Aller au contenu

lucdemarseille

Membres
  • Compteur de contenus

    236
  • Inscription

  • Dernière visite

lucdemarseille's Achievements

Mega Power Member

Mega Power Member (6/12)

0

Réputation sur la communauté

  1. bonjour je n'ai pas eu trop de temps pour moi dernierement et je reviens vers vous pour vous dire que le pc à l'air stable et plus d'ecran bleu depuis mon dernier post je reste comme ça pour le moment je reviendrai vous voir au besoin encore merci pour votre aide cordialement
  2. bonjour pour vous signaler que l'extension "Blockulicious" n'existe pas d'apres Mozilla, et que, j'ai eu quelques ecrans bleu depuis la desinfection le premier juste apres avoir vider la corbeille
  3. au fait comment faites vous cela? merci Java peut mettre en péril la sécurité de votre ordinateur. Il vous est fortement conseillé de le désactiver de vos navigateurs WEB, si vous en avez pas l'utilité. Lorsqu'une application Java se présentera, un message d'avertissement vous demandera d'installer Java ou d'activer le plug-in. Vous le désactiverez dès que vous aurez fini d'utiliser l'application écrite en Java.
  4. et le rapport SFTGC merci Rapport de SFTGC (Pierre13) du Mardi 15 Juillet 2014 à 09:57:31 version : 2.2.0.0 Mis à jour le 30/05/2014 Outil lancé en Mode normal et En tant qu'administrateur Windows 7 Home Premium Service Pack 1 64 bits Tool start in C:\Users\Master $partan\Desktop 556 éléments supprimés => 7.5 Mo libérés. (47 s) Attention infection possible ! =>> C:\Users\Master $partan\AppData\Local\Temp\avgnt.exe Attention infection possible ! =>> C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_55\lzma.exe Attention infection possible ! =>> C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_51\lzma.exe Attention infection possible ! =>> C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YZLE2I91\install_flash_player_ax[1].exe Attention infection possible ! =>> C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IVPDSHCL\install_flash_player[1].exe C:\Users\Master $partan\AppData\Local\Temp\acro_rd_dir C:\Users\Master $partan\AppData\Local\Temp\AdobeARM.log C:\Users\Master $partan\AppData\Local\Temp\avgnt.exe C:\Users\Master $partan\AppData\Local\Temp\jusched.log C:\Users\Master $partan\AppData\Local\Temp\LuUpdater.log C:\Users\Master $partan\AppData\Local\Temp\plugtmp C:\Users\Master $partan\AppData\Local\Temp\WPDNSE C:\Users\Master $partan\AppData\LocalLow\Adobe C:\Users\Master $partan\AppData\LocalLow\EmieSiteList C:\Users\Master $partan\AppData\LocalLow\EmieUserList C:\Users\Master $partan\AppData\LocalLow\Google C:\Users\Master $partan\AppData\LocalLow\Sony Online Entertainment C:\Users\Master $partan\AppData\LocalLow\Sun C:\Users\Master $partan\AppData\LocalLow\Sun\Java C:\Users\Master $partan\AppData\LocalLow\Sun\Java\AU C:\Users\Master $partan\AppData\LocalLow\Sun\Java\Deployment C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_15 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_24 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_26 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_29 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_30 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_31 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_33 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_37 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.6.0_39 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_17 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_21 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_25 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_45 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_51 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_55 C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_55\lzma.exe C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_51\lzma.exe C:\Users\Master $partan\AppData\LocalLow\Sun\Java\jre1.7.0_45\lzma.dll C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\desktop.ini C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\History.IE5 C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\Low C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\Low\desktop.ini C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\Low\History.IE5 C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\Low\History.IE5\container.dat C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014071420140715 C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014071520140716 C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014071520140716\container.dat C:\Users\Master $partan\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014071420140715\container.dat C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\ProgramData C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Master $partan C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Master $partan\AppData C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Master $partan\AppData\Local C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Master $partan\AppData\Roaming C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Master $partan\AppData\Local\Microsoft C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Master $partan\AppData\Local\Microsoft\Windows C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\ProgramData\NVIDIA Corporation C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\ProgramData\NVIDIA Corporation\Drs C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\ProgramData\NVIDIA Corporation\Drs\nvAppTimestamps C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\ProgramData\NVIDIA Corporation\Drs\nvdrssel.bin C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\5KKI8UCD C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\container.dat