\DT Soft] [HKLM\Software\DTS] [HKLM\Software\DVDVideoSoft] [HKLM\Software\Digital River] [HKLM\Software\DivXNetworks] [HKLM\Software\DivX] [HKLM\Software\Dolby] [HKLM\Software\Dyyno] [HKLM\Software\EA Games] [HKLM\Software\EVGA] [HKLM\Software\EgisTec Egis Software Update] [HKLM\Software\EgisTec] [HKLM\Software\Even Balance] [HKLM\Software\FAST Multimedia] [HKLM\Software\FileZilla 3] [HKLM\Software\GANPRO50] [HKLM\Software\GNU] [HKLM\Software\GameSpeedChanger] [HKLM\Software\Gentee] [HKLM\Software\GnuWin32] [HKLM\Software\Google] [HKLM\Software\HaaliMkx] [HKLM\Software\Hewlett-Packard] [HKLM\Software\Image-Line] [HKLM\Software\Intel] [HKLM\Software\Ion Storm] [HKLM\Software\JMICRON Technology Corp.] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\KLCodecPack] [HKLM\Software\Khronos] [HKLM\Software\Knowles] [HKLM\Software\LanTricks] [HKLM\Software\Licenses] [HKLM\Software\Logishrd] [HKLM\Software\Logitech] [HKLM\Software\LucasArts Entertainment Company LLC] [HKLM\Software\Macromedia] [HKLM\Software\Magix] [HKLM\Software\Malwarebytes' Anti-Malware (Trial)] [HKLM\Software\Malwarebytes' Anti-Malware] [HKLM\Software\McAfeeInstaller] [HKLM\Software\MimarSinan] [HKLM\Software\Moyea] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\Myriad Software] [HKLM\Software\N-Stalker Web Application Security Scanner Free 2009] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\Nero] [HKLM\Software\NewTech Infosystems] [HKLM\Software\Notepad] [HKLM\Software\ODBC] [HKLM\Software\OEM] [HKLM\Software\Oberon Media] [HKLM\Software\OemSetup] [HKLM\Software\OpenVPN-GUI] [HKLM\Software\Outertech] [HKLM\Software\Outsim] [HKLM\Software\PGWARE] [HKLM\Software\Pando Networks] [HKLM\Software\Pegasus Imaging] [HKLM\Software\PegasusImaging] [HKLM\Software\Perl] [HKLM\Software\Pinnacle Systems] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\ProAct Traders LLC] [HKLM\Software\Propellerhead Software] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\Riot Games] [HKLM\Software\SRS Labs] [HKLM\Software\SecureDigitalServices] [HKLM\Software\SensePost] [HKLM\Software\ShareazaMediabarTb] [HKLM\Software\Sheldon Solutions] [HKLM\Software\SiteAdvisor] [HKLM\Software\Skype] [HKLM\Software\Softland] [HKLM\Software\SonicFocus] [HKLM\Software\Sonic] [HKLM\Software\SplitMediaLabs] [HKLM\Software\Sunisoft] [HKLM\Software\TeamViewer] [HKLM\Software\ThinPrint] [HKLM\Software\TortoiseOverlays] [HKLM\Software\TortoiseSVN] [HKLM\Software\Trad-FR] [HKLM\Software\TuneUp] [HKLM\Software\Ubisoft] [HKLM\Software\VMware, Inc.] [HKLM\Software\VST] [HKLM\Software\Valve] [HKLM\Software\VideoLAN] [HKLM\Software\Volatile] [HKLM\Software\Waves Audio] [HKLM\Software\WinPcap] [HKLM\Software\WinRAR] [HKLM\Software\Windows] [HKLM\Software\Wise Solutions] [HKLM\Software\Wow6432Node] [HKLM\Software\X-AVCSD] [HKLM\Software\XericDesign] [HKLM\Software\Xi] [HKLM\Software\Yahoo] [HKLM\Software\Your Freedom] [HKLM\Software\Yuna Software] [HKLM\Software\cybelsoft] [HKLM\Software\eMingSoftware] [HKLM\Software\ej-technologies] [HKLM\Software\etoro] [HKLM\Software\fwc] [HKLM\Software\instinno] [HKLM\Software\leagueoflegends] [HKLM\Software\magnet] [HKLM\Software\] [HKLM\Software\wcs] [HKLM\Software\winf] ~ Scan Softwares in 00mn AMs