C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FDA2KLGS C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ICXGPO8T C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\L2H8B6ZE C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\L2H8B6ZE\1404804168128_dplay_728x90_fr[1].jpg C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\4A72F430-B40C-4D36-A068-CE33ADA5ADF9.dat C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\66EDA0C9-9C7D-4F60-AF56-7A8C8B56E453.dat C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\container.dat C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IVPDSHCL C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PJVY0A2T C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U1TEDZM0 C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YZLE2I91 C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YZLE2I91\install_flash_player_ax[1].exe C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YZLE2I91\prodinstall[1].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YZLE2I91\prodinstall[2].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YZLE2I91\prodinstall[3].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YZLE2I91\prodinstall[4].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YZLE2I91\VersionSFT[1].txt C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U1TEDZM0\104[1] C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U1TEDZM0\prodinstall[1].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U1TEDZM0\prodinstall[2].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U1TEDZM0\prodinstall[3].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U1TEDZM0\prodinstall[4].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U1TEDZM0\suggestions[1].fr-FR C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PJVY0A2T\104[1] C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PJVY0A2T\28016ffcbe8a1939af038a0db8cfb2f471a00311[1].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PJVY0A2T\prodinstall[1].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PJVY0A2T\prodinstall[2].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PJVY0A2T\prodinstall[3].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PJVY0A2T\prodinstall[4].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PJVY0A2T\prodinstall[5].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IVPDSHCL\install_flash_player[1].exe C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IVPDSHCL\prodinstall[1].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IVPDSHCL\prodinstall[2].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IVPDSHCL\prodinstall[3].htm C:\Users\Master $partan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IVPDSHCL\prodinstall[4].htm C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\Nouveau document texte.lnk C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\Procedure de nettoyage.lnk C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\rapport adwcleaner 14.07.2014.lnk C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\Rapport nettoyage avira du 13.07.2014.lnk C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\ZHPDiag.lnk C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\ZHPFixReport.lnk C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\1461132e553e2e6c.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\18c370c1790089fd.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\1eb796d87c32eff9.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\2c9a18284545a94b.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\337ed59af273c758.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\33a00252c0fa56de.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\35ed8100d801e9ad.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\521a29e5d22c13b4.customDestinations-ms~RF74709f.TMP C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\59fe1486d27aa9d0.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5afe4de1b92fc382.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5d696d521de238c3.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5df4765359170e26.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\634bd393510dd415.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\6b8904e2b6864f0f.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\6c810151099d596c.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\7111c0ce965b7246.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\83b03b46dcd30a0e.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\9645f58513b1a821.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\969252ce11249fdd.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\9f29afe9a425456d.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\b06a975b62567622.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\C4CJ70PZGS87I6SXKP9A.temp C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\ccc0fa1b9f86f7b3.