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 10/12/2009 - 11:43:22 PM - [16.611] ----D- C:\Program Files\Acer O43 - CFD: 6/17/2010 - 10:46:38 AM - [0.235] ----D- C:\Program Files\Acer Accessory Store O43 - CFD: 10/27/2011 - 12:59:50 PM - [8.328] ----D- C:\Program Files\CCleaner O43 - CFD: 9/19/2011 - 8:18:14 PM - [12.032] ----D- C:\Program Files\CDBurnerXP O43 - CFD: 10/23/2011 - 7:30:26 PM - [83.050] ----D- C:\Program Files\Common Files O43 - CFD: 6/30/2010 - 3:32:52 PM - [3.021] ----D- C:\Program Files\DivX O43 - CFD: 3/5/2011 - 10:44:54 PM - [86.076] ----D- C:\Program Files\DVD Maker O43 - CFD: 6/17/2010 - 11:38:58 AM - [0] ----D- C:\Program Files\Google O43 - CFD: 4/25/2011 - 11:05:26 AM - [38.318] ----D- C:\Program Files\Hamster Soft O43 - CFD: 2/12/2011 - 2:50:42 PM - [37.502] ----D- C:\Program Files\HP O43 - CFD: 7/28/2010 - 8:38:52 PM - [8.103] ----D- C:\Program Files\Intel O43 - CFD: 10/14/2011 - 6:22:36 AM - [6.346] ----D- C:\Program Files\Internet Explorer O43 - CFD: 10/27/2011 - 1:02:18 PM - [201.648] ----D- C:\Program Files\Java O43 - CFD: 11/29/2011 - 7:40:42 PM - [9.587] ----D- C:\Program Files\ O43 - CFD: 1/23/2011 - 11:21:58 PM - [1152.833] ----D- C:\Program Files\MetaTrader 5 O43 - CFD: 7/14/2009 - 8:45:56 AM - [142.032] ----D- C:\Program Files\Microsoft Games O43 - CFD: 10/12/2009 - 11:38:02 PM - [0.566] ----D- C:\Program Files\Microsoft Office O43 - CFD: 7/14/2009 - 6:32:40 AM - [0.025] ----D- C:\Program Files\MSBuild O43 - CFD: 8/1/2010 - 4:43:38 PM - [4.338] ----D- C:\Program Files\Nem's Tools O43 - CFD: 11/29/2011 - 7:49:06 PM - [-1764.780] ----D- C:\Program Files\NVIDIA Corporation O43 - CFD: 12/23/2009 - 7:39:34 PM - [33.006] ----D- C:\Program Files\Realtek O43 - CFD: 7/14/2009 - 6:32:40 AM - [35.109] ----D- C:\Program Files\Reference Assemblies O43 - CFD: 8/24/2010 - 2:19:02 PM - [4.917] ----D- C:\Program Files\Softland O43 - CFD: 7/28/2011 - 2:27:40 PM - [20.924] ----D- C:\Program Files\TortoiseSVN O43 - CFD: 10/22/2010 - 3:51:48 PM - [7.642] ----D- C:\Program Files\TrueCrypt O43 - CFD: 7/14/2009 - 6:09:28 AM - [0] --H-D- C:\Program Files\Uninstall Information O43 - CFD: 3/5/2011 - 10:44:52 PM - [3.853] ----D- C:\Program Files\Windows Defender O43 - CFD: 3/5/2011 - 10:44:54 PM - [8.797] ----D- C:\Program Files\Windows Journal O43 - CFD: 3/5/2011 - 10:44:54 PM - [6.359] ----D- C:\Program Files\Windows Mail O43 - CFD: 3/5/2011 - 10:44:54 PM - [7.331] ----D- C:\Program Files\Windows Media Player O43 - CFD: 7/14/2009 - 6:32:40 AM - [12.043] ----D- C:\Program Files\Windows NT O43 - CFD: 3/5/2011 - 10:44:54 PM - [5.261] ----D- C:\Program Files\Windows Photo Viewer O43 - CFD: 3/5/2011 - 10:44:54 PM - [0.233] ----D- C:\Program Files\Windows Portable Devices O43 - CFD: 3/5/2011 - 10:44:54 PM - [7.969] ----D- C:\Program Files\Windows Sidebar O43 - CFD: 6/11/2011 - 11:43:48 AM - [4.268] ----D- C:\Program Files\WinRAR O43 - CFD: 1/16/2011 - 11:03:44 AM - [0.000] ----D- C:\Program Files\World of Warcraft O43 - CFD: 10/17/2011 - 8:02:46 PM - [591.189] ----D- C:\Program Files\World of Warcraft_OFFICIAL O43 - CFD: 9/22/2011 - 1:42:38 PM - [0.000] ----D- C:\Program Files\WOW SNIPE AH O43 - CFD: 4/6/2011 - 2:50:28 PM - [6.106] ----D- C:\Program Files\Common Files\LogiShrd O43 - CFD: 6/17/2011 - 2:02:48 AM - [63.382] ----D- C:\Program Files\Common Files\Microsoft Shared O43 - CFD: 7/14/2009 - 4:20:10 AM - [0.003] ----D- C:\Program Files\Common Files\Services O43 - CFD: 7/14/2009 - 4:20:10 AM - [0.581] ----D- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 11/10/2011 - 3:20:48 AM - [11.629] ----D- C:\Program Files\Common Files\System O43 - CFD: 7/28/2011 - 2:27:40 PM - [1.094] ----D- C:\Program Files\Common Files\TortoiseOverlays O43 - CFD: 10/23/2011 - 7:30:26 PM - [0.256] ----D- C:\Program Files\Common Files\VMware O43 - CFD: 10/12/2009 - 11:42:24 PM - [2.576] ----D- C:\ProgramData\Acer O43 - CFD: 6/16/2011 - 1:31:48 AM - [59.703] ----D- C:\ProgramData\Adobe O43 - CFD: 4/29/2011 - 7:30:14 PM - [0.024] ----D- C:\ProgramData\Aiseesoft Studio O43 - CFD: 10/3/2010 - 3:10:14 AM - [52.971] ----D- C:\ProgramData\Apple O43 - CFD: 10/27/2011 - 1:04:36 PM - [25.516] ----D- C:\ProgramData\Apple Computer O43 - CFD: 7/14/2009 - 6:08:58 AM - [0] -SH-D- C:\ProgramData\Application Data O43 - CFD: 3/5/2011 - 12:06:56 AM - [0] ----D- C:\ProgramData\ASign O43 - CFD: 6/17/2010 - 1:51:18 PM - [306.981] ----D- C:\ProgramData\Avira O43 - CFD: 3/15/2011 - 5:16:18 PM - [0] ----D- C:\ProgramData\AVS4YOU O43 - CFD: 10/12/2009 - 11:36:56 PM - [0.088] ----D- C:\ProgramData\BackupManager O43 - CFD: 6/30/2010 - 9:48:40 PM - [0.008] ----D- C:\ProgramData\Blizzard O43 - CFD: 1/15/2011 - 12:38:32 AM - [6.689] ----D- C:\ProgramData\Blizzard Entertainment O43 - CFD: 8/16/2010 - 12:24:04 AM - [0.039] ----D- C:\ProgramData\Brother O43 - CFD: 9/19/2011 - 8:18:20 PM - [0] ----D- C:\ProgramData\Canneverbe Limited O43 - CFD: 12/23/2009 - 7:46:16 PM - [0.091] ----D- C:\ProgramData\CyberLink O43 - CFD: 9/25/2010 - 11:03:48 PM - [0.002] ----D- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 7/14/2009 - 6:08:58 AM - [0] -SH-D- C:\ProgramData\Desktop O43 - CFD: 2/27/2011 - 2:06:06 PM - [4.324] ----D- C:\ProgramData\DivX O43 - CFD: 7/14/2009 - 6:08:58 AM - [0] -SH-D- C:\ProgramData\Documents O43 - CFD: 10/12/2009 - 11:53:56 PM - [0] ----D- C:\ProgramData\EgisTec O43 - CFD: 10/12/2009 - 11:52:12 PM - [0.000] ----D- C:\ProgramData\eSobi O43 - CFD: 7/14/2009 - 6:08:58 AM - [0] -SH-D- C:\ProgramData\Favorites O43 - CFD: 2/23/2011 - 8:16:58 PM - [0.058] ----D- C:\ProgramData\Hewlett-Packard O43 - CFD: 2/23/2011 - 8:06:10 PM - [0.280] ----D- C:\ProgramData\HP O43 - CFD: 4/6/2011 - 2:50:34 PM - [0.001] ----D- C:\ProgramData\Logishrd O43 - CFD: 11/29/2011 - 7:40:42 PM - [1.303] ----D- C:\ProgramData\ O43 - CFD: 10/14/2010 - 12:20:14 PM - [-1210.887] ----D- C:\ProgramData\MAGIX O43 - CFD: 7/12/2010 - 1:52:00 AM - [18.721] ----D- C:\ProgramData\Malwarebytes O43 - CFD: 6/17/2010 - 11:10:02 AM - [0.005] ----D- C:\ProgramData\McAfee O43 - CFD: 6/17/2010 - 10:49:32 AM - [0.000] ----D- C:\ProgramData\McQcModifier-5c47- a7b0 O43 - CFD: 7/1/2010 - 6:39:54 PM - [0.347] ----D- C:\ProgramData\Messenger Plus! O43 - CFD: 1/23/2011 - 11:21:46 PM - [0] ----D- C:\ProgramData\MetaQuotes O43 - CFD: 3/5/2011 - 12:05:20 AM - [303.153] -S--D- C:\ProgramData\Microsoft O43 - CFD: 10/26/2011 - 1:02:38 PM - [0.414] ----D- C:\ProgramData\Microsoft Help O43 - CFD: 8/13/2010 - 9:25:08 PM - [0.016] ----D- C:\ProgramData\N-Stalker O43 - CFD: 10/31/2010 - 9:40:10 PM - [11.114] ----D- C:\ProgramData\Nero O43 - CFD: 11/30/2011 - 1:03:56 PM - [2.287] ----D- C:\ProgramData\NVIDIA O43 - CFD: 3/19/2011 - 9:36:12 PM - [0.605] ----D- C:\ProgramData\NVIDIA Corporation O43 - CFD: 6/17/2010 - 10:46:30 AM - [0.003] ----D- C:\ProgramData\OEM O43 - CFD: 6/17/2010 - 11:38:58 AM - [0.001] ----D- C:\ProgramData\Partner O43 - CFD: 10/26/2010 - 2:44:50 PM - [0.001] ----D- C:\ProgramData\PC Drivers HeadQuarters O43 - CFD: 8/5/2010 - 1:43:32 PM - [0.025] ----D- C:\ProgramData\Pinnacle O43 - CFD: 8/5/2010 - 1:45:18 PM - [0.004] ----D- C:\ProgramData\Pinnacle VideoSpin O43 - CFD: 11/2/2011 - 7:23:40 PM - [0.001] ----D- C:\ProgramData\PMB Files O43 - CFD: 10/12/2009 - 11:46:42 PM - [0.000] ----D- C:\ProgramData\SiteAdvisor O43 - CFD: 8/5/2011 - 8:58:22 PM - [84.215] ----D- C:\ProgramData\Skype O43 - CFD: 5/23/2011 - 4:26:08 PM - [6.207] ----D- C:\ProgramData\Skype Extras O43 - CFD: 9/27/2010 - 9:51:18 PM - [0.001] ----D- C:\ProgramData\Solidshield O43 - CFD: 11/29/2011 - 10:59:56 PM - [2.500] ----D- C:\ProgramData\SplitMediaLabs O43 - CFD: 7/14/2009 - 6:08:58 AM - [0] -SH-D- C:\ProgramData\Start Menu O43 - CFD: 7/3/2010 - 6:35:42 PM - [0.000] ----D- C:\ProgramData\Sun O43 - CFD: 3/11/2011 - 6:31:46 PM - [0.000] -SH-D- C:\ProgramData\System Restore O43 - CFD: 7/23/2011 - 9:01:08 PM - [0.086] ---AD- C:\ProgramData\Temp O43 - CFD: 7/14/2009 - 6:08:58 AM - [0] -SH-D- C:\ProgramData\Templates O43 - CFD: 7/14/2010 - 3:19:12 PM - [0.520] ----D- C:\ProgramData\TuneUp Software O43 - CFD: 12/1/2010 - 11:40:36 PM - [0.004] ----D- C:\ProgramData\UAB O43 - CFD: 3/19/2011 - 2:30:38 AM - [0.000] ----D- C:\ProgramData\Ubisoft O43 - CFD: 11/30/2011 - 1:04:46 PM - [7.829] ----D- C:\ProgramData\VMware O43 - CFD: 11/30/2011 - 1:03:36 PM - [3.707] ----D- C:\ProgramData\Xfire O43 - CFD: 9/27/2010 - 9:25:42 PM - [0.579] ----D- C:\ProgramData\Yahoo! O43 - CFD: 6/30/2010 - 9:29:04 PM - [16.446] -SH-D- C:\ProgramData\{D3742F82-1C1A- 4DCC-ABBD-0E7C3C0185CC} O43 - CFD: 3/26/2011 - 9:39:46 PM - [0.008] ----D- C:\Users\ANONYMOUS\AppData\Roaming\.jfwupdate O43 - CFD: 2/18/2011 - 11:59:14 AM - [0.089] ----D- C:\Users\ANONYMOUS\AppData\Roaming\.Kanton VS O43 - CFD: 1/29/2011 - 3:25:44 PM - [2.070] ----D- C:\Users\ANONYMOUS\AppData\Roaming\.minecraft O43 - CFD: 10/14/2010 - 12:44:58 PM - [16.648] ----D- C:\Users\ANONYMOUS\AppData\Roaming\ACAMPREF O43 - CFD: 10/31/2010 - 9:48:52 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\AccurateRip O43 - CFD: 1/18/2011 - 11:26:02 PM - [12.644] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Adobe O43 - CFD: 10/14/2010 - 12:42:34 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Anvil Studio O43 - CFD: 7/12/2010 - 3:01:50 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\asoftech O43 - CFD: 6/17/2010 - 10:50:22 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\ATI O43 - CFD: 7/22/2011 - 9:20:22 PM - [129.133] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Auslogics O43 - CFD: 4/22/2011 - 11:41:52 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\AVI ReComp O43 - CFD: 4/30/2011 - 8:27:12 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\AVS4YOU O43 - CFD: 4/5/2011 - 9:21:26 AM - [3.670] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Azureus O43 - CFD: 10/22/2011 - 6:39:50 PM - [946.857] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Bitcoin O43 - CFD: 2/10/2011 - 2:12:44 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\BitSpirit O43 - CFD: 8/16/2010 - 12:54:50 AM - [0] R---D- C:\Users\ANONYMOUS\AppData\Roaming\Brother O43 - CFD: 9/19/2011 - 8:18:20 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Canneverbe Limited O43 - CFD: 9/11/2010 - 1:47:20 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Com.Comm100.LiveChat.AirVisitorMonitor.En.986 37D25BBBF4FE1AADC1A429B4293B71CBA63FE.1 O43 - CFD: 1/24/2011 - 5:37:26 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\com.inruntime.clientapps.zulutrade O43 - CFD: 10/29/2011 - 2:43:28 AM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 10/30/2011 - 9:57:30 PM - [0.208] ----D- C:\Users\ANONYMOUS\AppData\Roaming\DisplayFusion O43 - CFD: 9/21/2010 - 12:05:12 AM - [0.214] ----D- C:\Users\ANONYMOUS\AppData\Roaming\DivX O43 - CFD: 9/13/2010 - 2:16:44 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\dvdcss O43 - CFD: 11/2/2011 - 11:01:04 PM - [2.811] ----D- C:\Users\ANONYMOUS\AppData\Roaming\DVDVideoSoft O43 - CFD: 11/2/2011 - 11:00:02 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\DVDVideoSoftIEHelpers O43 - CFD: 11/29/2011 - 10:55:28 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Dyyno O43 - CFD: 1/12/2011 - 2:35:42 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\EurekaLog O43 - CFD: 10/27/2011 - 4:45:52 PM - [0.024] ----D- C:\Users\ANONYMOUS\AppData\Roaming\FileZilla O43 - CFD: 3/11/2011 - 6:31:46 PM - [0.462] ----D- C:\Users\ANONYMOUS\AppData\Roaming\FireShot O43 - CFD: 4/30/2011 - 8:49:16 AM - [0.050] ----D- C:\Users\ANONYMOUS\AppData\Roaming\FreeFLVConverter O43 - CFD: 6/3/2011 - 11:30:40 PM - [16.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\FreeStone Group O43 - CFD: 3/18/2011 - 6:45:20 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\GetRightToGo O43 - CFD: 6/17/2010 - 11:15:24 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Google O43 - CFD: 3/31/2011 - 5:41:14 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\gtk-2.0 O43 - CFD: 6/4/2011 - 12:01:02 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Gyazo O43 - CFD: 4/25/2011 - 11:05:48 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\HamsterSoft O43 - CFD: 2/23/2011 - 8:13:46 PM - [0.002] ----D- C:\Users\ANONYMOUS\AppData\Roaming\HP O43 - CFD: 3/13/2011 - 12:11:20 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\HWM BlackBox O43 - CFD: 6/17/2010 - 10:48:58 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Identities O43 - CFD: 3/22/2011 - 10:53:40 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\InstallShield O43 - CFD: 4/6/2011 - 2:45:52 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Leadertech O43 - CFD: 8/5/2010 - 4:53:46 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Leawo O43 - CFD: 12/16/2010 - 1:09:30 AM - [23.231] ----D- C:\Users\ANONYMOUS\AppData\Roaming\LimeWire O43 - CFD: 1/18/2011 - 10:21:46 PM - [-367.946] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Local O43 - CFD: 4/6/2011 - 2:44:58 PM - [0.154] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Logishrd O43 - CFD: 4/6/2011 - 2:46:16 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Logitech O43 - CFD: 1/6/2011 - 4:28:16 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\LogoMaker O43 - CFD: 8/27/2010 - 2:46:22 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\LolClient O43 - CFD: 6/17/2010 - 10:49:28 AM - [0.088] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Macromedia O43 - CFD: 10/14/2010 - 12:21:30 PM - [2.814] ----D- C:\Users\ANONYMOUS\AppData\Roaming\MAGIX O43 - CFD: 7/12/2010 - 1:52:06 AM - [4.298] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Malwarebytes O43 - CFD: 7/14/2009 - 8:44:40 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Media Center Programs O43 - CFD: 5/14/2011 - 11:02:06 PM - [11.845] -S--D- C:\Users\ANONYMOUS\AppData\Roaming\Microsoft O43 - CFD: 12/16/2010 - 1:03:34 AM - [16.063] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Mozilla O43 - CFD: 11/26/2011 - 11:55:06 PM - [0.728] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Mumble O43 - CFD: 8/13/2010 - 9:23:40 PM - [4.510] ----D- C:\Users\ANONYMOUS\AppData\Roaming\N-Stalker O43 - CFD: 9/19/2011 - 8:13:38 PM - [0.037] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Nero O43 - CFD: 10/27/2011 - 1:02:50 PM - [0.345] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Notepad++ O43 - CFD: 8/19/2011 - 9:20:50 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\NVIDIA O43 - CFD: 9/21/2011 - 2:40:22 PM - [0.118] ----D- C:\Users\ANONYMOUS\AppData\Roaming\NVIDIA 3D Vision Video Player O43 - CFD: 8/16/2010 - 9:34:04 PM - [2.372] ----D- C:\Users\ANONYMOUS\AppData\Roaming\ O43 - CFD: 11/17/2010 - 2:36:22 AM - [12.040] ----D- C:\Users\ANONYMOUS\AppData\Roaming\ProAct Traders v1 O43 - CFD: 3/19/2011 - 2:24:16 AM - [0.797] ----D- C:\Users\ANONYMOUS\AppData\Roaming\PunkBuster O43 - CFD: 2/16/2011 - 11:23:24 PM - [0.060] ----D- C:\Users\ANONYMOUS\AppData\Roaming\RIFT O43 - CFD: 8/26/2010 - 4:20:58 PM - [13.710] ----D- C:\Users\ANONYMOUS\AppData\Roaming\SharePod O43 - CFD: 11/18/2011 - 7:01:56 PM - [10.130] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Skype O43 - CFD: 5/26/2011 - 12:47:42 PM - [0.008] ----D- C:\Users\ANONYMOUS\AppData\Roaming\skypePM O43 - CFD: 8/24/2010 - 2:19:06 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Softland O43 - CFD: 10/20/2010 - 2:59:02 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Softpark O43 - CFD: 11/29/2011 - 10:59:34 PM - [0.686] ----D- C:\Users\ANONYMOUS\AppData\Roaming\SplitMediaLabs O43 - CFD: 7/28/2011 - 2:28:10 PM - [0.018] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Subversion O43 - CFD: 10/24/2011 - 3:18:20 PM - [1.659] ----D- C:\Users\ANONYMOUS\AppData\Roaming\SystemRequirementsLab O43 - CFD: 1/15/2011 - 6:24:18 PM - [0.004] ----D- C:\Users\ANONYMOUS\AppData\Roaming\TeamViewer O43 - CFD: 12/17/2010 - 8:26:20 PM - [0.013] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Template O43 - CFD: 2/1/2011 - 1:02:14 AM - [0.109] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Thinstall O43 - CFD: 10/22/2011 - 9:18:40 PM - [9.035] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Tor O43 - CFD: 7/28/2011 - 2:31:08 PM - [0.057] ----D- C:\Users\ANONYMOUS\AppData\Roaming\TortoiseSVN O43 - CFD: 11/2/2011 - 1:43:38 AM - [0.002] ----D- C:\Users\ANONYMOUS\AppData\Roaming\TrueCrypt O43 - CFD: 10/27/2011 - 4:45:52 PM - [0.709] ----D- C:\Users\ANONYMOUS\AppData\Roaming\TS3Client O43 - CFD: 6/30/2010 - 9:29:26 PM - [0.091] ----D- C:\Users\ANONYMOUS\AppData\Roaming\TuneUp Software O43 - CFD: 2/1/2011 - 12:10:32 AM - [19.582] ----D- C:\Users\ANONYMOUS\AppData\Roaming\TweakNow RegCleaner 2011 O43 - CFD: 9/6/2011 - 7:57:54 AM - [2.583] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Ubisoft O43 - CFD: 2/10/2011 - 2:06:58 AM - [1.741] ----D- C:\Users\ANONYMOUS\AppData\Roaming\uTorrent O43 - CFD: 11/17/2010 - 2:41:40 AM - [5.024] ----D- C:\Users\ANONYMOUS\AppData\Roaming\v1 O43 - CFD: 10/22/2011 - 9:18:40 PM - [0.067] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Vidalia O43 - CFD: 6/4/2011 - 12:09:58 AM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\VirtuaWin O43 - CFD: 11/18/2011 - 6:56:10 PM - [3.367] ----D- C:\Users\ANONYMOUS\AppData\Roaming\vlc O43 - CFD: 10/23/2011 - 9:16:04 PM - [0.002] ----D- C:\Users\ANONYMOUS\AppData\Roaming\VMware O43 - CFD: 8/9/2011 - 3:33:12 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Roaming\VoipCheapCom O43 - CFD: 11/4/2010 - 12:31:48 PM - [12.781] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Warsow 0.5 O43 - CFD: 10/20/2010 - 5:15:38 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Windows Live Writer O43 - CFD: 6/17/2010 - 12:51:22 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Roaming\WinRAR O43 - CFD: 11/7/2011 - 3:59:38 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Wiztoo Software O43 - CFD: 8/9/2011 - 3:10:58 AM - [0.000] -SH-D- C:\Users\ANONYMOUS\AppData\Roaming\wyUpdate AU O43 - CFD: 4/14/2011 - 10:08:48 PM - [2.496] ----D- C:\Users\ANONYMOUS\AppData\Roaming\XericDesign O43 - CFD: 11/29/2011 - 10:39:40 PM - [0.006] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Xfire O43 - CFD: 11/10/2011 - 12:39:06 AM - [0.003] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Xi O43 - CFD: 1/8/2009 - 6:56:02 AM - [0.544] ----D- C:\Users\ANONYMOUS\AppData\Roaming\Yahoo! O43 - CFD: 2/18/2011 - 11:59:16 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Local\.Kanton VS O43 - CFD: 1/18/2011 - 10:19:50 PM - [0.513] ----D- C:\Users\ANONYMOUS\AppData\Local\Adobe O43 - CFD: 1/12/2011 - 12:38:44 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Local\Alex F O43 - CFD: 10/3/2010 - 3:10:16 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Local\Apple O43 - CFD: 6/17/2010 - 10:46:22 AM - [0] -SH-D- C:\Users\ANONYMOUS\AppData\Local\Application Data O43 - CFD: 6/12/2011 - 10:20:12 PM - [27.307] ----D- C:\Users\ANONYMOUS\AppData\Local\Apps O43 - CFD: 6/17/2010 - 10:50:22 AM - [0.058] ----D- C:\Users\ANONYMOUS\AppData\Local\ATI O43 - CFD: 6/17/2010 - 12:52:54 PM - [0.041] ----D- C:\Users\ANONYMOUS\AppData\Local\Blizzard Entertainment O43 - CFD: 11/12/2010 - 1:27:08 AM - [37.144] ----D- C:\Users\ANONYMOUS\AppData\Local\Bossland GmbH O43 - CFD: 10/16/2011 - 12:35:48 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Local\Deployment O43 - CFD: 8/5/2010 - 1:43:28 PM - [137.231] ----D- C:\Users\ANONYMOUS\AppData\Local\Downloaded Installations O43 - CFD: 5/16/2011 - 3:41:00 PM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Local\DrWatson O43 - CFD: 2/3/2011 - 11:50:14 PM - [0.002] ----D- C:\Users\ANONYMOUS\AppData\Local\EA Games O43 - CFD: 6/17/2010 - 10:49:30 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Local\EgisTec O43 - CFD: 11/29/2011 - 7:13:20 PM - [2.179] ----D- C:\Users\ANONYMOUS\AppData\Local\ElevatedDiagnostics O43 - CFD: 3/15/2011 - 5:20:26 PM - [0.960] ----D- C:\Users\ANONYMOUS\AppData\Local\Geckofx O43 - CFD: 12/22/2010 - 4:49:34 PM - [1107.259] ----D- C:\Users\ANONYMOUS\AppData\Local\Google O43 - CFD: 6/17/2010 - 10:46:22 AM - [0] -SH-D- C:\Users\ANONYMOUS\AppData\Local\Historique O43 - CFD: 9/27/2011 - 12:51:58 PM - [640.309] ----D- C:\Users\ANONYMOUS\AppData\Local\HonorbuddyMeshes O43 - CFD: 10/15/2011 - 4:28:38 PM - [0.002] ----D- C:\Users\ANONYMOUS\AppData\Local\IsolatedStorage O43 - CFD: 12/6/2010 - 10:02:04 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Local\Lowerping O43 - CFD: 10/10/2011 - 9:22:32 PM - [0.002] ----D- C:\Users\ANONYMOUS\AppData\Local\MagicCamera O43 - CFD: 10/10/2011 - 9:21:32 PM - [1215.679] ----D- C:\Users\ANONYMOUS\AppData\Local\Microsoft O43 - CFD: 9/1/2011 - 3:15:38 AM - [0.005] ----D- C:\Users\ANONYMOUS\AppData\Local\Microsoft Games O43 - CFD: 6/17/2010 - 10:58:48 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Local\Microsoft Help O43 - CFD: 7/8/2010 - 9:13:44 PM - [132.257] ----D- C:\Users\ANONYMOUS\AppData\Local\Mozilla O43 - CFD: 10/19/2010 - 10:16:42 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Local\Mumble O43 - CFD: 8/14/2010 - 6:05:58 PM - [0.004] ----D- C:\Users\ANONYMOUS\AppData\Local\Nem's Tools O43 - CFD: 3/20/2011 - 11:28:32 PM - [0.003] ----D- C:\Users\ANONYMOUS\AppData\Local\NVIDIA Corporation O43 - CFD: 12/16/2010 - 1:02:42 AM - [0] ----D- C:\Users\ANONYMOUS\AppData\Local\PackageAware O43 - CFD: 10/26/2010 - 2:44:54 PM - [0.006] ----D- C:\Users\ANONYMOUS\AppData\Local\PC_Drivers_Headquarters O43 - CFD: 11/2/2011 - 7:23:42 PM - [0.269] ----D- C:\Users\ANONYMOUS\AppData\Local\PMB Files O43 - CFD: 9/6/2011 - 7:57:58 AM - [0.462] ----D- C:\Users\ANONYMOUS\AppData\Local\PunkBuster O43 - CFD: 12/16/2010 - 1:08:34 AM - [33.682] ----D- C:\Users\ANONYMOUS\AppData\Local\Shareaza O43 - CFD: 1/16/2011 - 12:04:06 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Local\Sheldon_Solutions O43 - CFD: 5/3/2011 - 10:18:04 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Local\SKIDROW O43 - CFD: 11/20/2011 - 12:02:40 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Local\Skyrim O43 - CFD: 7/15/2011 - 11:33:06 PM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Local\SyderWare O43 - CFD: 11/30/2011 - 3:22:32 PM - [250.450] ----D- C:\Users\ANONYMOUS\AppData\Local\Temp O43 - CFD: 6/17/2010 - 10:46:22 AM - [0] -SH-D- C:\Users\ANONYMOUS\AppData\Local\Temporary Internet Files O43 - CFD: 6/4/2011 - 12:36:38 AM - [0.001] ----D- C:\Users\ANONYMOUS\AppData\Local\TopWinPrio O43 - CFD: 11/30/2011 - 1:04:20 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Local\TSVNCache O43 - CFD: 9/6/2011 - 7:54:50 AM - [0.000] ----D- C:\Users\ANONYMOUS\AppData\Local\Ubisoft Game Launcher O43 - CFD: 6/17/2010 - 12:56:02 PM - [2.457] ----D- C:\Users\ANONYMOUS\AppData\Local\VirtualStore O43 - CFD: 10/23/2011 - 9:16:04 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Local\VMware O43 - CFD: 8/5/2010 - 4:46:56 PM - [0.002] ----D- C:\Users\ANONYMOUS\AppData\Local\WinAVI O43 - CFD: 10/22/2010 - 12:08:18 PM - [0.035] ----D- C:\Users\ANONYMOUS\AppData\Local\Windows Live O43 - CFD: 10/20/2010 - 5:15:38 PM - [0] ----D- C:\Users\ANONYMOUS\AppData\Local\Windows Live Writer O43 - CFD: 9/8/2010 - 12:47:24 PM - [0.374] ----D- C:\Users\ANONYMOUS\AppData\Local\Yahoo O43 - CFD: 8/9/2010 - 10:52:04 PM - [0.003] ----D- C:\Users\ANONYMOUS\AppData\Local\zoug O43 - CFD: 9/11/2011 - 3:48:56 AM - [4.576] ----D- C:\Program Files (x86)\3DRipperDX O43 - CFD: 2/10/2011 - 2:37:22 PM - [10.849] ----D- C:\Program Files (x86)\AAALOGO2010 O43 - CFD: 12/23/2009 - 7:47:22 PM - [40.333] ----D- C:\Program Files (x86)\Acer O43 - CFD: 6/17/2010 - 11:20:06 AM - [559.648] ----D- C:\Program Files (x86)\Acer GameZone O43 - CFD: 5/16/2011 - 3:40:46 PM - [48.134] ----D- C:\Program Files (x86)\Acunetix O43 - CFD: 6/16/2011 - 1:31:48 AM - [156.904] ----D- C:\Program Files (x86)\Adobe O43 - CFD: 4/29/2011 - 7:30:04 PM - [53.952] ----D- C:\Program Files (x86)\Aiseesoft Studio O43 - CFD: 11/27/2011 - 5:54:42 PM - [2.539] ----D- C:\Program Files (x86)\Amazon O43 - CFD: 10/27/2011 - 1:03:42 PM - [2.316] ----D- C:\Program Files (x86)\Apple Software Update O43 - CFD: 3/15/2011 - 2:30:46 AM - [0.422] ----D- C:\Program Files (x86)\Arbitro O43 - CFD: 3/5/2011 - 12:07:30 AM - [0.004] ----D- C:\Program Files (x86)\ARC SYSTEM WORKS O43 - CFD: 2/18/2011 - 4:55:24 PM - [0.501] ----D- C:\Program Files (x86)\ASIO4ALL v2 O43 - CFD: 7/13/2010 - 1:06:14 AM - [0.941] ----D- C:\Program Files (x86)\Asoftech O43 - CFD: 8/10/2010 - 8:52:16 PM - [17.832] ----D- C:\Program Files (x86)\Audacity O43 - CFD: 11/27/2010 - 1:44:40 AM - [40.818] ----D- C:\Program Files (x86)\Auslogics O43 - CFD: 11/8/2010 - 12:22:08 AM - [0] ----D- C:\Program Files (x86)\Autochartist O43 - CFD: 8/18/2010 - 7:48:44 PM - [25.882] ----D- C:\Program Files (x86)\AV Vcs 6.0 DIAMOND O43 - CFD: 4/22/2011 - 11:41:26 AM - [5.861] ----D- C:\Program Files (x86)\AVI ReComp O43 - CFD: 6/17/2010 - 1:51:18 PM - [167.640] ----D- C:\Program Files (x86)\Avira O43 - CFD: 9/21/2011 - 2:49:06 PM - [4.635] ----D- C:\Program Files (x86)\AviSynth 2.5 O43 - CFD: 11/23/2011 - 2:03:22 PM - [70.131] ----D- C:\Program Files (x86)\AVS4YOU O43 - CFD: 10/15/2011 - 4:24:54 PM - [22.803] ----D- C:\Program Files (x86)\Better Explorer O43 - CFD: 10/14/2011 - 10:28:36 PM - [18.337] ----D- C:\Program Files (x86)\Bitcoin O43 - CFD: 2/10/2011 - 2:12:38 AM - [6.927] ----D- C:\Program Files (x86)\BitSpirit O43 - CFD: 8/16/2010 - 12:24:30 AM - [27.605] ----D- C:\Program Files (x86)\Brother O43 - CFD: 11/23/2010 - 5:18:34 PM - [1.250] ----D- C:\Program Files (x86)\Bytescout XLS Viewer O43 - CFD: 4/28/2011 - 7:33:34 PM - [3.427] ----D- C:\Program Files (x86)\Cacheman O43 - CFD: 3/10/2011 - 5:12:10 PM - [7.942] ----D- C:\Program Files (x86)\CamStudio O43 - CFD: 1/11/2011 - 1:59:18 AM - [0] ----D- C:\Program Files (x86)\Candleworks O43 - CFD: 2/1/2011 - 1:01:40 AM - [1.410] ----D- C:\Program Files (x86)\CBS Software O43 - CFD: 3/27/2011 - 1:22:10 PM - [18.464] ----D- C:\Program Files (x86)\Cheat Engine 6 O43 - CFD: 9/11/2010 - 1:47:20 PM - [1.197] ----D- C:\Program Files (x86)\Comm100 Live Chat Visitor Monitor O43 - CFD: 11/2/2011 - 10:59:56 PM - [759.197] ----D- C:\Program Files (x86)\Common Files O43 - CFD: 3/22/2011 - 10:53:42 PM - [18.893] ----D- C:\Program Files (x86)\D-Link O43 - CFD: 4/10/2011 - 11:20:16 AM - [18.084] ----D- C:\Program Files (x86)\DAEMON Tools Lite O43 - CFD: 4/10/2011 - 11:19:30 AM - [3.861] ----D- C:\Program Files (x86)\DAEMON Tools Toolbar O43 - CFD: 2/1/2011 - 12:56:14 AM - [1.209] ----D- C:\Program Files (x86)\DFÜ-Optimierer O43 - CFD: 10/30/2011 - 9:53:22 PM - [7.772] ----D- C:\Program Files (x86)\DisplayFusion O43 - CFD: 2/27/2011 - 2:06:04 PM - [93.021] ----D- C:\Program Files (x86)\DivX O43 - CFD: 7/3/2010 - 1:26:48 AM - [2.331] ----D- C:\Program Files (x86)\DRKSpider O43 - CFD: 6/12/2011 - 5:20:14 PM - [34.946] ----D- C:\Program Files (x86)\DsNET Corp O43 - CFD: 11/2/2011 - 10:59:58 PM - [7.805] ----D- C:\Program Files (x86)\DVDVideoSoft O43 - CFD: 11/29/2011 - 10:41:12 PM - [1.786] ----D- C:\Program Files (x86)\Dyyno O43 - CFD: 10/12/2009 - 11:44:36 PM - [33.753] ----D- C:\Program Files (x86)\EgisTec O43 - CFD: 10/12/2009 - 11:44:38 PM - [1.605] ----D- C:\Program Files (x86)\EgisTec Egis Software Update O43 - CFD: 3/28/2011 - 10:47:32 PM - [0.996] ----D- C:\Program Files (x86)\Elemental Trader 1.5 O43 - CFD: 9/8/2010 - 12:06:06 PM - [13.380] ----D- C:\Program Files (x86)\eToro O43 - CFD: 7/30/2011 - 3:20:46 PM - [27.107] ----D- C:\Program Files (x86)\EVGA Precision O43 - CFD: 10/11/2011 - 9:55:56 AM - [3.951] ----D- C:\Program Files (x86)\Fake Webcam O43 - CFD: 10/31/2010 - 3:21:10 PM - [0.363] ----D- C:\Program Files (x86)\ O43 - CFD: 6/10/2011 - 12:22:40 AM - [16.264] ----D- C:\Program Files (x86)\FileZilla FTP Client O43 - CFD: 10/10/2011 - 10:12:16 PM - [0.109] ----D- C:\Program Files (x86)\Fire Heart Desktop Gadget O43 - CFD: 4/30/2011 - 8:49:14 AM - [11.700] ----D- C:\Program Files (x86)\Free FLV Converter O43 - CFD: 10/24/2011 - 10:12:48 PM - [2.395] ----D- C:\Program Files (x86)\Free ISO Creator O43 - CFD: 7/26/2011 - 2:57:32 AM - [15.371] ----D- C:\Program Files (x86)\FXCM MT4 powered by BT O43 - CFD: 2/10/2011 - 6:46:58 PM - [0.155] ----D- C:\Program Files (x86)\FxPro - MetaTrader O43 - CFD: 4/22/2011 - 11:41:10 AM - [0.426] ----D- C:\Program Files (x86)\Gabest O43 - CFD: 7/12/2010 - 2:52:26 AM - [0.000] ----D- C:\Program Files (x86)\Game Speed Changer O43 - CFD: 3/19/2011 - 12:48:36 PM - [5.291] ----D- C:\Program Files (x86)\GameGain O43 - CFD: 9/19/2010 - 7:31:46 PM - [108.634] ----D- C:\Program Files (x86)\GIMP-2.0 O43 - CFD: 9/21/2010 - 12:12:18 PM - [19.424] ----D- C:\Program Files (x86)\GnuWin32 O43 - CFD: 11/16/2011 - 10:13:02 AM - [61.823] ----D- C:\Program Files (x86)\Google O43 - CFD: 6/4/2011 - 12:00:38 AM - [1.389] ----D- C:\Program Files (x86)\Gyazo O43 - CFD: 10/14/2010 - 12:44:54 PM - [58.614] ----D- C:\Program Files (x86)\Harmony Assistant O43 - CFD: 2/12/2011 - 3:03:18 PM - [7.196] ----D- C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 2/23/2011 - 8:12:18 PM - [80.807] ----D- C:\Program Files (x86)\HP O43 - CFD: 8/3/2011 - 2:25:14 AM - [2.340] ----D- C:\Program Files (x86)\IDoser v4 O43 - CFD: 8/10/2010 - 5:09:30 PM - [17.409] ----D- C:\Program Files (x86)\Illustrate O43 - CFD: 2/18/2011 - 4:54:58 PM - [243.314] ----D- C:\Program Files (x86)\Image-Line O43 - CFD: 1/5/2011 - 7:52:12 PM - [3.781] ----D- C:\Program Files (x86)\Inpaint O43 - CFD: 11/10/2011 - 4:09:44 AM - [95.961] --H-D- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 10/12/2009 - 11:13:06 PM - [58.939] ----D- C:\Program Files (x86)\Intel O43 - CFD: 10/14/2011 - 6:22:36 AM - [6.160] ----D- C:\Program Files (x86)\Internet Explorer O43 - CFD: 8/20/2010 - 1:08:02 PM - [4.519] ----D- C:\Program Files (x86)\Invisible Secrets 4 O43 - CFD: 1/6/2011 - 10:27:10 AM - [3.437] ----D- C:\Program Files (x86)\IP Locator O43 - CFD: 10/24/2011 - 1:56:08 PM - [171.754] ----D- C:\Program Files (x86)\Java O43 - CFD: 8/16/2010 - 9:33:04 PM - [15.541] ----D- C:\Program Files (x86)\JRE O43 - CFD: 8/5/2010 - 4:53:46 PM - [21.104] ----D- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 9/11/2011 - 2:54:26 AM - [14.028] ----D- C:\Program Files (x86)\Laggsta O43 - CFD: 9/7/2010 - 12:56:44 AM - [2.985] ----D- C:\Program Files (x86)\LanTricks O43 - CFD: 6/2/2011 - 12:49:56 AM - [0] ----D- C:\Program Files (x86)\Lavalys O43 - CFD: 5/14/2011 - 9:45:34 PM - [-1475.131] ----D- C:\Program Files (x86)\League of Legends O43 - CFD: 8/5/2010 - 4:53:38 PM - [38.871] ----D- C:\Program Files (x86)\Leawo O43 - CFD: 12/16/2010 - 12:55:42 AM - [54.503] ----D- C:\Program Files (x86)\LimeWire O43 - CFD: 6/2/2011 - 12:47:16 AM - [0.066] ----D- C:\Program Files (x86)\LowerPing O43 - CFD: 10/29/2011 - 2:45:54 AM - [745.812] ----D- C:\Program Files (x86)\LucasArts O43 - CFD: 6/3/2011 - 11:57:36 PM - [1.750] ----D- C:\Program Files (x86)\ O43 - CFD: 9/1/2011 - 2:53:16 AM - [12.355] ----D- C:\Program Files (x86)\Magic Reversi O43 - CFD: 10/14/2010 - 12:20:14 PM - [924.905] ----D- C:\Program Files (x86)\MAGIX O43 - CFD: 9/15/2011 - 7:44:56 AM - [6.740] ----D- C:\Program Files (x86)\Malwarebytes' Anti- Malware O43 - CFD: 8/9/2010 - 10:51:50 PM - [10.932] ----D- C:\Program Files (x86)\MediaCUB O43 - CFD: 12/3/2010 - 7:36:14 AM - [48.283] ----D- C:\Program Files (x86)\Melody Assistant O43 - CFD: 10/30/2011 - 11:24:00 PM - [1898.164] ----D- C:\Program Files (x86)\MetaTrader - AAAFx O43 - CFD: 8/16/2011 - 5:43:36 PM - [110.718] ----D- C:\Program Files (x86)\MetaTrader - AAAFx -101010 O43 - CFD: 7/26/2011 - 7:09:12 PM - [67.820] ----D- C:\Program Files (x86)\MetaTrader - Alpari UK O43 - CFD: 1/25/2011 - 8:25:02 AM - [0.376] ----D- C:\Program Files (x86)\MetaTrader 4 O43 - CFD: 10/21/2010 - 12:23:32 PM - [0.216] ----D- C:\Program Files (x86)\Microsoft O43 - CFD: 5/6/2011 - 10:43:26 AM - [8.929] ----D- C:\Program Files (x86)\Microsoft Games for Windows - LIVE O43 - CFD: 7/7/2011 - 12:39:16 PM - [630.588] ----D- C:\Program Files (x86)\Microsoft Office O43 - CFD: 10/12/2009 - 11:39:54 PM - [7.431] ----D- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant O43 - CFD: 10/14/2011 - 6:23:26 AM - [36.633] ----D- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 10/21/2010 - 12:23:46 PM - [1.745] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 11/25/2010 - 9:42:28 AM - [0.014] ----D- C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 6/17/2010 - 10:59:02 AM - [1.577] ----D- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 12/16/2010 - 3:01:46 AM - [138.685] ----D- C:\Program Files (x86)\Microsoft Works O43 - CFD: 11/25/2010 - 9:42:12 AM - [7.797] ----D- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 11/28/2011 - 3:12:50 AM - [32.208] ----D- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 11/25/2010 - 9:42:34 AM - [0.025] ----D- C:\Program Files (x86)\MSBuild O43 - CFD: 11/21/2010 - 4:04:46 AM - [26.600] ----D- C:\Program Files (x86)\MSECache O43 - CFD: 7/2/2010 - 12:53:44 AM - [0] ----D- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 10/19/2010 - 10:15:42 AM - [35.989] ----D- C:\Program Files (x86)\Mumble O43 - CFD: 8/13/2010 - 9:23:36 PM - [25.029] ----D- C:\Program Files (x86)\N-Stalker O43 - CFD: 10/31/2010 - 9:40:08 PM - [469.484] ----D- C:\Program Files (x86)\Nero O43 - CFD: 7/12/2010 - 8:44:34 PM - [75.634] ----D- C:\Program Files (x86)\Net Tools O43 - CFD: 10/12/2009 - 11:36:46 PM - [225.445] ----D- C:\Program Files (x86)\NewTech Infosystems O43 - CFD: 2/6/2011 - 12:36:44 AM - [14.245] ----D- C:\Program Files (x86)\Notepad++ O43 - CFD: 11/29/2011 - 7:49:16 PM - [147.454] ----D- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 8/16/2010 - 9:33:02 PM - [370.138] ----D- C:\Program Files (x86)\ 3 O43 - CFD: 10/18/2010 - 9:27:42 PM - [4.621] ----D- C:\Program Files (x86)\OpenVPN O43 - CFD: 2/18/2011 - 4:54:36 PM - [3.465] ----D- C:\Program Files (x86)\Outsim O43 - CFD: 8/27/2010 - 1:48:46 AM - [6.971] ----D- C:\Program Files (x86)\Pando Networks O43 - CFD: 10/26/2010 - 2:44:22 PM - [6.845] ----D- C:\Program Files (x86)\PC Drivers HeadQuarters O43 - CFD: 8/5/2010 - 1:44:10 PM - [142.482] ----D- C:\Program Files (x86)\Pinnacle O43 - CFD: 10/27/2011 - 1:04:44 PM - [72.190] ----D- C:\Program Files (x86)\QuickTime O43 - CFD: 11/10/2011 - 4:06:52 AM - [13.888] ----D- C:\Program Files (x86)\Realtek O43 - CFD: 7/14/2009 - 6:32:40 AM - [37.345] ----D- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 3/15/2011 - 5:20:14 PM - [23.856] ----D- C:\Program Files (x86)\Regensoft O43 - CFD: 6/2/2011 - 12:45:54 AM - [-449.375] ----D- C:\Program Files (x86)\RIFT Beta O43 - CFD: 5/8/2011 - 4:39:42 PM - [1.988] ----D- C:\Program Files (x86)\SensePost O43 - CFD: 12/16/2010 - 8:25:46 AM - [2.315] ----D- C:\Program Files (x86)\Shareaza Applications O43 - CFD: 1/16/2011 - 12:01:28 PM - [5.102] ----D- C:\Program Files (x86)\Sheldon Solutions O43 - CFD: 10/10/2011 - 9:21:10 PM - [37.862] ----D- C:\Program Files (x86)\ShiningMorning O43 - CFD: 6/3/2011 - 11:23:14 PM - [2.877] ----D- C:\Program Files (x86)\SIW O43 - CFD: 8/5/2011 - 8:58:22 PM - [16.557] R---D- C:\Program Files (x86)\Skype O43 - CFD: 7/13/2010 - 1:06:14 AM - [2.074] ----D- C:\Program Files (x86)\Speed Gear O43 - CFD: 10/27/2011 - 1:05:02 PM - [5.458] ----D- C:\Program Files (x86)\SpeedFan O43 - CFD: 11/29/2011 - 10:59:56 PM - [36.198] ----D- C:\Program Files (x86)\SplitMediaLabs O43 - CFD: 11/6/2010 - 7:15:02 PM - [2.755] ----D- C:\Program Files (x86)\SQL-Splitter O43 - CFD: 11/30/2011 - 2:36:10 PM - [-314.630] ----D- C:\Program Files (x86)\Steam O43 - CFD: 11/16/2011 - 3:02:58 AM - [5.350] ----D- C:\Program Files (x86)\StreamTransport O43 - CFD: 7/22/2011 - 10:30:18 PM - [7.287] ----D- C:\Program Files (x86)\Super macro O43 - CFD: 10/24/2011 - 3:18:22 PM - [1.775] ----D- C:\Program Files (x86)\SystemRequirementsLab O43 - CFD: 9/28/2011 - 11:43:50 PM - [64.054] ----D- C:\Program Files (x86)\TeamSpeak 3 Client O43 - CFD: 1/15/2011 - 6:23:24 PM - [56.706] ----D- C:\Program Files (x86)\TeamViewer O43 - CFD: 11/10/2011 - 4:11:24 AM - [0] --H-D- C:\Program Files (x86)\Temp O43 - CFD: 11/22/2011 - 12:28:02 AM - [1349.150] ----D- C:\Program Files (x86)\The Elder Scrolls V Skyrim O43 - CFD: 8/10/2011 - 2:14:54 AM - [0.324] ----D- C:\Program Files (x86)\THV O43 - CFD: 10/10/2011 - 8:46:38 PM - [0.628] ----D- C:\Program Files (x86)\Toolbar Cleaner O43 - CFD: 3/15/2011 - 2:56:06 AM - [3.062] ----D- C:\Program Files (x86)\TRADEOLOGYFX O43 - CFD: 11/15/2011 - 2:46:46 PM - [3.469] ----D- C:\Program Files (x86)\ O43 - CFD: 2/1/2011 - 12:36:38 AM - [0.074] ----D- C:\Program Files (x86)\TweakNow RegCleaner 2011 O43 - CFD: 6/2/2011 - 12:49:18 AM - [-102.820] ----D- C:\Program Files (x86)\Ubisoft O43 - CFD: 8/7/2010 - 12:31:26 AM - [0.006] ----D- C:\Program Files (x86)\UltraVPN O43 - CFD: 7/14/2009 - 5:57:08 AM - [0] --H-D- C:\Program Files (x86)\Uninstall Information O43 - CFD: 5/3/2011 - 9:56:48 AM - [-547.297] ----D- C:\Program Files (x86)\Valve O43 - CFD: 2/23/2011 - 7:47:26 PM - [92.075] ----D- C:\Program Files (x86)\VaudTax2010 O43 - CFD: 10/16/2011 - 2:29:56 AM - [24.912] ----D- C:\Program Files (x86)\Vidalia Bundle O43 - CFD: 6/3/2011 - 11:30:38 PM - [4.856] ----D- C:\Program Files (x86)\Video Card Stability Test O43 - CFD: 7/11/2010 - 12:42:24 AM - [80.391] ----D- C:\Program Files (x86)\VideoLAN O43 - CFD: 10/23/2011 - 7:30:44 PM - [726.596] ----D- C:\Program Files (x86)\VMware O43 - CFD: 9/9/2011 - 12:28:16 PM - [5.494] ----D- C:\Program Files (x86)\VPNFacile O43 - CFD: 3/26/2011 - 9:40:22 PM - [120.267] ----D- C:\Program Files (x86)\VSTax 2010 O43 - CFD: 6/2/2011 - 12:48:44 AM - [0] ----D- C:\Program Files (x86)\VstPlugins O43 - CFD: 5/26/2011 - 10:38:20 PM - [0.055] ----D- C:\Program Files (x86)\Warsow 0.5 O43 - CFD: 10/11/2011 - 9:55:56 AM - [4.272] ----D- C:\Program Files (x86)\Webcam Simulator O43 - CFD: 1/2/2009 - 12:54:32 AM - [0.500] ----D- C:\Program Files (x86)\Windows Defender O43 - CFD: 10/21/2010 - 12:24:24 PM - [91.255] ----D- C:\Program Files (x86)\Windows Live O43 - CFD: 8/8/2010 - 7:12:48 PM - [0] ----D- C:\Program Files (x86)\Windows Live Safety Center O43 - CFD: 10/21/2010 - 12:23:18 PM - [0.234] ----D- C:\Program Files (x86)\Windows Live SkyDrive O43 - CFD: 3/5/2011 - 10:44:56 PM - [5.895] ----D- C:\Program Files (x86)\Windows Mail O43 - CFD: 3/5/2011 - 10:44:56 PM - [4.791] ----D- C:\Program Files (x86)\Windows Media Player O43 - CFD: 7/14/2009 - 6:32:40 AM - [11.632] ----D- C:\Program Files (x86)\Windows NT O43 - CFD: 3/5/2011 - 10:44:56 PM - [4.213] ----D- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 3/5/2011 - 10:44:56 PM - [0.181] ----D- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 3/5/2011 - 10:44:56 PM - [5.717] ----D- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2/1/2011 - 11:45:48 PM - [0.227] ----D- C:\Program Files (x86)\WinPcap O43 - CFD: 11/7/2011 - 3:59:38 PM - [1.682] ----D- C:\Program Files (x86)\Wiztoo Software O43 - CFD: 8/5/2010 - 8:37:30 PM - [16.444] ----D- C:\Program Files (x86)\WMV to AVI MPEG DVD WMV Converter O43 - CFD: 4/14/2011 - 10:08:34 PM - [25.746] ----D- C:\Program Files (x86)\XericDesign O43 - CFD: 11/29/2011 - 10:32:10 PM - [19.270] ----D- C:\Program Files (x86)\Xfire O43 - CFD: 11/10/2011 - 12:38:48 AM - [13.994] ----D- C:\Program Files (x86)\Xi O43 - CFD: 4/22/2011 - 11:41:46 AM - [0.121] ----D- C:\Program Files (x86)\Xvid O43 - CFD: 1/13/2011 - 3:18:42 AM - [29.727] ----D- C:\Program Files (x86)\Yahoo! O43 - CFD: 8/7/2010 - 1:56:40 PM - [43.998] ----D- C:\Program Files (x86)\Your Freedom O43 - CFD: 3/24/2011 - 12:36:12 PM - [23.290] ----D- C:\Program Files (x86)\Yuna Software O43 - CFD: 2/18/2011 - 11:58:52 AM - [0.002] --H-D- C:\Program Files (x86)\Zero G Registry O43 - CFD: 11/30/2011 - 3:23:02 PM - [8.423] ----D- C:\Program Files (x86)\ZHPDiag O43 - CFD: 1/25/2011 - 8:14:20 AM - [0] ----D- C:\Program Files (x86)\ZuluTrade Widget O43 - CFD: 6/16/2011 - 1:31:54 AM - [2.853] ----D- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 10/27/2011 - 12:59:34 PM - [37.540] ----D- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 10/3/2010 - 3:10:20 AM - [59.370] ----D- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 11/23/2011 - 2:03:18 PM - [96.180] ----D- C:\Program Files (x86)\Common Files\AVSMedia O43 - CFD: 2/10/2011 - 2:12:38 AM - [1.073] ----D- C:\Program Files (x86)\Common Files\BitSpirit O43 - CFD: 11/17/2010 - 1:00:16 PM - [2.625] ----D- C:\Program Files (x86)\Common Files\Blizzard Entertainment O43 - CFD: 11/25/2010 - 9:42:28 AM - [0.089] ----D- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 6/30/2010 - 3:32:46 PM - [22.895] ----D- C:\Program Files (x86)\Common Files\DivX Shared O43 - CFD: 11/2/2011 - 11:00:00 PM - [33.803] ----D- C:\Program Files (x86)\Common Files\DVDVideoSoft O43 - CFD: 10/12/2009 - 11:44:38 PM - [0.097] ----D- C:\Program Files (x86)\Common Files\EgisTec O43 - CFD: 2/23/2011 - 8:12:32 PM - [0.329] ----D- C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 2/23/2011 - 8:12:32 PM - [0.092] ----D- C:\Program Files (x86)\Common Files\HP O43 - CFD: 12/23/2009 - 7:46:22 PM - [6.350] ----D- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 10/24/2011 - 1:57:38 PM - [1.201] ----D- C:\Program Files (x86)\Common Files\Java O43 - CFD: 4/6/2011 - 2:45:52 PM - [0.494] ----D- C:\Program Files (x86)\Common Files\LogiShrd O43 - CFD: 10/14/2010 - 12:21:04 PM - [12.016] ----D- C:\Program Files (x86)\Common Files\MAGIX Services O43 - CFD: 10/26/2011 - 1:01:58 PM - [261.865] ----D- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 10/31/2010 - 9:39:54 PM - [124.704] ----D- C:\Program Files (x86)\Common Files\Nero O43 - CFD: 10/12/2009 - 11:29:40 PM - [0.338] ----D- C:\Program Files (x86)\Common Files\Oberon Media O43 - CFD: 6/30/2010 - 3:32:54 PM - [4.521] ----D- C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 7/14/2009 - 4:20:10 AM - [0.003] ----D- C:\Program Files (x86)\Common Files\Services O43 - CFD: 7/14/2009 - 4:20:10 AM - [39.200] ----D- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 3/5/2011 - 1:10:02 AM - [0.800] ----D- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 10/29/2011 - 2:46:54 AM - [0] ----D- C:\Program Files (x86)\Common Files\SWF Studio O43 - CFD: 11/10/2011 - 3:20:48 AM - [42.257] ----D- C:\Program Files (x86)\Common Files\System O43 - CFD: 10/23/2011 - 7:30:44 PM - [8.018] ----D- C:\Program Files (x86)\Common Files\VMware O43 - CFD: 6/17/2010 - 10:51:32 AM - [0] ----D- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 8/5/2010 - 1:44:10 PM - [0.302] ----D- C:\Program Files (x86)\Common Files\Yahoo! ~ Scan Program Folder in 43mn AMs