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\CX8DGJ6JDER6CXIZR42Q.temp C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\ec3e36af0cdcb3e1.customDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\ec3e36af0cdcb3e1.customDestinations-ms~RF7d680.TMP C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\OL6DXJ3BA4704JRW42Z1.temp C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\1b4dd67f29cb1962.automaticDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\28c8b86deab549a1.automaticDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\7e4dca80246863e3.automaticDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\9b9cdc69c1c24e2b.automaticDestinations-ms C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ee462c3b81abb6f6.automaticDestinations-ms C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0381C14D7D4614738FA6FFB3FBC512C5_26ED55FD609550F6150F72665A375B42 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\03C2624375988154FBF20373B7D495E8_881F4DCC51B7FDED821058DF9E8C7660 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\04AFA8793E5CDC4A81C6CD4554A30707 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_49A0F7ED62B84361D2B23E89CDE34920 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\098A74825DEB4C50FAE88C91A0B9713D_A95B4C8B6F5C96B78EE98784995320FE C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0B1B84E1509125064E3D44331C3817C2_3E6BB635115BB4A3C7C9DF5009227113 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0B8D1B774F9EC9738FE5D78C2C332555 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0D6ED27B76F0582A8D2120DF24D1E180_B52DB0DD355A2D437E4D65686FF6F4AD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_EC2B8F0C530DA57B6BD72F9ED19E4B95 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1DAF2884EC4DFA96BA4A58D4DBC9C406 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F39B5CFACECFDE48DB25BCA2231FAC6_EFF75CC327209C24948C6870FD41C872 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\223DE96EE265046957A660ED7C9DD9E7_EFF9B9BA98DEAA773F261FA85A0B1771 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\23B523C9E7746F715D33C6527C18EB9D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_010EF11C72964EEFACE16EAD37B47D41 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_4EF878F861A75219EFD016803093B617 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_69127A16A82DAE6DB57B8DA92372B1FA C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2427C246DCF85A06DD675914EDA68038_6D7E15A175E5EC8F2C27453F24E2AC1B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_D5BB51C3D072550638AE6E38C15EB7A2 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_D5F371CA8BB497F6BC597EC0BA32C7FD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_F20422EBCCB25901724F4B99CACA4C59 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_FE2214BE204BC64425FF2D40D268DCEE C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_1C28ACEAB86E6CF74E4447D18B458ECC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_1FF7B15899C4B804A360D3A9F7DB98CC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35C21096DDABA77AE4D988E68D76D867_82FDCF19455DB32E579472B6BB738E11 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3823B0119FA7D68ECD86999B07F5395F_31F0F1B19182C6774E3A3001A0F51071 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_861CEA2ED5CF23C0298B97157FCA2D32 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_C8FA2A733FE2A95A8ABEB57315278F81 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3CAD026DBD55EFCD3073040EB867EA38 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3EF2DCFBD8E45DF4AF38995D1A2C2444_2768B3886E78F9A5562A7C1FBF45A9CA C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\44FEE94F47151621461DCB0022F343BE_C06BAAEE50675D404E83D78DA7514990 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_F4692EBD578D04048E176E82BB8369BB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_5459F68426E422817E179A6A1EB79BD5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_7DCDC9B86C5DA37FEB2732F7D1A586E5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_D734EC3DD00546F46D368325396086B0 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_E9FCAC30D964AFC39902EC989B1CC9E8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\54D62447E94D6E1A4BDF9F5D97B79ED0_0AE67D36D340ADDCC6C5DBDBC05C9BB4 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\570FB14ABC805C46708F32F92F10C3B4 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5BF987767EE121EB773E3E93D13C2F30_EF26754C41825C23E00A83FE50225A1A C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5D980C21A14CEF8530BD8EA5D70F17A7_4B38BCF654798A41E9C8639AA5171F8B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5D980C21A14CEF8530BD8EA5D70F17A7_682EF379A37CE5EBAF7950150050209C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6213E171AE581D2A101181BD4DC37197_BDE69D72708EA0A986F4C772107CB69D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\63F16947F17E72BF435BBB403EED52BD_9D9B7EB054FD2EA6F1B2FB5197552A61 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6C05FF55E66434DC351985A3C60541B2_305471F92FEBDAC55C5F5411833A3468 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\70FEE87A42672626A68FAB261B428374_7FA4A19E9E8ECB94A8E785D67DD2F84B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\724BA1E3D2C377A06FA5FA54F984881F_204A0CEAE21E503F798B2869C9756D5D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\729E9C705B0D8776A35F0C8C012D3C76_5146E5A85D0E928EF8CADA664D5B02D4 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\72FB5B1C7905530E0DF39758E01A3573_89BF38AC62844359BBE9A7A2DC9AE3DA C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7396C420A8E1BC1DA97F1AF0D10BAD21 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_11D7BA58D75E54D622A3AD9CDF9905BB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B2238AACCEDC3F1FFE8E7EB5F575EC9 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_408BF57CFB22C8CE7202361683829F8C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_49601446053A5E3954D380D8CD7C17D6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_5F124D17DE64DB801438EF94A4BF11CB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_65AB46338602F1B8A683A64BCDB5AFB8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_D7F0806A9FAA0922F41F59F20EB11D5C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_E543A44216096629ACF4944FE0529DA3 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D1F03728133589A90656A87E482B21F