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.DB9A723050C04D2E84B9916B8D481DEF] - 11/10/2011 - 3:22:46 AM ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [483088] O44 - LFC:[MD5.DB9A723050C04D2E84B9916B8D481DEF] - 11/10/2011 - 3:22:46 AM RSHAD . (...) -- C:\Windows\system32\FNTCACHE.DAT [483088] O44 - LFC:[MD5.A7138E6FFA25D5281A0E35ABF60D60A9] - 11/10/2011 - 4:09:47 AM ---A- . (.Andrea Electronics Corporation - Capture Noise Filters (64-bit).) -- C:\Windows\SysNative\AERTAC64.dll [200800] O44 - LFC:[MD5.A7138E6FFA25D5281A0E35ABF60D60A9] - 11/10/2011 - 4:09:47 AM RSHAD . (.Andrea Electronics Corporation - Capture Noise Filters (64-bit).) -- C:\Windows\system32\AERTAC64.dll [200800] O44 - LFC:[MD5.973ADB6AD47AC047F900C0D760AB6BE2] - 11/10/2011 - 4:09:48 AM ---A- . (.Andrea Electronics Corporation - Render Noise Filters (64-bit).) -- C:\Windows\SysNative\AERTAR64.dll [108960] O44 - LFC:[MD5.973ADB6AD47AC047F900C0D760AB6BE2] - 11/10/2011 - 4:09:48 AM RSHAD . (.Andrea Electronics Corporation - Render Noise Filters (64-bit).) -- C:\Windows\system32\AERTAR64.dll [108960] O44 - LFC:[MD5.8B5A737AD11EF45D9B1AEB4ED6884968] - 11/10/2011 - 4:09:49 AM ---A- . (.DTS - DTS Bass Enhancement COM DLL.) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll [728680] O44 - LFC:[MD5.8B5A737AD11EF45D9B1AEB4ED6884968] - 11/10/2011 - 4:09:49 AM RSHAD . (.DTS - DTS Bass Enhancement COM DLL.) -- C:\Windows\system32\DTSBassEnhancementDLL64.dll [728680] O44 - LFC:[MD5.21B38D4D86A87909491F690883AE6D1E] - 11/10/2011 - 4:09:50 AM ---A- . (.DTS - DTS Boost COM DLL.) -- C:\Windows\SysNative\DTSBoostDLL64.dll [1486952] O44 - LFC:[MD5.BC0474E5476E5EA0D0E1AA5AC41E2061] - 11/10/2011 - 4:09:50 AM ---A- . (.DTS - DTS GFX APO.) -- C:\Windows\SysNative\DTSGFXAPO64.dll [242792] O44 - LFC:[MD5.FF31A2F57AAAB58DB78FCC961A58B206] - 11/10/2011 - 4:09:50 AM ---A- . (.DTS - DTS Gain Compensator COM DLL.) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll [428648] O44 - LFC:[MD5.21B38D4D86A87909491F690883AE6D1E] - 11/10/2011 - 4:09:50 AM RSHAD . (.DTS - DTS Boost COM DLL.) -- C:\Windows\system32\DTSBoostDLL64.dll [1486952] O44 - LFC:[MD5.BC0474E5476E5EA0D0E1AA5AC41E2061] - 11/10/2011 - 4:09:50 AM RSHAD . (.DTS - DTS GFX APO.) -- C:\Windows\system32\DTSGFXAPO64.dll [242792] O44 - LFC:[MD5.FF31A2F57AAAB58DB78FCC961A58B206] - 11/10/2011 - 4:09:50 AM RSHAD . (.DTS - DTS Gain Compensator COM DLL.) -- C:\Windows\system32\DTSGainCompensatorDLL64.dll [428648] O44 - LFC:[MD5.3B8FB5376F5431C0101747D5138BCB9B] - 11/10/2011 - 4:09:51 AM ---A- . (.DTS - DTS GFX APO.) -- C:\Windows\SysNative\DTSGFXAPONS64.dll [241768] O44 - LFC:[MD5.B3977C8BA77559F4F8752AE8EB724C87] - 11/10/2011 - 4:09:51 AM ---A- . (.DTS - DTS LFX APO.) -- C:\Windows\SysNative\DTSLFXAPO64.dll [242792] O44 - LFC:[MD5.192A03A21636D3775CEE4C049C3BEB2A] - 11/10/2011 - 4:09:51 AM ---A- . (.DTS - DTS Limiter COM DLL.) -- C:\Windows\SysNative\DTSLimiterDLL64.dll [432744] O44 - LFC:[MD5.2EF5442E8E7ED20F7634EEFB09640C8F] - 11/10/2011 - 4:09:51 AM ---A- . (.DTS - DTS NEO:PC COM DLL.) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll [491112] O44 - LFC:[MD5.3B8FB5376F5431C0101747D5138BCB9B] - 11/10/2011 - 4:09:51 AM RSHAD . (.DTS - DTS GFX APO.) -- C:\Windows\system32\DTSGFXAPONS64.dll [241768] O44 - LFC:[MD5.B3977C8BA77559F4F8752AE8EB724C87] - 11/10/2011 - 4:09:51 AM RSHAD . (.DTS - DTS LFX APO.) -- C:\Windows\system32\DTSLFXAPO64.dll [242792] O44 - LFC:[MD5.192A03A21636D3775CEE4C049C3BEB2A] - 11/10/2011 - 4:09:51 AM RSHAD . (.DTS - DTS Limiter COM DLL.) -- C:\Windows\system32\DTSLimiterDLL64.dll [432744] O44 - LFC:[MD5.2EF5442E8E7ED20F7634EEFB09640C8F] - 11/10/2011 - 4:09:51 AM RSHAD . (.DTS - DTS NEO:PC COM DLL.) -- C:\Windows\system32\DTSNeoPCDLL64.dll [491112] O44 - LFC:[MD5.F7C357462077156DC211AC2112FC8C53] - 11/10/2011 - 4:09:52 AM ---A- . (.DTS - DTS Surround Sensation Headphone COM DLL.) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll [1568360] O44 - LFC:[MD5.F132C08BD8C58579B400DFAA71F34CFB] - 11/10/2011 - 4:09:52 AM ---A- . (.DTS - DTS Surround Sensation Speaker COM DLL.) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll [1756264] O44 - LFC:[MD5.F7C357462077156DC211AC2112FC8C53] - 11/10/2011 - 4:09:52 AM RSHAD . (.DTS - DTS Surround Sensation Headphone COM DLL.) -- C:\Windows\system32\DTSS2HeadphoneDLL64.dll [1568360] O44 - LFC:[MD5.F132C08BD8C58579B400DFAA71F34CFB] - 11/10/2011 - 4:09:52 AM RSHAD . (.DTS - DTS Surround Sensation Speaker COM DLL.) -- C:\Windows\system32\DTSS2SpeakerDLL64.dll [1756264] O44 - LFC:[MD5.9948969B2C1987B1D64789EFEB284A84] - 11/10/2011 - 4:09:53 AM ---A- . (.DTS - DTS Symmetry COM DLL.) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll [712296] O44 - LFC:[MD5.9948969B2C1987B1D64789EFEB284A84] - 11/10/2011 - 4:09:53 AM RSHAD . (.DTS - DTS Symmetry COM DLL.) -- C:\Windows\system32\DTSSymmetryDLL64.dll [712296] O44 - LFC:[MD5.DE32448E6B40141C80DAABFF6FBE1744] - 11/10/2011 - 4:09:54 AM ---A- . (.DTS - DTS Voice Clarity COM DLL.) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll [693352] O44 - LFC:[MD5.973D8D0843F65B69DE13B649F5570975] - 11/10/2011 - 4:09:54 AM ---A- . (.Fortemedia Corporation - Fortemedia SAMSoft sAPO.) -- C:\Windows\SysNative\FMAPO64.dll [2085440] O44 - LFC:[MD5.DE32448E6B40141C80DAABFF6FBE1744] - 11/10/2011 - 4:09:54 AM RSHAD . (.DTS - DTS Voice Clarity COM DLL.) -- C:\Windows\system32\DTSVoiceClarityDLL64.dll [693352] O44 - LFC:[MD5.973D8D0843F65B69DE13B649F5570975] - 11/10/2011 - 4:09:54 AM RSHAD . (.Fortemedia Corporation - Fortemedia SAMSoft sAPO.) -- C:\Windows\system32\FMAPO64.dll [2085440] O44 - LFC:[MD5.8E50E3BA76CCD8868EF0415F2C388129] - 11/10/2011 - 4:10:03 AM ---A- . (.Knowles Acoustics - Knowles HD Audio APO.) -- C:\Windows\SysNative\KAAPORT64.dll [603472] O44 - LFC:[MD5.8E50E3BA76CCD8868EF0415F2C388129] - 11/10/2011 - 4:10:03 AM RSHAD . (.Knowles Acoustics - Knowles HD Audio APO.) -- C:\Windows\system32\KAAPORT64.dll [603472] O44 - LFC:[MD5.75616F8DB5C092A8A50AFEC273859DD7] - 11/10/2011 - 4:10:04 AM ---A- . (.Waves Audio Ltd. - MaxxAudio APO.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll [318808] O44 - LFC:[MD5.03E0955A7D8E5E74E7F6986A56A66196] - 11/10/2011 - 4:10:04 AM ---A- . (.Waves Audio Ltd. - MaxxAudio APO.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll [341336] O44 - LFC:[MD5.87B5AB256A5A068EDDA0F4B4FAC728CC] - 11/10/2011 - 4:10:04 AM ---A- . (.Waves Audio Ltd. - Pas de description.) -- C:\Windows\SysNative\MaxxAudioEQ.dll [2197264] O44 - LFC:[MD5.75616F8DB5C092A8A50AFEC273859DD7] - 11/10/2011 - 4:10:04 AM RSHAD . (.Waves Audio Ltd. - MaxxAudio APO.) -- C:\Windows\system32\MaxxAudioAPO20.dll [318808] O44 - LFC:[MD5.03E0955A7D8E5E74E7F6986A56A66196] - 11/10/2011 - 4:10:04 AM RSHAD . (.Waves Audio Ltd. - MaxxAudio APO.) -- C:\Windows\system32\MaxxAudioAPO30.dll [341336] O44 - LFC:[MD5.87B5AB256A5A068EDDA0F4B4FAC728CC] - 11/10/2011 - 4:10:04 AM RSHAD . (.Waves Audio Ltd. - Pas de description.) -- C:\Windows\system32\MaxxAudioEQ.dll [2197264] O44 - LFC:[MD5.CF171618F3999FEB4F95C77A8C376C92] - 11/10/2011 - 4:10:05 AM ---A- . (.Waves Audio Ltd. - MaxxVolumeSD APO.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll [334680] O44 - LFC:[MD5.F5960A7D7DD19FD17F0F5640D7BAFA2A] - 11/10/2011 - 4:10:05 AM ---A- . (.Waves Audio Ltd. - Pas de description.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll [2238296] O44 - LFC:[MD5.CF171618F3999FEB4F95C77A8C376C92] - 11/10/2011 - 4:10:05 AM RSHAD . (.Waves Audio Ltd. - MaxxVolumeSD APO.) -- C:\Windows\system32\MaxxVolumeSDAPO.dll [334680] O44 - LFC:[MD5.F5960A7D7DD19FD17F0F5640D7BAFA2A] - 11/10/2011 - 4:10:05 AM RSHAD . (.Waves Audio Ltd. - Pas de description.) -- C:\Windows\system32\MaxxAudioRealtek.dll [2238296] O44 - LFC:[MD5.8B211FFCCC2C08DDC0FD023E70A13DD8] - 11/10/2011 - 4:10:06 AM --- A- . (.Dolby Laboratories - Dolby PCEE4 ASL Analog x64.) -- C:\Windows\SysNative\R4EEA64A.dll [118104] O44 - LFC:[MD5.B90443404596E62B2E60A9EEA5FAF5CA] - 11/10/2011 - 4:10:06 AM ---A- . (.Dolby Laboratories - Dolby PCEE4 COM DLL x64.) -- C:\Windows\SysNative\R4EED64A.dll [426328] O44 - LFC:[MD5.8D2AF770C4781E11A2AEC2089D5154C5] - 11/10/2011 - 4:10:06 AM ---A- . (.Dolby Laboratories - Dolby PCEE4 Control Panel x64.) -- C:\Windows\SysNative\R4EEP64A.dll [3308376] O44 - LFC:[MD5.E05E98B73A089BC6DDADE5577B64D1E6] - 11/10/2011 - 4:10:06 AM ---A- . (.Dolby Laboratories - Dolby PCEE4 GFX APO x64.) -- C:\Windows\SysNative\R4EEG64A.dll [74072] O44 - LFC:[MD5.E0B4052B55114ACD0BFE627AE050E751] - 11/10/2011 - 4:10:06 AM ---A- . (.Dolby Laboratories - Dolby PCEE4 LFX APO x64.) -- C:\Windows\SysNative\R4EEL64A.dll [136024] O44 - LFC:[MD5.8B211FFCCC2C08DDC0FD023E70A13DD8] - 11/10/2011 - 4:10:06 AM RSHAD . (.Dolby Laboratories - Dolby PCEE4 ASL Analog x64.) -- C:\Windows\system32\R4EEA64A.dll [118104] O44 - LFC:[MD5.B90443404596E62B2E60A9EEA5FAF5CA] - 11/10/2011 - 4:10:06 AM RSHAD . (.Dolby Laboratories - Dolby PCEE4 COM DLL x64.) -- C:\Windows\system32\R4EED64A.dll [426328] O44 - LFC:[MD5.8D2AF770C4781E11A2AEC2089D5154C5] - 11/10/2011 - 4:10:06 AM RSHAD . (.Dolby Laboratories - Dolby PCEE4 Control Panel x64.) -- C:\Windows\system32\R4EEP64A.dll [3308376] O44 - LFC:[MD5.E05E98B73A089BC6DDADE5577B64D1E6] - 11/10/2011 - 4:10:06 AM RSHAD . (.Dolby Laboratories - Dolby PCEE4 GFX APO x64.) -- C:\Windows\system32\R4EEG64A.dll [74072] O44 - LFC:[MD5.E0B4052B55114ACD0BFE627AE050E751] - 11/10/2011 - 4:10:06 AM RSHAD . (.Dolby Laboratories - Dolby PCEE4 LFX APO x64.) -- C:\Windows\system32\R4EEL64A.dll [136024] O44 - LFC:[MD5.F6032F1B11DFC29CF2DA7E4329839AA1] - 11/10/2011 - 4:10:09 AM ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller Resource.) -- C:\Windows\SysNative\RCoRes64.dat [1483264] O44 - LFC:[MD5.C5404C57AF454369A81F2591073A4A00] - 11/10/2011 - 4:10:09 AM ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller.) -- C:\Windows\SysNative\RCoInst64.dll [92264] O44 - LFC:[MD5.F6032F1B11DFC29CF2DA7E4329839AA1] - 11/10/2011 - 4:10:09 AM RSHAD . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller Resource.) -- C:\Windows\system32\RCoRes64.dat [1483264] O44 - LFC:[MD5.C5404C57AF454369A81F2591073A4A00] - 11/10/2011 - 4:10:09 AM RSHAD . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller.) -- C:\Windows\system32\RCoInst64.dll [92264] O44 - LFC:[MD5.A6286A6C7A1BBFCBA17AA54384A21D1C] - 11/10/2011 - 4:10:10 AM ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 COM DLL x64.) -- C:\Windows\SysNative\RTEED64A.dll [204120] O44 - LFC:[MD5.D0D0D82B7366E691275E433CD34F89B2] - 11/10/2011 - 4:10:10 AM ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 Control Panel x64.) -- C:\Windows\SysNative\RTEEP64A.dll [375128] O44 - LFC:[MD5.6F4CD493196100EEF349D7132CECAFD9] - 11/10/2011 - 4:10:10 AM ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 GFX APO x64.) -- C:\Windows\SysNative\RTEEG64A.dll [78680] O44 - LFC:[MD5.ECAEC5FBBBEF8612AF0A866AFA5F7EF2] - 11/10/2011 - 4:10:10 AM ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 LFX APO x64.) -- C:\Windows\SysNative\RTEEL64A.dll [101208] O44 - LFC:[MD5.E9D4A333DF15D06C68AC4BFB9B6581CB] - 11/10/2011 - 4:10:10 AM ---A- . (.Dolby Laboratories, Inc. - PCEE3 DAA Control Panel x64.) -- C:\Windows\SysNative\RP3DAA64.dll [310104] O44 - LFC:[MD5.B6FE01558CC03F3866C9AD0ED19261D8] - 11/10/2011 - 4:10:10 AM ---A- . (.Dolby Laboratories, Inc. - PCEE3 DHT Control Panel x64.) -- C:\Windows\SysNative\RP3DHT64.dll [310104] O44 - LFC:[MD5.10936CD08C1830F95497E4ACB26E7019] - 11/10/2011 - 4:10:10 AM ---A- . (.Realtek Semiconductor Corp. - RTCOMDLL Module.) -- C:\Windows\SysNative\RTCOM64.dll [1245288] O44 - LFC:[MD5.9D4123000AA5B75D3869F4531C9BA81B] - 11/10/2011 - 4:10:10 AM ---A- . (.Realtek Semiconductor Corp. - Realtek APO API.) -- C:\Windows\SysNative\RtkApi64.dll [1805928] O44 - LFC:[MD5.A663EED94D922E7B92AC0FD5E5F696C4] - 11/10/2011 - 4:10:10 AM ---A- . (.Realtek Semiconductor Corp. - Realtek(r) LFX/GFX DSP component.) -- C:\Windows\SysNative\RtkAPO64.dll [3114088] O44 - LFC:[MD5.A6286A6C7A1BBFCBA17AA54384A21D1C] - 11/10/2011 - 4:10:10 AM RSHAD . (.Dolby Laboratories, Inc. - Dolby PCEE3 COM DLL x64.) -- C:\Windows\system32\RTEED64A.dll [204120] O44 - LFC:[MD5.D0D0D82B7366E691275E433CD34F89B2] - 11/10/2011 - 4:10:10 AM RSHAD . (.Dolby Laboratories, Inc. - Dolby PCEE3 Control Panel x64.) -- C:\Windows\system32\RTEEP64A.dll [375128] O44 - LFC:[MD5.6F4CD493196100EEF349D7132CECAFD9] - 11/10/2011 - 4:10:10 AM RSHAD . (.Dolby Laboratories, Inc. - Dolby PCEE3 GFX APO x64.) -- C:\Windows\system32\RTEEG64A.dll [78680] O44 - LFC:[MD5.ECAEC5FBBBEF8612AF0A866AFA5F7EF2] - 11/10/2011 - 4:10:10 AM RSHAD . (.Dolby Laboratories, Inc. - Dolby PCEE3 LFX APO x64.) -- C:\Windows\system32\RTEEL64A.dll [101208] O44 - LFC:[MD5.E9D4A333DF15D06C68AC4BFB9B6581CB] - 11/10/2011 - 4:10:10 AM RSHAD . (.Dolby Laboratories, Inc. - PCEE3 DAA Control Panel x64.) -- C:\Windows\system32\RP3DAA64.dll [310104] O44 - LFC:[MD5.B6FE01558CC03F3866C9AD0ED19261D8] - 11/10/2011 - 4:10:10 AM RSHAD . (.Dolby Laboratories, Inc. - PCEE3 DHT Control Panel x64.) -- C:\Windows\system32\RP3DHT64.dll [310104] O44 - LFC:[MD5.10936CD08C1830F95497E4ACB26E7019] - 11/10/2011 - 4:10:10 AM RSHAD . (.Realtek Semiconductor Corp. - RTCOMDLL Module.) -- C:\Windows\system32\RTCOM64.dll [1245288] O44 - LFC:[MD5.9D4123000AA5B75D3869F4531C9BA81B] - 11/10/2011 - 4:10:10 AM RSHAD . (.Realtek Semiconductor Corp. - Realtek APO API.) -- C:\Windows\system32\RtkApi64.dll [1805928] O44 - LFC:[MD5.A663EED94D922E7B92AC0FD5E5F696C4] - 11/10/2011 - 4:10:10 AM RSHAD . (.Realtek Semiconductor Corp. - Realtek(r) LFX/GFX DSP component.) -- C:\Windows\system32\RtkAPO64.dll [3114088] O44 - LFC:[MD5.0805289E121F3E3C458C970B08314EB2] - 11/10/2011 - 4:10:11 AM ---A- . (.Realtek Semiconductor Corp. - RtkCfg.dll.) -- C:\Windows\SysNative\RtkCfg64.dll [149608] O44 - LFC:[MD5.0805289E121F3E3C458C970B08314EB2] - 11/10/2011 - 4:10:11 AM RSHAD . (.Realtek Semiconductor Corp. - RtkCfg.dll.) -- C:\Windows\system32\RtkCfg64.dll [149608] O44 - LFC:[MD5.4A73114B2BEE7AC77AA7703EB58DD393] - 11/10/2011 - 4:10:12 AM ---A- . (.Realtek Semiconductor Corp. - RtlCPAPI Module.) -- C:\Windows\SysNative\RtlCPAPI64.dll [332392] O44 - LFC:[MD5.718A4008EE5DA174400396B27509EF82] - 11/10/2011 - 4:10:12 AM RSHAD . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\system32\drivers\RTKVHD64.sys [2899176] O44 - LFC:[MD5.4A73114B2BEE7AC77AA7703EB58DD393] - 11/10/2011 - 4:10:12 AM RSHAD . (.Realtek Semiconductor Corp. - RtlCPAPI Module.) -- C:\Windows\system32\RtlCPAPI64.dll [332392] O44 - LFC:[MD5.3F5BC9D09699B009A4C43AAFE2457B56] - 11/10/2011 - 4:10:13 AM ---A- . (.Realtek Semiconductor Corp. - Realtek LFX/GFX DSP UI component for Window.) -- C:\Windows\SysNative\RtPgEx64.dll [2405992] O44 - LFC:[MD5.3F5BC9D09699B009A4C43AAFE2457B56] - 11/10/2011 - 4:10:13 AM RSHAD . (.Realtek Semiconductor Corp. - Realtek LFX/GFX DSP UI component for Window.) -- C:\Windows\system32\RtPgEx64.dll [2405992] O44 - LFC:[MD5.A81248F30E62963E737DC26A32C8CDD4] - 11/10/2011 - 4:10:14 AM ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\Windows\SysNative\RTSnMg64.cpl [1560680] O44 - LFC:[MD5.A81248F30E62963E737DC26A32C8CDD4] - 11/10/2011 - 4:10:14 AM RSHAD . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\Windows\system32\RTSnMg64.cpl [1560680] O44 - LFC:[MD5.03E343EECFC59323AAD97AACC1BDB275] - 11/10/2011 - 4:10:16 AM --- A- . (.Sony Corporation - Sony SFSS APO.) -- C:\Windows\SysNative\SFSS_APO.dll [121744] O44 - LFC:[MD5.9C4CF2E875035DBA252A736E424BF37D] - 11/10/2011 - 4:10:16 AM ---A- . (.Synopsys, Inc. - SFAPO.DLL.) -- C:\Windows\SysNative\SFAPO64.dll [78176] O44 - LFC:[MD5.ED27D943336C2956DCE43A7B777FAEFE] - 11/10/2011 - 4:10:16 AM ---A- . (.Synopsys, Inc. - SFCOM.DLL.) -- C:\Windows\SysNative\SFCOM64.dll [81248] O44 - LFC:[MD5.D95A37963E504EBE32693F3C2946C4C9] - 11/10/2011 - 4:10:16 AM ---A- . (.Synopsys, Inc. - SFNHK.DLL.) -- C:\Windows\SysNative\SFNHK64.dll [220512] O44 - LFC:[MD5.03E343EECFC59323AAD97AACC1BDB275] - 11/10/2011 - 4:10:16 AM RSHAD . (.Sony Corporation - Sony SFSS APO.) -- C:\Windows\system32\SFSS_APO.dll [121744] O44 - LFC:[MD5.9C4CF2E875035DBA252A736E424BF37D] - 11/10/2011 - 4:10:16 AM RSHAD . (.Synopsys, Inc. - SFAPO.DLL.) -- C:\Windows\system32\SFAPO64.dll [78176] O44 - LFC:[MD5.ED27D943336C2956DCE43A7B777FAEFE] - 11/10/2011 - 4:10:16 AM RSHAD . (.Synopsys, Inc. - SFCOM.DLL.) -- C:\Windows\system32\SFCOM64.dll [81248] O44 - LFC:[MD5.D95A37963E504EBE32693F3C2946C4C9] - 11/10/2011 - 4:10:16 AM RSHAD . (.Synopsys, Inc. - SFNHK.DLL.) -- C:\Windows\system32\SFNHK64.dll [220512] O44 - LFC:[MD5.A88BE9A6C4E646A2B2A1BD3A7F4B58E7] - 11/10/2011 - 4:10:17 AM ---A- . (.SRS Labs, Inc. - COM object implementing SRS Headphone 360.) -- C:\Windows\SysNative\SRSHP64.dll [198896] O44 - LFC:[MD5.A028717B791416182959B325D5B40679] - 11/10/2011 - 4:10:17 AM ---A- . (.SRS Labs, Inc. - TruSurround HD and HD4 COM object for Windo.) -- C:\Windows\SysNative\SRSTSH64.dll [211184] O44 - LFC:[MD5.018D3D2478754AA411DE6DA6DE5F8F21] - 11/10/2011 - 4:10:17 AM ---A- . (.SRS Labs, Inc. - TruSurroundXT Module.) -- C:\Windows\SysNative\SRSTSX64.dll [518896] O44 - LFC:[MD5.2FCADCC14F8E540F6ADE4BF92BD8AEDD] - 11/10/2011 - 4:10:17 AM --- A- . (.SRS Labs, Inc. - WOW HD COM object for Windows.) -- C:\Windows\SysNative\SRSWOW64.dll [155888] O44 - LFC:[MD5.A88BE9A6C4E646A2B2A1BD3A7F4B58E7] - 11/10/2011 - 4:10:17 AM RSHAD . (.SRS Labs, Inc. - COM object implementing SRS Headphone 360.) -- C:\Windows\system32\SRSHP64.dll [198896] O44 - LFC:[MD5.A028717B791416182959B325D5B40679] - 11/10/2011 - 4:10:17 AM RSHAD . (.SRS Labs, Inc. - TruSurround HD and HD4 COM object for Windo.) -- C:\Windows\system32\SRSTSH64.dll [211184] O44 - LFC:[MD5.018D3D2478754AA411DE6DA6DE5F8F21] - 11/10/2011 - 4:10:17 AM RSHAD . (.SRS Labs, Inc. - TruSurroundXT Module.) -- C:\Windows\system32\SRSTSX64.dll [518896] O44 - LFC:[MD5.2FCADCC14F8E540F6ADE4BF92BD8AEDD] - 11/10/2011 - 4:10:17 AM RSHAD . (.SRS Labs, Inc. - WOW HD COM object for Windows.) -- C:\Windows\system32\SRSWOW64.dll [155888] O44 - LFC:[MD5.71A48CA6300620F06753F4CA44D01AF6] - 11/10/2011 - 4:10:18 AM ---A- . (.Waves Audio Ltd. - General Library for Plug-Ins.) -- C:\Windows\SysNative\WavesGUILib.dll [2601816] O44 - LFC:[MD5.71A48CA6300620F06753F4CA44D01AF6] - 11/10/2011 - 4:10:18 AM RSHAD . (.Waves Audio Ltd. - General Library for Plug-Ins.) -- C:\Windows\system32\WavesGUILib.dll [2601816] O44 - LFC:[MD5.472A5FFCD0DEFF370B9087E5949A0A0E] - 11/29/2011 - 7:18:32 PM RSHAD . (.NVIDIA Corporation - NVIDIA Compatible Windows Vista Kernel Mode.) -- C:\Windows\system32\drivers\nvBridge.kmd [11240] O44 - LFC:[MD5.1215E473438E71A1E0955290A4223FF8] - 11/29/2011 - 7:18:57 PM ---A- . (.NVIDIA Corporation - NVIDIA Compatible D3D10 Driver, Version 266.) -- C:\Windows\SysNative\SET5520.tmp [7728744] O44 - LFC:[MD5.95CCF802C5C45CDE27784D96364AB8D5] - 11/29/2011 - 7:18:57 PM ---A- . (.NVIDIA Corporation - NVIDIA D3D10 Driver, Version 285.62.) -- C:\Windows\SysNative\nvwgf2umx.dll [8791360] O44 - LFC:[MD5.1215E473438E71A1E0955290A4223FF8] - 11/29/2011 - 7:18:57 PM RSHAD . (.NVIDIA Corporation - NVIDIA Compatible D3D10 Driver, Version 266.) -- C:\Windows\system32\SET5520.tmp [7728744] O44 - LFC:[MD5.95CCF802C5C45CDE27784D96364AB8D5] - 11/29/2011 - 7:18:57 PM RSHAD . (.NVIDIA Corporation - NVIDIA D3D10 Driver, Version 285.62.) -- C:\Windows\system32\nvwgf2umx.dll [8791360] O44 - LFC:[MD5.0A8279F735191B33D914EEDED5DEF569] - 11/29/2011 - 7:19:18 PM ---A- . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\Windows\SysNative\nvgenco642040.dll [1359976] O44 - LFC:[MD5.0A8279F735191B33D914EEDED5DEF569] - 11/29/2011 - 7:19:18 PM RSHAD . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\Windows\system32\nvgenco642040.dll [1359976] O44 - LFC:[MD5.B4C2C4A8199079520F94B4C40F1836CB] - 11/29/2011 - 7:19:19 PM ---A- . (.NVIDIA Corporation - Display Driver Coinstaller.) -- C:\Windows\SysNative\nvdispco642090.dll [1614440] O44 - LFC:[MD5.B4C2C4A8199079520F94B4C40F1836CB] - 11/29/2011 - 7:19:19 PM RSHAD . (.NVIDIA Corporation - Display Driver Coinstaller.) -- C:\Windows\system32\nvdispco642090.dll [1614440] O44 - LFC:[MD5.183C378ED75CCF1936E646E861F919B5] - 11/29/2011 - 7:48:10 PM ---A- . (.Khronos Group - OpenCL Client DLL.) -- C:\Windows\SysNative\OpenCL.dll [68928] O44 - LFC:[MD5.183C378ED75CCF1936E646E861F919B5] - 11/29/2011 - 7:48:10 PM ---A- . (.Khronos Group - OpenCL Client DLL.) -- C:\Windows\system32\OpenCL.dll [68928] O44 - LFC:[MD5.6835BADA17BF9D0581EDA652B5794EB9] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 285.62.) -- C:\Windows\SysNative\nvcuda.dll [7581504] O44 - LFC:[MD5.6835BADA17BF9D0581EDA652B5794EB9] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 285.62.) -- C:\Windows\system32\nvcuda.dll [7581504] O44 - LFC:[MD5.84B7DCD1AC85F862CD5991C247634B4B] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 285.6.) -- C:\Windows\SysNative\nvcuvid.dll [2542912] O44 - LFC:[MD5.84B7DCD1AC85F862CD5991C247634B4B] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 285.6.) -- C:\Windows\system32\nvcuvid.dll [2542912] O44 - LFC:[MD5.6ED134B1C0754B3DFB902F27125884EB] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 285.62.) -- C:\Windows\SysNative\nvcuvenc.dll [2232128] O44 - LFC:[MD5.6ED134B1C0754B3DFB902F27125884EB] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 285.62.) -- C:\Windows\system32\nvcuvenc.dll [2232128] O44 - LFC:[MD5.D7645529F49EED4682B06F928CC6C988] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA Compatible OpenGL ICD.) -- C:\Windows\SysNative\nvoglv64.dll [24742720] O44 - LFC:[MD5.984AF5B715F9AF8DBBB6DCBCB90C4594] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 285.62.) -- C:\Windows\SysNative\nvcompiler.dll [24796992] O44 - LFC:[MD5.984AF5B715F9AF8DBBB6DCBCB90C4594] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 285.62.) -- C:\Windows\system32\nvcompiler.dll [24796992] O44 - LFC:[MD5.D9FCBDD7244A238EEA1C12770476A096] - 11/29/2011 - 7:48:10 PM ---A- . (.NVIDIA Corporation - NVIDIA WDDM D3D Driver, Version 285.62.) -- C:\Windows\SysNative\nvd3dumx.dll [15693120] O44 - LFC:[MD5.D7645529F49EED4682B06F928CC6C988] - 11/29/2011 - 7:48:10 PM RSHAD . (.NVIDIA Corporation - NVIDIA Compatible OpenGL ICD.) -- C:\Windows\system32\nvoglv64.dll [24742720] O44 - LFC:[MD5.D9FCBDD7244A238EEA1C12770476A096] - 11/29/2011 - 7:48:10 PM RSHAD . (.NVIDIA Corporation - NVIDIA WDDM D3D Driver, Version 285.62.) -- C:\Windows\system32\nvd3dumx.dll [15693120] O44 - LFC:[MD5.B15258B1F45F9571758AC6BB2F043B01] - 11/29/2011 - 7:48:10 PM RSHAD . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\system32\drivers\nvlddmkm.sys [12971840] O44 - LFC:[MD5.1121A83EF22453AF9E21456B11091772] - 11/29/2011 - 7:48:13 PM ---A- . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\SysNative\nvhdap64.dll [29288] O44 - LFC:[MD5.10204955027011E08A9DC27737A48A54] - 11/29/2011 - 7:48:13 PM RSHAD . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\system32\drivers\nvhda64v.sys [174184] O44 - LFC:[MD5.1121A83EF22453AF9E21456B11091772] - 11/29/2011 - 7:48:13 PM RSHAD . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\system32\nvhdap64.dll [29288] O44 - LFC:[MD5.14E4EF112966B2E28772EE6AF7E5B1B0] - 11/3/2011 - 4:51:40 PM ---A- . (...) -- C:\Windows\MEMORY.DMP [550046778] O44 - LFC:[MD5.BA189B18872EEFAA5237A51EDF322531] - 11/3/2011 - 9:33:22 PM ---A- . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\Windows\SysNative\nvhdagenco6420102.dll [1452648] O44 - LFC:[MD5.BA189B18872EEFAA5237A51EDF322531] - 11/3/2011 - 9:33:22 PM RSHAD . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\Windows\system32\nvhdagenco6420102.dll [1452648] O44 - LFC:[MD5.1E957E5F20A8295D7670A78987ADE038] - 11/30/2011 - 1:03:44 PM -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.021C9B7D646612B4CF85239D2B0AA36C] - 11/30/2011 - 1:03:55 PM ---A- . (...) -- C:\Windows\setupact.log [10590] O44 - LFC:[MD5.2E0EBA43F340D6C11D1521F28C50A0E6] - 11/30/2011 - 1:09:32 PM ---A- . (...) -- C:\Windows\WindowsUpdate.log [1860459] O44 - LFC:[MD5.C59EEF9FB8BB301F402C431077835689] - 11/30/2011 - 12:04:29 AM ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1678686] O44 - LFC:[MD5.85251C2724171AED768A2817E07FBD2B] - 11/30/2011 - 12:04:29 AM ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [123174] O44 - LFC:[MD5.13B931713F93EF41107B0D8583E87D11] - 11/30/2011 - 12:04:29 AM ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [150912] O44 - LFC:[MD5.10FB60B0D803184DDFE7072D7A347694] - 11/30/2011 - 12:04:29 AM ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [657776] O44 - LFC:[MD5.4C0CE53465F9340A4C3F40AFA5E940F4] - 11/30/2011 - 12:04:29 AM ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [750746] O44 - LFC:[MD5.C59EEF9FB8BB301F402C431077835689] - 11/30/2011 - 12:04:29 AM ---A- . (...) -- C:\Windows\system32\PerfStringBackup.INI [1678686] O44 - LFC:[MD5.85251C2724171AED768A2817E07FBD2B] - 11/30/2011 - 12:04:29 AM RSHAD . (...) -- C:\Windows\system32\perfc009.dat [123174] O44 - LFC:[MD5.13B931713F93EF41107B0D8583E87D11] - 11/30/2011 - 12:04:29 AM RSHAD . (...) -- C:\Windows\system32\perfc00C.dat [150912] O44 - LFC:[MD5.10FB60B0D803184DDFE7072D7A347694] - 11/30/2011 - 12:04:29 AM RSHAD . (...) -- C:\Windows\system32\perfh009.dat [657776] O44 - LFC:[MD5.4C0CE53465F9340A4C3F40AFA5E940F4] - 11/30/2011 - 12:04:29 AM RSHAD . (...) -- C:\Windows\system32\perfh00C.dat [750746] O44 - LFC:[MD5.5937CA038423B5CD3E4DACAF89F06924] - 11/19/2011 - 11:49:17 PM ---A- . (...) -- C:\Windows\DirectX.log [17627] ~ Scan Files in 07mn AMs

---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\system32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\system32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\system32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\system32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\system32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\system32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\system32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\system32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - LiveSSP.) -- C:\Windows\system32\livessp.dll ~ Scan Keys in 00mn AMs

---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\system32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\system32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\system32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\system32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\system32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\system32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\system32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\system32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\system32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\system32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\system32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\system32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\system32\Drivers\volmgrx.sys ~ Scan CSB in 00mn AMs

---\\ MountPoints2 Shell Key (O51) O51 - MPSK:{20476f48-c8f4-11df-8a81-90fba62e6b15}\AutoRun\command. (...) -- F:\autorun.exe (.not file.) O51 - MPSK:{ad736f35-635b-11e0-9d4c-90fba62e6b15}\AutoRun\command. (...) -- F:\INSTALL.exe (.not file.) ~ Scan Keys in 00mn AMs

---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \Drivers32\"VIDC.FPS1"="frapsv64.dll" . (.Beepa P/L - Fraps.) -- C:\Windows\system32\frapsv64.dll O52 - TDSD: \Drivers32\"VIDC.XFR1"="xfcodec64.dll" . (.Pas de propriétaire - Xfire Video Codec.) -- C:\Windows\system32\xfcodec64.dll O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"frapsv64.dll"="Fraps Video Decompressor" . (.Beepa P/L - Fraps.) -- C:\Windows\system32\frapsv64.dll O52 - TDSD: \drivers.desc\"xfcodec64.dll"="Xfire video codec [XFR1]" . (.Pas de propriétaire - Xfire Video Codec.) -- C:\Windows\system32\xfcodec64.dll ~ Scan Keys in 00mn AMs