C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_1D5A876A9113EC07224C45E5A870E3BD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_FFE23A7C282C1690704B5AEA6161D1B8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_0B4D4B306980BC899FBA29D40288091B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_28634DBC5A3910B95ECD3B31608E8A92 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_308DF59BCD7D2EC076FBF2D1A6101332 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_5E12E0A96C499EC8433A4EA6E5BC35B9 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_631D72ECDAF6CA83C992AE241849F034 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_6F75B4C008008F0E1F73DFBC8174C492 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_765869990270A968E3B362DDAE9D84C0 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_7CA20CBEFB78C5FFC8A29F35871DEAB7 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_97B6FDC0A9194BD807D020773A823A44 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_99A31F0AA0A339D43F5D3B6D1448DDB3 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_C4590721C8E97668E6AFC69E38381903 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_D3C0C121223D757E7FEDFBDD202648B2 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_F30D3103EDEDC6C128BBEF011A465D77 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\855CF405355328EC482A28D56A44CFB0_75E047A031C40ADE3DA717A6CD8DA6F8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\855CF405355328EC482A28D56A44CFB0_848DE072E7E3C9CCBF83665225713439 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\855CF405355328EC482A28D56A44CFB0_D096F8B9517846B6EED7F0DE4AFEE6F6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_1E5D470765E0BE1964814B1F5A3581DC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_96DEA2BAAACB5C7A91C910F0C6DB31C3 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_D3DB95C0E7608ACC9AA10ACCCCEBBDF5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\904590238400AD963F77FAAAADC9BAB5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_4BF9E091F7E646918992616FB44457D6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_CA8E6BAF2163B000DBA095FE24D16796 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_F8752DE75DEE56BE61316F618A339773 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_FD610691E11595AEA69D65A65E1A4374 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_1A9CEF0D6BDBEE31E5C2CF9955E61B89 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_AD9E7615297A3A83320AACE5801A04F9 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_CFEA3385E24D822B0027B3D9A091B242 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9ED96E96B07B15E9B8E4BADA424BBFFD_14A1960600ABB1347BF7F04C5C59CD30 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_65567A8A88DAA8CE7E3A1443DFD1AB5C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A44F4E7CB3133FF765C39A53AD8FCFDD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A8C551394BBC28894C90C80D1ED47453_5A9B3AB76266138E7EFDD2550740902D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AFA2A5744430E65F42D3175FABFBE3E8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B3BB9C1BA2D19E090AE305B2683903A0_6F0A84CE2BA99BD19D42C92610275852 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B3BB9C1BA2D19E090AE305B2683903A0_7EBD0A45B23A8A5A4C4407444411DA5F C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B8CC409ACDBF2A2FE04C56F2875B1FD6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B90B117906B8A74C79D1BC450C2B94B1_A54F26A8A41DE52C237D54D67F12793F C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_D1F31FC713F1CA4EF0EB85CF733903FC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BAEBE581FCB73249406FC21094EA252E_BC0CE803EF41A748738619ED7838EEFC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BBB768C456D9E2DCD3EF595C400D483D_64C05B9EB32FC3D0CE6CB126561EEBFF C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_56D5A51152132FA716821C1361187213 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_466FCCDDC2DC52587D2C75F2CC3C616E C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C571B417AAF1F617555A0486AB3F5361 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C5C16E8B8D126375C32C54465617D152_E89BE6285BCA3816E41A2C36E7E420A5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C8E7EC0C85688F4738F3BE49B104BA67 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_15A9F8AEDFC175B994A2CDC33A11A4C2 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_2F3FE08FCF0D0709EDC7F26BB97C8334 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_59EC90812CBEB8A2C4BAD2905AF8A223 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_962006E91AFC5B57D8F73C84322495B8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_A3F22A5A651285965E2D6280D83B8A8E C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_F2F8C36E48A4BF7F6684EEABA37385A5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CAEDF689AA6DC9642B833051B2B77D1A C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_F4E52DD529D15999F3852B6B321E6DC5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D237426009EE0F53ADECD7FCEBA7288C_3280334BBB32DD326F2A95EB24176148 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D473E9C373099A94D5057303FDF0EE65_39B17C5C97CD64B7EE78FBDFB2D76D63 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D84E548583BE1EE7DB5A935821009D26_5B98B6CD6E69202676965CF5B0E2A7A7 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\DC2135CED98D8A4D7C0CEE202BB0B810 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_11E7D7852AC895619FD7E2B0A5A0B418 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_366EF438E828E24E4D91BD7F8407E04E C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_C52CC1C616E97ED158C06B1AF9727B13 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5054B3FD90C2AE6E53B5EA495D10CC9_D94EAF1FF31248E361F5225AC5A9F3F2 