---\\ ShareTools MSconfig StartupReg (O53) O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe O53 - SMSR:HKLM\...\startupreg\ArcadeDeluxeAgent [Key] . (...) -- C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\avgnt [Key] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe O53 - SMSR:HKLM\...\startupreg\BackupManagerTray [Key] . (.NewTech Infosystems, Inc. - Acer Backup Manager.) -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe O53 - SMSR:HKLM\...\startupreg\BrMfcWnd [Key] . (.Brother Industries, Ltd. - Brother Status Monitor Application.) -- C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe O53 - SMSR:HKLM\...\startupreg\CachemanTray [Key] . (.Outertech - Cacheman Tray Icons.) -- C:\Program Files (x86)\Cacheman\CachemanTray.exe O53 - SMSR:HKLM\...\startupreg\ControlCenter3 [Key] . (.Brother Industries, Ltd. - ControlCenter Program.) -- C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe O53 - SMSR:HKLM\...\startupreg\D-Link D-Link DWA-125 [Key] . (.D-Link Corp. - D-Link WLAN Application.) -- C:\Program Files (x86)\D-Link\DWA-125 revA\AirGCFG.exe O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O53 - SMSR:HKLM\...\startupreg\DivX Download Manager [Key] . (.DivX, LLC - DivX Download Manager Service.) -- C:\Program Files (x86)\DivX\DivX Plus Web Player\DDmService.exe O53 - SMSR:HKLM\...\startupreg\DivXUpdate [Key] . (.Pas de propriétaire - DivX Update.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe O53 - SMSR:HKLM\...\startupreg\EgisTecLiveUpdate [Key] . (.Egis Technology Inc. - EgisUpdate Release Application.) -- C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe O53 - SMSR:HKLM\...\startupreg\Global Registration [Key] . (.Acer Incorporated - Global Registration.) -- C:\Program Files (x86)\Acer\Registration\GREG.exe O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Update\GoogleUpdate.exe O53 - SMSR:HKLM\...\startupreg\googletalk [Key] . (.Google - Google Talk.) -- C:\Program Files (x86)\Google\Google Talk\googletalk.exe O53 - SMSR:HKLM\...\startupreg\Hotkey Utility [Key] . (.Pas de propriétaire - Hotkey Utility.) -- C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe O53 - SMSR:HKLM\...\startupreg\IAAnotif [Key] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe O53 - SMSR:HKLM\...\startupreg\Invisible Secrets 4 [Key] . (...) -- C:\Program Files (x86)\Invisible Secrets 4\invtray.exe O53 - SMSR:HKLM\...\startupreg\JMB36X IDE Setup [Key] . (...) -- C:\Windows\RaidTool\xInsIDE.exe O53 - SMSR:HKLM\...\startupreg\Malwarebytes' Anti-Malware [Key] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti- Malware\mbamgui.exe O53 - SMSR:HKLM\...\startupreg\Messenger (Yahoo!) [Key] . (...) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O53 - SMSR:HKLM\...\startupreg\mwlDaemon [Key] . (.Egis Technology Inc. - MyWinLocker.) - - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe O53 - SMSR:HKLM\...\startupreg\NortonOnlineBackupReminder [Key] . (...) -- C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\PlayMovie [Key] . (...) -- C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\PLD_FrameworkRun [Key] . (...) -- c:\windows\system32\oem\setEvent.exe O53 - SMSR:HKLM\...\startupreg\PlusService [Key] . (.Yuna Software - Messenger Plus! 5.) -- C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O53 - SMSR:HKLM\...\startupreg\Skytel [Key] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Program Files\Realtek\Audio\HDA\SkyTel.exe O53 - SMSR:HKLM\...\startupreg\StartCCC [Key] . (...) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam.) -- c:\program files (x86)\steam\steam.exe O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O53 - SMSR:HKLM\...\startupreg\VoipCheapCom [Key] . (...) -- C:\Program Files (x86)\\VoipCheapCom\VoipCheapCom.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\WZCSLDR2 [Key] . (.Wireless Service - ANIWZCS2 launcher for Windows..) -- C:\Program Files (x86)\D-Link\DWA-125 revA\WZCSLDR2.exe ~ Scan SMSR Keys in 00mn AMs

---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll ~ Scan Keys in 00mn AMs

---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ Scan Keys in 00mn AMs

---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=255 O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutorun"=0 O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDesktopCleanupWizard"=1 O56 - MWPE:[HKCU\...\policies\Explorer] - "NoThumbnailCache"=1 O56 - MWPE:[HKCU\...\policies\Explorer] - "DisableThumbnailsOnNetworkFolders"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=255 O56 - MWPE:[HKLM\...\policies\Explorer] - "LinkResolveIgnoreLinkInfo"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoResolveSearch"=1 ~ Scan Keys in 00mn AMs

---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 6/10/2009 - 2:52:21 AM ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088] O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 7/13/2009 - 2:52:21 AM RSHAD . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536] O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 7/13/2009 - 2:52:21 AM RSHAD . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864] O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 7/14/2009 - 2:52:21 AM RSHAD . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440] O58 - SDL:[MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - 4/27/2011 - 7:41:12 AM RSHAD . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904] O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 6/10/2009 - 2:52:20 AM RSHAD . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128] O58 - SDL:[MD5.540DAF1CEA6094886D72126FD7C33048] - 4/27/2011 - 7:41:12 AM RSHAD . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008] O58 - SDL:[MD5.4CCF421E6C4B2A4CBCE000715911F7CC] - 11/5/2010 - 6:10:10 PM RSHAD . (.Pas de propriétaire - NDIS 6.0 Filter Driver.) -- C:\Windows\system32\drivers\anodlwfx.sys [15872] O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 7/13/2009 - 2:52:21 AM RSHAD . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632] O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 7/13/2009 - 2:52:21 AM RSHAD . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856] O58 - SDL:[MD5.FB7602C5C508BE281368AAE0B61B51C6] - 12/7/2009 - 2:34:30 AM RSHAD . (.ATI Technologies, Inc. - ATI High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\AtiHdmi.sys [121872] O58 - SDL:[MD5.B5FB227A09A9EC28163FA4B45487C3C7] - 12/7/2009 - 7:21:18 AM RSHAD . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [6171136] O58 - SDL:[MD5.C30B5FC0ADCDFBA7668E99BAF0CBF58E] - 6/17/2010 - 2:03:07 PM RSHAD . (.Avira GmbH - Avira Minifilter Driver.) -- C:\Windows\system32\drivers\avgntflt.sys [74880] O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 6/10/2009 - 9:34:23 PM RSHAD . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848] O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 7/14/2009 - 9:41:06 PM RSHAD . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432] O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 7/14/2009 - 9:41:06 PM RSHAD . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704] O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 7/14/2009 - 2:19:07 AM RSHAD . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720] O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 7/14/2009 - 9:41:10 PM RSHAD . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104] O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 7/14/2009 - 9:41:10 PM RSHAD . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976] O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 7/14/2009 - 9:41:10 PM RSHAD . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720] O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 6/10/2009 - 9:34:28 PM RSHAD . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480] O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 7/14/2009 - 2:52:31 AM RSHAD . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488] O58 - SDL:[MD5.EED1FBDE98CF5F6D5C0C5B27AB1F68EC] - 11/5/2010 - 12:36:48 PM RSHAD . (.Ralink Technology Corp. - Ralink 802.11n Wireless Adapter Driver.) -- C:\Windows\system32\drivers\Dnetr28ux.sys [1061888] O58 - SDL:[MD5.FB9BEF3401EE5ECC2603311B9C64F44A] - 4/10/2011 - 11:19:33 AM RSHAD . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\system32\drivers\dtsoftbus01.sys [254528] O58 - SDL:[MD5.60C5B36E07BE8B3AF3911C3D10303CFE] - 7/28/2010 - 11:37:42 PM RSHAD . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\system32\drivers\e1k62x64.sys [301232] O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 6/10/2009 - 2:47:48 AM RSHAD . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496] O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 6/10/2009 - 9:34:33 PM RSHAD . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016] O58 - SDL:[MD5.5BF776ABEDEA06B0779C82E9D54B58D7] - 10/23/2011 - 10:11:26 PM RSHAD . (.VMware, Inc. - VMware USB monitor.) -- C:\Windows\system32\drivers\hcmon.sys [39024] O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 7/13/2009 - 9:31:59 PM RSHAD . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232] O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 3/5/2011 - 2:33:35 PM RSHAD . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [78720] O58 - SDL:[MD5.CE8EB53B5111042525620CA91A968447] - 7/28/2010 - 3:49:06 AM RSHAD . (.Intel Corporation - NDIS 6.1 Advanced Networking Services..) -- C:\Windows\system32\drivers\iANSW60e.sys [154088] O58 - SDL:[MD5.1D004CB1DA6323B1F55CAEF7F94B61D9] - 10/12/2009 - 2:54:36 AM RSHAD . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStor.sys [408600] O58 - SDL:[MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - 4/27/2011 - 7:41:26 AM RSHAD . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496] O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 7/13/2009 - 2:48:04 AM RSHAD . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112] O58 - SDL:[MD5.81B0C6C43AB4909395E66E9805ED20F2] - 7/28/2010 - 11:47:26 PM RSHAD . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\Windows\system32\drivers\iqvw64e.sys [34472] O58 - SDL:[MD5.1C368C1A2733DCC5B8E15420AA2B0F6D] - 6/30/2010 - 3:58:38 PM RSHAD . (.JMicron Technology Corp. - JMicron JMB36X RAID Driver.) -- C:\Windows\system32\drivers\jraid.sys [115312] O58 - SDL:[MD5.00BA093A3F316D43A4C3E098A96AE912] - 4/6/2011 - 6:28:58 PM RSHAD . (.Logitech, Inc. - Logitech Equad USB Driver..) -- C:\Windows\system32\drivers\LEqdUsb.sys [74320] O58 - SDL:[MD5.24E09882BA51B9830AE029888A3AAF18] - 4/6/2011 - 6:29:10 PM RSHAD . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\Windows\system32\drivers\LHidFilt.Sys [63568] O58 - SDL:[MD5.2F94325D8C10E2B715F3D753C2422AAC] - 4/6/2011 - 6:29:32 PM RSHAD . (.Logitech, Inc. - Logitech Mouse Filter Driver..) -- C:\Windows\system32\drivers\LMouFilt.Sys [57936] O58 - SDL:[MD5.64AEB5790901EA8854884981F104CAA6] - 4/6/2011 - 2:46:10 PM RSHAD . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) -- C:\Windows\system32\drivers\LNonPnP.sys [18960] O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 7/13/2009 - 2:48:04 AM RSHAD . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752] O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 7/13/2009 - 2:48:04 AM RSHAD . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560] O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 7/13/2009 - 2:48:04 AM RSHAD . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600] O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 7/13/2009 - 2:48:04 AM RSHAD . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776] O58 - SDL:[MD5.23A854450DAB5C9B7A42AB9BE6F2E4BD] - 7/12/2010 - 4:00:50 PM RSHAD . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [25416] O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 6/10/2009 - 2:48:04 AM RSHAD . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392] O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 7/13/2009 - 2:48:04 AM RSHAD . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736] O58 - SDL:[MD5.6FFECC25B39DC7652A0CEC0ADA9DB589] - 10/12/2009 - 12:15:30 PM RSHAD . (.Egis Technology Inc. - PSD Filter Driver.) -- C:\Windows\system32\drivers\mwlPSDFilter.sys [22576] O58 - SDL:[MD5.0BEFE32CA56D6EE89D58175725596A85] - 10/12/2009 - 12:15:30 PM RSHAD . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) -- C:\Windows\system32\drivers\mwlPSDNserv.sys [20016] O58 - SDL:[MD5.D43BC633B8660463E446E28E14A51262] - 10/12/2009 - 12:15:30 PM RSHAD . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) -- C:\Windows\system32\drivers\mwlPSDVDisk.sys [60464] O58 - SDL:[MD5.D66596DB0A0739A89C25B590CE36D628] - 10/13/2009 - 11:56:08 PM RSHAD . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\system32\drivers\netr28x.sys [712704] O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 7/13/2009 - 2:48:26 AM RSHAD . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264] O58 - SDL:[MD5.351533ACC2A069B94E80BBFC177E8FDF] - 2/1/2011 - 6:07:26 PM RSHAD . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\system32\drivers\npf.sys [35344] O58 - SDL:[MD5.64DDD0DEE976302F4BD93E5EFCC2F013] - 10/12/2009 - 12:46:08 AM RSHAD . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\system32\drivers\NTIDrvr.sys [18432] O58 - SDL:[MD5.10204955027011E08A9DC27737A48A54] - 11/29/2011 - 12:21:28 AM RSHAD . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\system32\drivers\nvhda64v.sys [174184] O58 - SDL:[MD5.B15258B1F45F9571758AC6BB2F043B01] - 11/29/2011 - 9:53:00 AM RSHAD . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 285.62.) -- C:\Windows\system32\drivers\nvlddmkm.sys [12971840] O58 - SDL:[MD5.8C1D181480796D7D3366A9381FD7782D] - 3/20/2011 - 2:59:30 PM RSHAD . (.NVIDIA Corp. - NVIDIA System Utility Driver.) -- C:\Windows\system32\drivers\nvoclk64.sys [42088] O58 - SDL:[MD5.0A92CB65770442ED0DC44834632F66AD] - 4/27/2011 - 7:41:34 AM RSHAD . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352] O58 - SDL:[MD5.DAB0E87525C10052BF65F06152F37E4A] - 4/27/2011 - 7:41:34 AM RSHAD . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272] O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 6/10/2009 - 2:45:46 AM RSHAD . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816] O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 7/13/2009 - 2:45:45 AM RSHAD . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592] O58 - SDL:[MD5.718A4008EE5DA174400396B27509EF82] - 11/10/2011 - 7:38:12 PM RSHAD . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHD64.sys [2899176] O58 - SDL:[MD5.BE29B0A3AC1E8BD02FFAB8CEE86BADFA] - 6/2/2011 - 3:11:42 PM RSHAD . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\system32\drivers\RtsUStor.sys [250984] O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 7/14/2009 - 9:37:19 PM RSHAD . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040] O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 6/10/2009 - 2:45:45 AM RSHAD . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584] O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 7/13/2009 - 2:45:46 AM RSHAD . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464] O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 9/25/2010 - 12:00:00 AM RSHAD . (...) -- C:\Windows\system32\drivers\sptd.sys [834544] O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 7/13/2009 - 2:45:55 AM RSHAD . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656] O58 - SDL:[MD5.F0B9D3ED88E56D3CD713DFF21E42AAF0] - 9/9/2011 - 10:21:06 AM RSHAD . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\Windows\system32\drivers\tap0901.sys [31232] O58 - SDL:[MD5.8DE922CD4FEA6F83B10805DF965B9A08] - 10/22/2010 - 1:05:28 PM RSHAD . (.TrueCrypt Foundation - TrueCrypt Driver.) -- C:\Windows\system32\drivers\truecrypt.sys [230864] O58 - SDL:[MD5.2E22C1FD397A5A9FFEF55E9D1FC96C00] - 10/12/2009 - 12:46:08 AM RSHAD . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\system32\drivers\UBHelper.sys [16896] O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 7/14/2009 - 2:45:55 AM RSHAD . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488] O58 - SDL:[MD5.87FC1DD880E8CAC4FAEBB84AF61A87C4] - 10/23/2011 - 1:59:12 PM RSHAD . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\Windows\system32\drivers\vmci.sys [116336] O58 - SDL:[MD5.D019A286ECE0B4A547484B2C654CB74B] - 10/23/2011 - 2:12:26 PM RSHAD . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\Windows\system32\drivers\vmnet.sys [24176] O58 - SDL:[MD5.B259C31378BC855AFD1B53F59311C251] - 10/23/2011 - 2:12:26 PM RSHAD . (.VMware, Inc. - VMware virtual network adapter driver (64-bit).) -- C:\Windows\system32\drivers\vmnetadapter.sys [20080] O58 - SDL:[MD5.DEC4CE720FFEDA939CF1BA315CFBD993] - 10/23/2011 - 2:12:26 PM RSHAD . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\Windows\system32\drivers\vmnetbridge.sys [45680] O58 - SDL:[MD5.227982E986C02B710630D7FC570CAA77] - 10/23/2011 - 4:06:14 PM RSHAD . (.VMware, Inc. - VMware network application interface driver (64-bit).) -- C:\Windows\system32\drivers\vmnetuserif.sys [30320] O58 - SDL:[MD5.86AA5EAE57E2EAEF3B6F5C16B27E0EC4] - 10/23/2011 - 4:07:58 PM RSHAD . (.VMware, Inc. - VMware kernel driver.) -- C:\Windows\system32\drivers\vmx86.sys [62064] O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 6/10/2009 - 2:45:55 AM RSHAD . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872] O58 - SDL:[MD5.5B01AF89D16D562825C4DB4530F20CBB] - 9/5/2010 - 7:53:02 AM ---A- . (.Adaptec - ASPI for WIN32 Kernel Driver.) -- C:\Windows\SysWOW64\drivers\ASPI32.SYS [16877] O58 - SDL:[MD5.20ED5DBEE3FB56FA7A272BE2A0970E58] - 6/17/2010 - 11:49:30 AM ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\Windows\SysWOW64\drivers\ssmdrv.sys [28376] O58 - SDL:[MD5.6107E33A30C0B923F31C872E1980D2D1] - 10/23/2011 - 2:32:58 PM ---A- . (.VMware, Inc. - VMware Virtual Storage Volume Driver.) -- C:\Windows\SysWOW64\drivers\vstor2-mntapi10-shared.sys [33392] O58 - SDL:[MD5.12583AF6CBE0050651EAF2723B3AD7B3] - 6/4/2011 - 5:08:56 PM ---A- . (.Almico Software - SpeedFan x64 Driver.) -- C:\Windows\SysWOW64\speedfan.sys [29592] ~ Scan Drivers in 01mn AMs

---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ Scan ADS in 00mn AMs

---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 3/6/2009 - C:\Windows\system32\DRIVERS\anodlwfx.sys (anodlwf) . (.Pas de propriétaire - NDIS 6.0 Filter Driver.) - LEGACY_ANODLWF O64 - Services: CurCS - 1/8/2009 - C:\Windows\system32\DRIVERS\avgntflt.sys (avgntflt) . (.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT O64 - Services: CurCS - 12/18/2009 - C:\Program Files (x86)\systemRequirementsLab\cpudrv64.sys - cpudrv64 (cpudrv64) .(...) - LEGACY_CPUDRV64 O64 - Services: CurCS - 7/14/2009 - C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE O64 - Services: CurCS - 8/21/2011 - C:\Windows\system32\drivers\hcmon.sys (hcmon) . (.VMware, Inc. - VMware USB monitor.) - LEGACY_HCMON O64 - Services: CurCS - 8/31/2011 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) - LEGACY_MBAMPROTECTOR O64 - Services: CurCS - 6/2/2009 - C:\Windows\system32\DRIVERS\mwlPSDFilter.sys (mwlPSDFilter) .(.Egis Technology Inc. - PSD Filter Driver.) - LEGACY_MWLPSDFILTER O64 - Services: CurCS - 6/2/2009 - C:\Windows\system32\DRIVERS\mwlPSDNServ.sys (mwlPSDNServ) .(.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) - LEGACY_MWLPSDNSERV O64 - Services: CurCS - 6/2/2009 - C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys (mwlPSDVDisk) .(.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) - LEGACY_MWLPSDVDISK O64 - Services: CurCS - 6/25/2010 - C:\Windows\system32\drivers\npf.sys (NPF) .(.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) - LEGACY_NPF O64 - Services: CurCS - 12/30/1899 - C:\Windows\system32\Drivers\secdrv.sys (secdrv) . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 3/18/2011 - C:\Windows\Syswow64\speedfan.sys (speedfan) . (.Almico Software - SpeedFan x64 Driver.) - LEGACY_SPEEDFAN O64 - Services: CurCS - 12/30/1899 - C:\Windows\system32\Drivers\sptd.sys - sptd (sptd) . (...) - LEGACY_SPTD O64 - Services: CurCS - 10/27/2011 - C:\Windows\system32\drivers\truecrypt.sys (truecrypt) . (.TrueCrypt Foundation - TrueCrypt Driver.) - LEGACY_TRUECRYPT O64 - Services: CurCS - 8/22/2011 - C:\Windows\system32\DRIVERS\vmnetbridge.sys (VMnetBridge) .(.VMware, Inc. - VMware bridge driver (64-bit).) - LEGACY_VMNETBRIDGE O64 - Services: CurCS - 8/22/2011 - C:\Windows\system32\drivers\vmnetuserif.sys (VMnetuserif) .(.VMware, Inc. - VMware network application interface driver.) - LEGACY_VMNETUSERIF O64 - Services: CurCS - 8/22/2011 - C:\Windows\system32\drivers\vmx86.sys (vmx86) . (.VMware, Inc. - VMware kernel driver.) - LEGACY_VMX86 O64 - Services: CurCS - 7/8/2011 - C:\Windows\Syswow64\drivers\vstor2-mntapi10- shared.sys (vstor2-mntapi10-shared) .(.VMware, Inc. - VMware Virtual Storage Volume Driver.) - LEGACY_VSTOR2-MNTAPI10-SHARED ~ Scan Services in 00mn AMs

---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (. - .) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ Scan Keys in 00mn AMs

---\\ Start Menu Internet (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe ~ Scan Keys in 00mn AMs

---\\ Search Browser Infection (O69) O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Bing) - O69 - SBI: SearchScopes [HKCU] {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} - (DAEMON Search) - ~ Scan Keys in 00mn AMs

---\\ Recherche des services démarrés par Svchost (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\system32\wuaueng.dll [2420736] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\system32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\system32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Scan Services in 00mn AMs

---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.780D14604D49E3C634200C523DEF8351] [SPRF][11/23/2011] (...) -- C:\Users\ANONYMOUS\AppData\Local\Temp\bassmod.dll [9728] [MD5.CC6BDB711966406E5F5CAA07E9C2491E] [SPRF][8/3/2011] (.NVIDIA Corporation - NVIDIA 3D Vision Control Panel 64bit API.) -- C:\Users\ANONYMOUS\AppData\Local\Temp\nvSCPAPI64.dll [634472] [MD5.C38DD05C6E07D01C0B7FAA2A59FC896A] [SPRF][8/3/2011] (.NVIDIA Corporation - NVIDIA API 64bit 3D Vision extention.) -- C:\Users\ANONYMOUS\AppData\Local\Temp\nvStereoApiI64.dll [184936] [MD5.336E975496584DF54FEA16D94AC5EF86] [SPRF][10/15/2011] (.NVIDIA Corporation - Stereoscpic 3D driver Installer API.) -- C:\Users\ANONYMOUS\AppData\Local\Temp\nvStInst.exe [497472] [MD5.A4A8CE1C7696B143356208609BA1A4C9] [SPRF][12/18/2010] (...) -- C:\Users\ANONYMOUS\AppData\Local\Temp\sfextra.dll [55296] [MD5.574C3FD9573B4DA360161EBD36BA72BC] [SPRF][5/22/2009] (.Jeffrey Harris - SharePod.) -- C:\Users\ANONYMOUS\AppData\Local\Temp\sharepod-eject.exe [3024384] [MD5.E1E3136ECAA281D74787C744E258074E] [SPRF][11/18/2011] (...) -- C:\Users\ANONYMOUS\AppData\Local\Temp\SkypeSetup.exe [11646976] [MD5.A4CBBC64B5B807DF61C1EA8EA0B2AF79] [SPRF][11/15/2011] (...) -- C:\Users\ANONYMOUS\AppData\Local\Temp\temp642.bat [194] [MD5.887173F53072CD2D238014F4199B35CF] [SPRF][7/10/2011] (...) -- C:\Users\ANONYMOUS\AppData\Local\Temp\xmlUpdater.exe [118784] [MD5.8AADD8248E0E69910840F1F66D447B46] [SPRF][12/17/2010] (...) -- C:\Users\ANONYMOUS\AppData\Roaming\wklnhst.dat [342] [MD5.8945CCA5FC4F25168E8B6F401EFAF51F] [SPRF][2/22/2007] (.Microsoft Corporation - Stats Client for MSN Messenger.) -- C:\Windows\Downloaded Program Files\MessengerStatsPAClient.dll [304544] [MD5.1E5CFDF9AEBDD84305A4C8154277A269] [SPRF][2/28/2007] (.Microsoft Corporation - Checkers for MSN Messenger.) -- C:\Windows\Downloaded Program Files\msgrchkr.dll [131472] ~ Scan Files in 01mn AMs

---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "{46084C5B-CD98-4D84-8B9F-9F4A7FA405F8}" | In - Private - P6 - TRUE | . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe O87 - FAEL: "{D9A26E9C-4A09-44F3-BD62-0D2E18514A36}" | In - Private - P17 - TRUE | . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe O87 - FAEL: "TCP Query User{26AA9DF5-3E7D-4920-AE53-CDE28617006E}C:\program files (x86)\yahoo!\messenger\yahoomessenger.exe" | In - Public - P6 - TRUE | .(.Yahoo! Inc..) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe O87 - FAEL: "UDP Query User{9D6E00AB-BBDE-4CE1-AE3A-EFD9F8548688}C:\program files (x86)\yahoo!\messenger\yahoomessenger.exe" | In - Public - P17 - TRUE | .(.Yahoo! Inc..) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe O87 - FAEL: "{12E8BCFF-3198-4F64-82B0-ECA04FD09BCA}" | In - Private - P6 - TRUE | . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe O87 - FAEL: "{1A4DF61B-415C-43D7-BD04-FB13B56B0F71}" | In - Private - P17 - TRUE | . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe O87 - FAEL: "{97ECCE57-1582-4B8E-B66D-C34836355168}" | In - Private - P6 - TRUE | . (.Pinnacle Systems - Render Manager.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe O87 - FAEL: "{4D6D1882-CEE0-4994-B9E4-B1FC4FF89CC0}" | In - Private - P17 - TRUE | . (.Pinnacle Systems - Render Manager.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe O87 - FAEL: "{FA9A9727-7D55-4539-BFE7-0D025D8A6C1B}" | In - Private - P6 - TRUE | . (.Pinnacle Systems - umi.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe O87 - FAEL: "{5960A6C8-C6C4-4DB0-A766-D330421F58EC}" | In - Private - P17 - TRUE | . (.Pinnacle Systems - umi.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe O87 - FAEL: "{F5110744-4D66-4D82-A177-1595FB6C3C6D}" | In - Private - P6 - TRUE | . (.Pinnacle Systems - Pinnacle VideoSpin program file.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe O87 - FAEL: "{EB737F10-E30D-4094-AA48-FF3AD163000D}" | In - Private - P17 - TRUE | . (.Pinnacle Systems - Pinnacle VideoSpin program file.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe O87 - FAEL: "TCP Query User{D6EA07CA-002B-4D32-AAC5-D062BF762E55}C:\program files (x86)\your freedom\freedom.exe" | In - Private - P6 - TRUE | .(.resolution Reichert Network Solutions GmbH.) -- C:\Program Files (x86)\Your Freedom\freedom.exe O87 - FAEL: "UDP Query User{E4F09C91-5277-48FC-8057-28A019A95206}C:\program files (x86)\your freedom\freedom.exe" | In - Private - P17 - TRUE | .(.resolution Reichert Network Solutions GmbH.) -- C:\Program Files (x86)\Your Freedom\freedom.exe O87 - FAEL: "{5381954D-E118-4569-AFA8-BC1187C93926}" | In - Domain - P6 - TRUE | . (.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{60CA3ACB-374F-40FF-9D85-9C98CBB64F29}" | In - Domain - P17 - TRUE | . (.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{CC000F9B-4241-4229-9C2C-6554C98E40AA}" | In - Private - P6 - TRUE | . (.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{C7670BCA-1F6E-4F96-A960-970E5663FEB8}" | In - Private - P17 - TRUE | . (.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{038A226E-70EC-421D-BF6C-2CB27B90280B}" | In - None - P17 - TRUE | . (.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{61765015-923E-4999-9281-BEABD680CA02}" | In - Private - P6 - TRUE | . (.Ubisoft Entertainment - James Cameron's Avatar: The Game.) -- C:\Program Files (x86)\Ubisoft\James Cameron's AVATAR - THE GAME\bin\Avatar.exe O87 - FAEL: "{085E54DC-E684-4F63-8A11-44EC236F4D8D}" | In - Private - P17 - TRUE | . (.Ubisoft Entertainment - James Cameron's Avatar: The Game.) -- C:\Program Files (x86)\Ubisoft\James Cameron's AVATAR - THE GAME\bin\Avatar.exe O87 - FAEL: "{F8499D17-2D64-417B-A549-EC7A886A2B81}" | In - Private - P6 - TRUE | . (.Ubisoft - Autopatch system.) -- C:\Program Files (x86)\Ubisoft\James Cameron's AVATAR - THE GAME\bin\AvatarLauncher.exe O87 - FAEL: "{EF765F92-E644-40FE-8173-6DAC09BD0A5D}" | In - Private - P17 - TRUE | . (.Ubisoft - Autopatch system.) -- C:\Program Files (x86)\Ubisoft\James Cameron's AVATAR - THE GAME\bin\AvatarLauncher.exe O87 - FAEL: "TCP Query User{2B6A3413-8120-4B95-909B-19EE572081DC}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe O87 - FAEL: "UDP Query User{850DBFC2-B949-4A30-97F6-3D7B3979F964}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe O87 - FAEL: "{84F6E6B1-A536-409B-9972-8ACCF1BBDE6F}" | In - Public - P6 - TRUE | . (.Lime Wire, LLC - LimeWire.) -- C:\Program Files (x86)\LimeWire\LimeWire.exe O87 - FAEL: "{B9426EC9-5EDF-435E-99DC-0A74B042CD98}" | In - Public - P17 - TRUE | . (.Lime Wire, LLC - LimeWire.) -- C:\Program Files (x86)\LimeWire\LimeWire.exe O87 - FAEL: "TCP Query User{17BA47F3-C16E-4776-963D-EA382B96597C}C:\program files (x86)\limewire\limewire.exe" | In - Private - P6 - TRUE | .(.Lime Wire, LLC - LimeWire.) -- C:\Program Files (x86)\LimeWire\LimeWire.exe O87 - FAEL: "UDP Query User{F4867381-DCB7-4234-A1C7-A61F5E952C57}C:\program files (x86)\limewire\limewire.exe" | In - Private - P17 - TRUE | .(.Lime Wire, LLC - LimeWire.) -- C:\Program Files (x86)\LimeWire\LimeWire.exe O87 - FAEL: "{6F1D3A52-548F-4CEA-9E07-DECA347683EA}" | In - Private - P6 - TRUE | . (.Adobe Systems Inc. - Adobe AIR Debug Launcher.) -- C:\Games\League of Legends\air\LolClient.exe O87 - FAEL: "{636F65FB-529E-4B2A-A578-1DBEB6956770}" | In - Private - P17 - TRUE | . (.Adobe Systems Inc. - Adobe AIR Debug Launcher.) -- C:\Games\League of Legends\air\LolClient.exe O87 - FAEL: "{2BF0C792-A702-46AA-ACE0-04D803F23866}" | In - Private - P6 - TRUE | . (.Pas de propriétaire - League of Legends (TM) Client.) -- C:\Games\League of Legends\game\League of Legends.exe O87 - FAEL: "{680116C4-317A-44BB-AE9C-D670E4A08E0E}" | In - Private - P17 - TRUE | . (.Pas de propriétaire - League of Legends (TM) Client.) -- C:\Games\League of Legends\game\League of Legends.exe O87 - FAEL: "{70D74299-3F43-4CE5-B8C8-20B8FEFEA848}" | In - Private - P6 - TRUE | . (.Google - Google Talk.) -- C:\Program Files (x86)\Google\Google Talk\googletalk.exe O87 - FAEL: "{6B73D128-3145-48AA-95F8-E2720BBB41C0}" | In - Private - P17 - TRUE | . (.Google - Google Talk.) -- C:\Program Files (x86)\Google\Google Talk\googletalk.exe O87 - FAEL: "TCP Query User{5CB70304-B079-4566-84A8-AE7592866D6F}C:\program files (x86)\java\jre6\bin\java.exe" | In - Private - P6 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\java.exe O87 - FAEL: "UDP Query User{E9180C3E-00F4-4038-8848-72BD229373BD}C:\program files (x86)\java\jre6\bin\java.exe" | In - Private - P17 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\java.exe O87 - FAEL: "TCP Query User{327C2775-3E98-4325-B013-E90A402D3483}C:\program files (x86)\java\jre6\bin\javaw.exe" | In - Private - P6 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\javaw.exe O87 - FAEL: "UDP Query User{BD44EDE8-DB70-4851-B36D-FC7D58737CFE}C:\program files (x86)\java\jre6\bin\javaw.exe" | In - Private - P17 - TRUE | .(.Sun Microsystems, Inc..) -- C:\Program Files (x86)\Java\jre6\bin\javaw.exe O87 - FAEL: "TCP Query User{8202C1E4-83B9-451F-B990- 41F05613C287}C:\users\anonymous\appdata\local\google\chrome\application\chrome.exe" | In - Private - P6 - TRUE | .(.Google Inc..) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O87 - FAEL: "UDP Query User{56A3AE6C-47CD-4892-BD46- 84AA458D298E}C:\users\anonymous\appdata\local\google\chrome\application\chrome.exe" | In - Private - P17 - TRUE | .(.Google Inc..) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.ex O87 - FAEL: "{8BF34398-3B5F-43C2-8E14-5C0DF0507087}" | In - Private - P6 - TRUE | . (.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer.exe O87 - FAEL: "{3A3B9158-90B8-443E-94CA-AC5492FA9C3E}" | In - Private - P17 - TRUE | . (.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer.exe O87 - FAEL: "{31369C6F-FE9F-4E5C-9AF6-A0D93EA4694F}" | In - Private - P6 - TRUE | . (.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe O87 - FAEL: "{EDC209CD-4CB5-4650-B480-4D76556A1685}" | In - Private - P17 - TRUE | . (.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe O87 - FAEL: "{4011DD8C-40CB-4A3E-8AD0-638A07AE3263}" | In - Private - P6 - TRUE | . (.Blizzard Entertainment - Blizzard Launcher.) -- C:\Program Files\World of Warcraft_OFFICIAL\Launcher.exe O87 - FAEL: "{88198928-57C1-430E-B1E5-906C4669630E}" | In - Private - P17 - TRUE | . (.Blizzard Entertainment - Blizzard Launcher.) -- C:\Program Files\World of Warcraft_OFFICIAL\Launcher.exe O87 - FAEL: "{8F2E4F88-5B29-4975-9161-62042CA7DA41}" | In - Private - P6 - TRUE | . (.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Client.) -- C:\Program Files (x86)\BitSpirit\BitSpirit.exe O87 - FAEL: "{CCCAA4F2-79E6-4D15-9050-D4FC64402ED6}" | In - Private - P17 - TRUE | . (.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Client.) -- C:\Program Files (x86)\BitSpirit\BitSpirit.exe O87 - FAEL: "TCP Query User{C5F4B046-C12F-4F35-B69B-316BB88F8A4E}C:\program files (x86)\xfire\xfire.exe" | In - Private - P6 - TRUE | .(.Xfire Inc. - Xfire.) -- C:\Program Files (x86)\Xfire\Xfire.exe O87 - FAEL: "UDP Query User{15737CCB-B6FF-421A-903E-8AB83DF7B2C1}C:\program files (x86)\xfire\xfire.exe" | In - Private - P17 - TRUE | .(.Xfire Inc. - Xfire.) -- C:\Program Files (x86)\Xfire\Xfire.exe O87 - FAEL: "{381165C8-8349-4109-BA3B-DC52B055AB72}" | In - Private - P6 - TRUE | . (.EA Digital Illusions CE AB - Mirror's Edge™.) -- C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Binaries\MirrorsEdge.exe O87 - FAEL: "{BE3B2E5B-B7AB-44DD-9757-FE3EA33AB494}" | In - Private - P17 - TRUE | . (.EA Digital Illusions CE AB - Mirror's Edge™.) -- C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Binaries\MirrorsEdge.exe O87 - FAEL: "{FEEBD638-E954-4C08-B122-D382F6B93C36}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm O87 - FAEL: "{0D8141B7-E357-498A-A3D8-0DA2156C3020}" | In - Private - P17 - TRUE | . (...) -- C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm O87 - FAEL: "{054D9E46-9106-41CD-932A-23D6AC5DAE3E}" | In - Private - P6 - TRUE | . (...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe O87 - FAEL: "{3834B36D-567D-4B9C-91DC-94C03BEA0615}" | In - Private - P17 - TRUE | . (...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe O87 - FAEL: "{FAB0404E-887F-43B0-9B24-FFE103732731}" | In - Private - P6 - TRUE | .(...) - - C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe O87 - FAEL: "{BDD59CCA-00E3-47A0-99EE-C955F0CC13D0}" | In - Private - P17 - TRUE | . (...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe O87 - FAEL: "{B7CE01E8-D2B9-47FD-ADDC-BC9274326310}" | In - Private - P6 - TRUE | . (...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe O87 - FAEL: "{1B29AC5E-6FC9-440D-8E7F-E6F2095AEECE}" | In - Private - P17 - TRUE | . (...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe O87 - FAEL: "{F8408F9E-7E92-40A7-949F-8B617A0238B6}" | In - Private - P6 - TRUE | .(...) - - C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe O87 - FAEL: "{8194D5C0-03B2-40E1-9335-070A380E2214}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe O87 - FAEL: "{15FA6913-5D11-4C2C-8AEB-28676A437237}" | In - Private - P6 - TRUE | . (.Ubisoft Entertainment - UPlayBrowser Application.) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe O87 - FAEL: "{0724E1D1-31A6-431B-B9B4-8B3063EEAE3E}" | In - Private - P17 - TRUE | . (.Ubisoft Entertainment - UPlayBrowser Application.) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe O87 - FAEL: "TCP Query User{2F82D1D4-8C2A-4F2F-BCEA-A44771FEB777}C:\program files (x86)\ubisoft\assassin's creed brotherhood\acbsp.exe" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe O87 - FAEL: "UDP Query User{F311FEB5-3881-4624-97BE-0B65BF797C3C}C:\program files (x86)\ubisoft\assassin's creed brotherhood\acbsp.exe" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe O87 - FAEL: "TCP Query User{E5CF1DD0-002F-41FC-B322-59DD1E86D587}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe O87 - FAEL: "UDP Query User{A3338DCF-8EE1-4058-B4B3-EBAC7D2C5BF9}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe O87 - FAEL: "TCP Query User{8FBA596B-D81D-4B02-A3AF-D9272F3BA9AD}C:\program files (x86)\google\google earth\plugin\geplugin.exe" | In - Public - P6 - TRUE | .(.Google - Google Earth.) -- C:\Program Files (x86)\Google\Google Earth\plugin\geplugin.exe O87 - FAEL: "UDP Query User{E71C8D4C-04A4-4B88-9A97-5B96B1F99589}C:\program files (x86)\google\google earth\plugin\geplugin.exe" | In - Public - P17 - TRUE | .(.Google.) -- C:\Program Files (x86)\Google\Google Earth\plugin\geplugin.exe O87 - FAEL: "{7F12D06C-3F34-4DD1-B106-EAFD86D8D7EA}" | In - Public - P6 - TRUE | . (.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Steam\steamapps\deglingoss57\condition zero\hl.exe O87 - FAEL: "{681D4967-5C72-4AFE-B3CD-68C912558103}" | In - Public - P17 - TRUE | . (.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Steam\steamapps\deglingoss57\condition zero\hl.exe O87 - FAEL: "TCP Query User{CF89D32A-5B86-4B1C-82E9- C78F820801F7}C:\users\anonymous\appdata\local\google\chrome\application\chrome.exe" | In - Public - P6 - TRUE | .(.Google Inc..) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O87 - FAEL: "UDP Query User{E12CDBF9-7514-453C-B7FE- EC19A3F2A7B3}C:\users\anonymous\appdata\local\google\chrome\application\chrome.exe" | In - Public - P17 - TRUE | .(.Google Inc..) -- C:\Users\ANONYMOUS\AppData\Local\Google\Chrome\Application\chrome.exe O87 - FAEL: "TCP Query User{9B34C55C-6785-4270-8374-EAF8FE3EB0BA}C:\program files (x86)\valve\portal 2\portal2.exe" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Valve\Portal 2\portal2.exe O87 - FAEL: "UDP Query User{7BBDAE48-212E-4C39-8BEE-B8A82FBDF9E9}C:\program files (x86)\valve\portal 2\portal2.exe" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Valve\Portal 2\portal2.exe O87 - FAEL: "{67F89404-292C-4EC6-AABD-68D6A1C9D1F8}" | In - Private - P6 - TRUE | . (...) -- C:\Program Files (x86)\League of Legends\lol.launcher.exe O87 - FAEL: "{630B5442-91A4-4747-B578-66742B158472}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\League of Legends\lol.launcher.exe O87 - FAEL: "{4789815A-EF19-469E-A123-EEE8A09F4ED0}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{1F7CABD5-DDCF-4A5F-97F8-F39A2E5B772D}" | In - Private - P17 - TRUE | . (...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{65DC441D-C258-4AA0-AEAA-51B41A758C01}" | In - Private - P6 - TRUE | . (...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{9EADBDD6-2595-4B20-AA3B-CD40B12D03C4}" | In - Private - P17 - TRUE | . (...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{7BC27EF3-172D-4324-85ED-3513AA40EF05}" | In - Private - P6 - TRUE | . (.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Steam\steamapps\deglingoss57\condition zero\hl.exe O87 - FAEL: "{6340F5E8-8647-4C2B-BA58-B3EB85A97FA0}" | In - Private - P17 - TRUE | . (.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Steam\steamapps\deglingoss57\condition zero\hl.exe O87 - FAEL: "{D62C6C05-8711-4C04-A19F-505BEBBFC79D}" | In - Private - P6 - TRUE | . (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-\x64\maconfservice.exe O87 - FAEL: "{5EA5E5B3-3A57-48F4-9F89-058546076EC5}" | In - Private - P17 - TRUE | . (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-\x64\maconfservice.exe O87 - FAEL: "{BE423BA4-ACC4-48F7-8477-B4174526741A}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\thief deadly shadows\System\runme.exe O87 - FAEL: "{F3DE9BB7-2355-4F5A-BD2A-EAC1106C3C8F}" | In - Private - P17 - TRUE | . (...) -- C:\Program Files (x86)\Steam\steamapps\common\thief deadly shadows\System\runme.exe O87 - FAEL: "TCP Query User{0040E398-1CFD-4B78-B73F-93990608BE45}C:\program files (x86)\dsnet corp\atube catcher 2.0\yct.exe" | In - Private - P6 - TRUE | .(.DsNET.) -- C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe O87 - FAEL: "UDP Query User{944C70A8-BF4A-4C54-81E8-F8E767BB03FB}C:\program files (x86)\dsnet corp\atube catcher 2.0\yct.exe" | In - Private - P17 - TRUE | .(.DsNET.) -- C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe O87 - FAEL: "TCP Query User{3F1BB156-A3D6-4FF2-81EE-8313321C2B19}C:\program files\world of warcraft_official\backgrounddownloader.exe" | In - Private - P6 - TRUE | . (.Blizzard Entertainment.) -- C:\Program Files\World of Warcraft_OFFICIAL\BackgroundDownl O87 - FAEL: "UDP Query User{A227F9E5-8F61-43B9-B399-5E4514F5D22C}C:\program files\world of warcraft_official\backgrounddownloader.exe" | In - Private - P17 - TRUE | . (.Blizzard Entertainment.) -- C:\Program Files\World of Warcraft_OFFICIAL\BackgroundDown O87 - FAEL: "{772FA3BB-E467-42FE-9F62-AB07329B32B9}" | In - Private - P6 - FALSE | . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O87 - FAEL: "{1DA8C75C-4F19-455E-8077-FE4CED1AA32F}" | In - Private - P17 - FALSE | . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O87 - FAEL: "{C84F532C-FE7C-4EBE-8F2B-0F60888F7DD9}" | In - Private - P6 - TRUE | . (.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Steam\steamapps\deglingoss57\counter-strike\hl.exe O87 - FAEL: "{CF7BED37-3D15-489A-893A-3908BA9F38C7}" | In - Private - P17 - TRUE | . (.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Steam\steamapps\deglingoss57\counter-strike\hl.exe O87 - FAEL: "{8382E228-C2F6-4654-9661-C13F6600698E}" | In - None - P17 - TRUE | . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O87 - FAEL: "{CEE9D9C3-0AF6-4638-BE41-CFCBAC08A62B}" | In - Public - P6 - TRUE | . (.Blizzard Entertainment - Blizzard Launcher.) -- C:\Program Files\World of Warcraft_OFFICIAL\Launcher.exe O87 - FAEL: "{622AB38B-5A7C-46A3-B522-24B0411FE261}" | In - Public - P17 - TRUE | . (.Blizzard Entertainment - Blizzard Launcher.) -- C:\Program Files\World of Warcraft_OFFICIAL\Launcher.exe O87 - FAEL: "TCP Query User{24B7878C-B843-44CE-8846-B0668B040598}C:\program files\world of warcraft_official\backgrounddownloader.exe" | In - Public - P6 - TRUE | . (.Blizzard Entertainment.) -- C:\Program Files\World of Warcraft_OFFICIAL\BackgroundDownlo O87 - FAEL: "UDP Query User{6378775F-B93F-424B-8402-247C51FF8C53}C:\program files\world of warcraft_official\backgrounddownloader.exe" | In - Public - P17 - TRUE | . (.Blizzard Entertainment.) -- C:\Program Files\World of Warcraft_OFFICIAL\BackgroundDownl O87 - FAEL: "{F1677CEC-155B-4DF2-9DC2-1CBCFB781A42}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Assassins Creed Brotherhood\ACBSP.exe O87 - FAEL: "{29164446-5F36-44CC-9D05-C7349596E205}" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Assassins Creed Brotherhood\ACBSP.exe O87 - FAEL: "{959783FA-523F-4F29-BB38-C2D22D3F5EBF}" | In - Public - P6 - TRUE | .(...) - - C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{639C2461-36A4-43D1-8FA7-55BB5F0D2096}" | In - Public - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{1B15BC3B-F57A-40DF-8AD7-61EFB8A4F6E1}" | In - Public - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{6E2D8AC3-D5AC-4D81-8365-81AA7CDD8A97}" | In - Public - P17 - TRUE | . (...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{CA15FE2B-EA8F-4132-BEB1-91F0C77C4364}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe O87 - FAEL: "{BCE7369D-BB0F-49E3-A300-0BFED3F958CD}" | In - Public - P17 - TRUE | . (...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe O87 - FAEL: "TCP Query User{A520FD53-7895-4450-98E8-59FA4033262A}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbmp.exe" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Assassins Creed Brot O87 - FAEL: "UDP Query User{0228FC3E-61D6-4A60-A35D-48CF37879AE7}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbmp.exe" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Assassins Creed Bro O87 - FAEL: "TCP Query User{31B75038-4FD0-44E3-81EA-945969A9F73E}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\uplaybrowser.exe" | In - Public - P6 - TRUE | .(.Ubisoft Entertainment.) -- C:\Program Files (x86)\Steam\steamapps\ O87 - FAEL: "UDP Query User{B2F9D945-183A-4C96-9396-950A83AA540A}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\uplaybrowser.exe" | In - Public - P17 - TRUE | .(.Ubisoft Entertainment.) -- C:\Program Files (x86)\Steam\steamapps O87 - FAEL: "{CC60F9A6-5562-44D9-AA66-E0711147B77F}" | In - Public - P6 - TRUE | .(.EA Digital Illusions CE AB - Mirror's Edge™.) -- C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Binaries\MirrorsEdge.exe O87 - FAEL: "{E302D35F-ACB0-4871-90ED-1E0774CAE930}" | In - Public - P17 - TRUE | . (.EA Digital Illusions CE AB - Mirror's Edge™.) -- C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Binaries\MirrorsEdge.exe O87 - FAEL: "{F1DF9078-231C-4E14-BDC8-C4FD00927F9A}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm O87 - FAEL: "{E5FDE733-A7A3-4904-A302-D94F8C62B4A8}" | In - Public - P17 - TRUE | . (...) -- C:\Program Files (x86)\Steam\steamapps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm O87 - FAEL: "TCP Query User{8940F6F6-B4CE-4F31-84ED-A9E3571A81A5}C:\program files (x86)\xfire\xfire.exe" | In - Public - P6 - TRUE | .(.Xfire Inc. - Xfire.) -- C:\Program Files (x86)\Xfire\Xfire.exe O87 - FAEL: "UDP Query User{EDF3D38F-A935-4454-A8BE-9AC0A8128406}C:\program files (x86)\xfire\xfire.exe" | In - Public - P17 - TRUE | .(.Xfire Inc. - Xfire.) -- C:\Program Files (x86)\Xfire\Xfire.exe O87 - FAEL: "TCP Query User{D2A6A6FA-2A17-47B5-BAE0-927201F9BE1E}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbsp.exe" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Assassins Creed Bro O87 - FAEL: "UDP Query User{4C4624EF-B8A6-478A-BDB3-74380642981C}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbsp.exe" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Assassins Creed Br O87 - FAEL: "TCP Query User{AB2456B6-6D6E-4F2F-B6DF-AB6BDB4AD8F1}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbmp.exe" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Assassins Creed Bro O87 - FAEL: "UDP Query User{416CCD21-8FE0-4ACA-832A-E8FE3BA19C5E}C:\program files (x86)\steam\steamapps\common\assassins creed brotherhood\acbmp.exe" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Assassins Creed Br O87 - FAEL: "TCP Query User{F269843B-27EC-4D4D-9DB3-2295FAEBD4AC}C:\program files (x86)\valve\portal 2\portal2.exe" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Valve\Portal 2\portal2.exe O87 - FAEL: "UDP Query User{C6AF61BA-E379-46FB-8866-9C69870F43E7}C:\program files (x86)\valve\portal 2\portal2.exe" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Valve\Portal 2\portal2.exe O87 - FAEL: "{3B4CD1C1-B83A-4085-BAF0-CD19BA20F76A}" | In - Private - P6 - TRUE | . (.Curse - Curse Client.) -- C:\Users\ANONYMOUS\AppData\Local\Apps\2.0\MC48VRY1.1ZC\3CJPQ65G.CQ6\curs..tion _eee711038731a406_0004.0000_0d453ed5fea2fe48\CurseClient.exe O87 - FAEL: "{8F361E62-5E36-4BFE-94A1-0408124D70D5}" | In - Private - P17 - TRUE | . (.Curse.) -- C:\Users\ANONYMOUS\AppData\Local\Apps\2.0\MC48VRY1.1ZC\3CJPQ65G.CQ6\curs..tion _eee711038731a406_0004.0000_0d453ed5fea2fe48\CurseClient.exe O87 - FAEL: "TCP Query User{726BDFAC-569C-4235-92FE-0E1A1068DB1E}C:\program files (x86)\bitspirit\bitspirit.exe" | In - Public - P6 - TRUE | .(.LANSPIRIT.NET.) -- C:\Program Files (x86)\BitSpirit\BitSpirit.exe O87 - FAEL: "UDP Query User{4698BE12-D0BF-4279-B7EA-C6FE88F6EEE9}C:\program files (x86)\bitspirit\bitspirit.exe" | In - Public - P17 - TRUE | .(.LANSPIRIT.NET.) -- C:\Program Files (x86)\BitSpirit\BitSpirit.exe O87 - FAEL: "TCP Query User{46991755-A486-4AD3-A9E9-B3E221E3FD5E}C:\program files (x86)\bitcoin\bitcoin.exe" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Bitcoin\bitcoin.exe O87 - FAEL: "UDP Query User{7B3D3FD9-383D-4310-A573-57370097D343}C:\program files (x86)\bitcoin\bitcoin.exe" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Bitcoin\bitcoin.exe O87 - FAEL: "{E62F6301-0B80-4817-A577-2735FCE3743D}" | In - Public - P6 - TRUE | . (.Curse - Curse Client.) -- C:\Users\ANONYMOUS\AppData\Local\Apps\2.0\MC48VRY1.1ZC\3CJPQ65G.CQ6\curs..tion _eee711038731a406_0004.0000_0d453ed5fea2fe48\CurseClient.exe O87 - FAEL: "{CE4C97FD-24DB-4119-9297-0B372DA27583}" | In - Public - P17 - TRUE | . (.Curse - Curse Client.) -- C:\Users\ANONYMOUS\AppData\Local\Apps\2.0\MC48VRY1.1ZC\3CJPQ65G.CQ6\curs..tion _eee711038731a406_0004.0000_0d453ed5fea2fe48\CurseClient.exe O87 - FAEL: "TCP Query User{B5503ECD-9F35-4D81-941B-82E8E707414D}C:\program files (x86)\steam\steamapps\tf2owned\team fortress 2\hl2.exe" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\tf2owned\team fortress 2\hl2.exe O87 - FAEL: "UDP Query User{D161A26B-9399-4C51-B99A-9A254B00605D}C:\program files (x86)\steam\steamapps\tf2owned\team fortress 2\hl2.exe" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\tf2owned\team fortress 2\hl2.exe O87 - FAEL: "{C57F20DC-88C9-4F55-9C16-339FE702F473}" | In - Domain - P17 - TRUE | . (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe O87 - FAEL: "{9FD7992A-7AF4-446D-9FE6-892EC3C9F374}" | In - Private - P17 - TRUE | . (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe O87 - FAEL: "{260DF5A2-4087-4827-AB59-AF629676C59A}" | In - Domain - P17 - TRUE | . (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe O87 - FAEL: "{72051D09-F8AC-4D4F-A8E0-ED664E3AA9F3}" | In - Private - P17 - TRUE | . (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe O87 - FAEL: "TCP Query User{3ABF6C19-AEE0-40D7-80BE-B9304C847A4A}C:\program files (x86)\java\jre6\bin\java.exe" | In - Public - P6 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\java.exe O87 - FAEL: "UDP Query User{9DE50660-A42D-4E57-BED0-9A77ACFA9DB7}C:\program files (x86)\java\jre6\bin\java.exe" | In - Public - P17 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\java.exe O87 - FAEL: "{AE6D6771-2BF5-486A-B2FA-F8C62F9734C0}" | In - None - P17 - TRUE | . (.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe O87 - FAEL: "TCP Query User{4DF8353C-4082-402E-8C5D-00DE4E0C39F8}C:\program files (x86)\ccp\eve\bin\exefile.exe" |In - Public - P6 - TRUE | .(...) -- C:\program files (x86)\ccp\eve\bin\exefile.exe (.not file.) O87 - FAEL: "UDP Query User{81C50C68-B4A2-44E9-B0AB-4083AC82D8C9}C:\program files (x86)\ccp\eve\bin\exefile.exe" |In - Public - P17 - TRUE | .(...) -- C:\program files (x86)\ccp\eve\bin\exefile.exe (.not file.) O87 - FAEL: "TCP Query User{AFDA3236-33AC-4AA1-A75B-41CC09BAAB29}C:\program files (x86)\steam\steamapps\od1exx\team fortress 2\hl2.exe" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\od1exx\team fortress 2\hl2.exe O87 - FAEL: "UDP Query User{84D92ADB-2ED2-4FDC-BD7D-BB44DE0D88BF}C:\program files (x86)\steam\steamapps\od1exx\team fortress 2\hl2.exe" | In - Public - P17 - TRUE | .(...) - - C:\Program Files (x86)\Steam\steamapps\od1exx\team fortress 2\hl2.exe O87 - FAEL: "TCP Query User{C0CABE23-BFC5-4480-92E5-D86D8D7A2D04}C:\program files (x86)\steam\steamapps\syneyh\team fortress 2\hl2.exe" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\syneyh\team fortress 2\hl2.exe O87 - FAEL: "UDP Query User{6C02C619-451A-4999-8929-ABC0344D2F57}C:\program files (x86)\steam\steamapps\syneyh\team fortress 2\hl2.exe" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\steamapps\syneyh\team fortress 2\hl2.exe O87 - FAEL: "{3066934C-09FF-479B-910E-891336F39BB5}" | In - Public - P6 - TRUE | .(.Xi - NetTransport Download Manager.) -- C:\Program Files (x86)\Xi\NetXfer\NetTransport.exe O87 - FAEL: "{6C254529-A37D-4894-84C2-18A6862571F4}" | In - Public - P17 - TRUE | .(.Xi - NetTransport Download Manager.) -- C:\Program Files (x86)\Xi\NetXfer\NetTransport.exe O87 - FAEL: "{25EC4D16-7843-4116-B766-644DADAA0C8E}" | In - Public - P6 - TRUE | . (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-\x64\maconfservice.exe O87 - FAEL: "{158DE3E0-F992-454E-B386-783B0704893D}" | In - Public - P17 - TRUE | . (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-\x64\maconfservice.exe O87 - FAEL: "{F41E463E-3AA4-43C5-AC10-FC95D2AD0E97}" | In - Public - P6 - FALSE | . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O87 - FAEL: "{826A57BF-1776-4CDA-9657-5BDBF453CCF1}" | In - Public - P17 - FALSE | . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe ~ Scan Firewall in 04mn AMs