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5062987353057B4F90E8C7A2DEAE329 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_2016852E514A7800FCAA8CC8D3E235DF C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E6DAA7489C9999D36D1B356E8A295618_1E4069531DEFE4987BC608EB01B64158 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E6DAA7489C9999D36D1B356E8A295618_9B1F2AAB4FE666F1EFD6F0F3195FE7F7 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E82ACDA9F5169E971D6B19B65E168F2A_74FE5F81630EA140E7CCE97A8187A761 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EB2C4AB8B68FFA4B7733A9139239A396_D76DB901EE986B889F30D8CC06229E2D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_313E6B316EFFE568616A721B4D9E42B0 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_912F99CA8D5FDC99CE2D346B99B73E21 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_BB8F11D9C88244CDDAC9C016062C8520 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_BE22E804D5F41067BEE3E16764A86F6E C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_EE6221D82CA37A87AD39A047D7697098 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4D9C889B7AEBCF4E1A2DAABC5C3628A_0A60212F88D89DF502A91422E8114D6B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4D9C889B7AEBCF4E1A2DAABC5C3628A_7C51EAC10E1F61E24EF3E67B7197082C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F5A17C00E427F919C4A49EEF5AD0EE53 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F90F18257CBB4D84216AC1E1F3BB2C76 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB788E090BC1F3AA2FBC9E8FB2859601 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_64FBBF7EBC3C3336620E795DDC157490 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_86CE0C4673E87225A876B30B842AD9FB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCD2CC3451EF5F3DB8D4B7DD511B2F77_DDE7C84CBB7658FC5D51C45EABF2444C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FD3CFEE0152FD504B10BB840519AC309_9F1DB5FE2A9C9A684C2FEEEFE8B0A5BD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0381C14D7D4614738FA6FFB3FBC512C5_26ED55FD609550F6150F72665A375B42 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\03C2624375988154FBF20373B7D495E8_881F4DCC51B7FDED821058DF9E8C7660 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\04AFA8793E5CDC4A81C6CD4554A30707 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_49A0F7ED62B84361D2B23E89CDE34920 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\098A74825DEB4C50FAE88C91A0B9713D_A95B4C8B6F5C96B78EE98784995320FE C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0B1B84E1509125064E3D44331C3817C2_3E6BB635115BB4A3C7C9DF5009227113 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0B8D1B774F9EC9738FE5D78C2C332555 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0D6ED27B76F0582A8D2120DF24D1E180_B52DB0DD355A2D437E4D65686FF6F4AD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_EC2B8F0C530DA57B6BD72F9ED19E4B95 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1DAF2884EC4DFA96BA4A58D4DBC9C406 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F39B5CFACECFDE48DB25BCA2231FAC6_EFF75CC327209C24948C6870FD41C872 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\223DE96EE265046957A660ED7C9DD9E7_EFF9B9BA98DEAA773F261FA85A0B1771 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\23B523C9E7746F715D33C6527C18EB9D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_010EF11C72964EEFACE16EAD37B47D41 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_4EF878F861A75219EFD016803093B617 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_69127A16A82DAE6DB57B8DA92372B1FA C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2427C246DCF85A06DD675914EDA68038_6D7E15A175E5EC8F2C27453F24E2AC1B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_D5BB51C3D072550638AE6E38C15EB7A2 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_D5F371CA8BB497F6BC597EC0BA32C7FD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_F20422EBCCB25901724F4B99CACA4C59 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_FE2214BE204BC64425FF2D40D268DCEE C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_1C28ACEAB86E6CF74E4447D18B458ECC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_1FF7B15899C4B804A360D3A9F7DB98CC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35C21096DDABA77AE4D988E68D76D867_82FDCF19455DB32E579472B6BB738E11 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3823B0119FA7D68ECD86999B07F5395F_31F0F1B19182C6774E3A3001A0F51071 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_861CEA2ED5CF23C0298B97157FCA2D32 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_C8FA2A733FE2A95A8ABEB57315278F81 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3CAD026DBD55EFCD3073040EB867EA38 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3EF2DCFBD8E45DF4AF38995D1A2C2444_2768B3886E78F9A5562A7C1FBF45A9CA C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\44FEE94F47151621461DCB0022F343BE_C06BAAEE50675D404E83D78DA7514990 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_F4692EBD578D04048E176E82BB8369BB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_5459F68426E422817E179A6A1EB79BD5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_7DCDC9B86C5DA37FEB2732F7D1A586E5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_D734EC3DD00546F46D368325396086B0 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_E9FCAC30D964AFC39902EC989B1CC9E8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\54D62447E94D6E1A4BDF9F5D97B79ED0_0AE67D36D340ADDCC6C5DBDBC05C9BB4 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\570FB14ABC805C46708F32F92F10C3B4 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5BF987767EE121EB773E3E93D13C2F30_EF26754C41825C23E00A83FE50225A1A