---\\ Scan Additionnel (O88) Database Version : 8852 - (27/11/2011) Clés trouvées (Keys found) : 4 Valeurs trouvées (Values found) : 2 Dossiers trouvés (Folders found) : 1 Fichiers trouvés (Files found) : 0 [HKLM\Software\WOW6432Node\Classes\AppID\{09C554C3-109B-483C-A06B- F14172F1A947}] =>Adware.Agent [HKLM\Software\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\ {28D35620-51D9-11DE-9D13-2DB156D89593}] =>PUP.iMesh [HKLM\Software\WOW6432Node\Classes\Interface\{db885111-f39f-4d88-9ee5- c88460b6df7b}] =>Adware.Agent [HKLM\Software\Wow6432Node\Xfire\OpenCandy] =>Adware.OpenCandy [HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{32099aac-c132-4136- 9e9a-4e364a424e17} =>Toolbar.Agent [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{32099aac-c132-4136-9e9a- 4e364a424e17} =>Toolbar.Agent C:\Program Files (x86)\DAEMON Tools Toolbar =>Toolbar.Agent ~ Scan Additionnel in 04mn AMs

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 5/14/2011 675128 | (AcuWVSSchedulerv7) . (.Acunetix Ltd..) - C:\Program Files (x86)\Acunetix\Web Vulnerability Scanner 7\WVSScheduler7.exe SR - | Auto 6/16/2011 64952 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 12/7/2009 202752 | (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe SR - | Auto 6/17/2010 108289 | (AntiVirSchedulerService) . (.Avira GmbH.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe SR - | Auto 6/17/2010 185089 | (AntiVirService) . (.Avira GmbH.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe SR - | Auto 4/28/2011 235872 | (CachemanService) . (.Outertech.) - C:\Program Files (x86)\Cacheman\CachemanServ.exe SS - | Auto 3/22/2011 126976 | (D_Link_DWA-125) . (.Wireless Service.) - C:\Program Files (x86)\D-Link\DWA-125 revA\ANIWZCSdS.exe SR - | Auto 40960 | (D_Link_DWA-125_WPS) . (...) - C:\Program Files (x86)\D-Link\DWA-125 revA\ANIWConnService.exe SS - | Auto 10/14/2010 1220608 | (Fabs) . (.MAGIX AG.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe SS - | Demand 10/14/2010 3276800 | (FirebirdServerMAGIXInstance) . (.MAGIX®.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe SR - | Auto 10/12/2009 1150496 | (Greg_Service) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe SS - | Auto 4/6/2011 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 4/6/2011 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - | Auto 10/12/2009 354840 | (IAANTMON) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe SS - | Demand 11/29/2011 427640 | (maconfservice) . (.CybelSoft.) - C:\Program Files\ma-\x64\maconfservice.exe SR - | Auto 9/14/2011 366152 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe SS - | Demand 10/12/2009 305448 | (MWLService) . (.Egis Technology Inc..) - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe SR - | Auto 10/31/2010 503080 | C:\Program Files (x86)\Nero\Update\NASvc.exe (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe SS - | Demand 10/12/2009 935208 | Nero BackItUp Scheduler 4.0 (Nero BackItUp Scheduler 4.0) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe SR - | Auto 10/12/2009 62208 | (NTI IScheduleSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe SR - | Auto 3/20/2011 276584 | (nTuneService) . (.NVIDIA.) - C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe SR - | Auto 11/29/2011 1640768 | (NVSvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe SR - | Auto 11/29/2011 2253120 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe SS - | Demand 36352 | (OpenVPNService) . (...) - C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe SR - | Auto 0 | (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe SS - | Demand 0 | Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (...) - %ProgramFiles(x86)%\WinPcap\rpcapd.exe SS - | Demand 7/9/2010 419624 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SR - | Auto 11/29/2011 381248 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe SR - | Auto 5/31/2011 2337144 | (TeamViewer6) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe SR - | Auto 10/12/2009 240160 | (Updater Service) . (.Acer.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe SR - | Auto 10/23/2011 79872 | (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe SR - | Auto 12/30/1899 0 | (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\System32\vmnetdhcp.exe SR - | Auto 10/23/2011 846448 | (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe SR - | Auto 12/30/1899 0 | (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\System32\vmnat.exe SR - | Auto 11837440 | (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe SR - | Auto 7/14/2009 27136 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Scan Services in 06mn AMs

---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, Run by ANONYMOUS at 11/30/2011 3:26:21 PM device: opened successfully user: error reading MBR Disk trace: error: Read Descripteur non valide kernel: error reading MBR ~ Scan MBR in 02mn AMs

---\\ Recherche Master Boot Record Infection (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by ANONYMOUS at 11/30/2011 3:26:23 PM ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ Scan MBR in 04mn AMs

---\\ Liste des émulateurs de CD/DVD (Hook du MBR) O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 9/25/2010 - 12:00:00 AM RSHAD . (...) -- C:\Windows\system32\drivers\sptd.sys [834544] ~ Scan Emulateurs in 04mn AMs

End of the scan (2436 lines in 45mn AMs)(0)