C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5D980C21A14CEF8530BD8EA5D70F17A7_4B38BCF654798A41E9C8639AA5171F8B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5D980C21A14CEF8530BD8EA5D70F17A7_682EF379A37CE5EBAF7950150050209C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6213E171AE581D2A101181BD4DC37197_BDE69D72708EA0A986F4C772107CB69D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\63F16947F17E72BF435BBB403EED52BD_9D9B7EB054FD2EA6F1B2FB5197552A61 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6C05FF55E66434DC351985A3C60541B2_305471F92FEBDAC55C5F5411833A3468 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\70FEE87A42672626A68FAB261B428374_7FA4A19E9E8ECB94A8E785D67DD2F84B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\724BA1E3D2C377A06FA5FA54F984881F_204A0CEAE21E503F798B2869C9756D5D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\729E9C705B0D8776A35F0C8C012D3C76_5146E5A85D0E928EF8CADA664D5B02D4 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\72FB5B1C7905530E0DF39758E01A3573_89BF38AC62844359BBE9A7A2DC9AE3DA C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7396C420A8E1BC1DA97F1AF0D10BAD21 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_11D7BA58D75E54D622A3AD9CDF9905BB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B2238AACCEDC3F1FFE8E7EB5F575EC9 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_408BF57CFB22C8CE7202361683829F8C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_49601446053A5E3954D380D8CD7C17D6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_5F124D17DE64DB801438EF94A4BF11CB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_65AB46338602F1B8A683A64BCDB5AFB8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_D7F0806A9FAA0922F41F59F20EB11D5C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_E543A44216096629ACF4944FE0529DA3 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D1F03728133589A90656A87E482B21F C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_1D5A876A9113EC07224C45E5A870E3BD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_FFE23A7C282C1690704B5AEA6161D1B8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_0B4D4B306980BC899FBA29D40288091B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_28634DBC5A3910B95ECD3B31608E8A92 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_308DF59BCD7D2EC076FBF2D1A6101332 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_5E12E0A96C499EC8433A4EA6E5BC35B9 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_631D72ECDAF6CA83C992AE241849F034 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_6F75B4C008008F0E1F73DFBC8174C492 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_765869990270A968E3B362DDAE9D84C0 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_7CA20CBEFB78C5FFC8A29F35871DEAB7 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_97B6FDC0A9194BD807D020773A823A44 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_99A31F0AA0A339D43F5D3B6D1448DDB3 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_C4590721C8E97668E6AFC69E38381903 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_D3C0C121223D757E7FEDFBDD202648B2 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_F30D3103EDEDC6C128BBEF011A465D77 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\855CF405355328EC482A28D56A44CFB0_75E047A031C40ADE3DA717A6CD8DA6F8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\855CF405355328EC482A28D56A44CFB0_848DE072E7E3C9CCBF83665225713439 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\855CF405355328EC482A28D56A44CFB0_D096F8B9517846B6EED7F0DE4AFEE6F6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_1E5D470765E0BE1964814B1F5A3581DC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_96DEA2BAAACB5C7A91C910F0C6DB31C3 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_D3DB95C0E7608ACC9AA10ACCCCEBBDF5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\904590238400AD963F77FAAAADC9BAB5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_4BF9E091F7E646918992616FB44457D6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_CA8E6BAF2163B000DBA095FE24D16796 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_F8752DE75DEE56BE61316F618A339773 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_FD610691E11595AEA69D65A65E1A4374 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_1A9CEF0D6BDBEE31E5C2CF9955E61B89 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_AD9E7615297A3A83320AACE5801A04F9 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_CFEA3385E24D822B0027B3D9A091B242 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9ED96E96B07B15E9B8E4BADA424BBFFD_14A1960600ABB1347BF7F04C5C59CD30 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_65567A8A88DAA8CE7E3A1443DFD1AB5C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A44F4E7CB3133FF765C39A53AD8FCFDD C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A8C551394BBC28894C90C80D1ED47453_5A9B3AB76266138E7EFDD2550740902D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AFA2A5744430E65F42D3175FABFBE3E8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B3BB9C1BA2D19E090AE305B2683903A0_6F0A84CE2BA99BD19D42C92610275852 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B3BB9C1BA2D19E090AE305B2683903A0_7EBD0A45B23A8A5A4C4407444411DA5F C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B8CC409ACDBF2A2FE04C56F2875B1FD6 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B90B117906B8A74C79D1BC450C2B94B1_A54F26A8A41DE52C237D54D67F12793F C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_D1F31FC713F1CA4EF0EB85CF733903FC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BAEBE581FCB73249406FC21094EA252E_BC0CE803EF41A748738619ED7838EEFC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BBB768C456D9E2DCD3EF595C400D483D_64C05B9EB32FC3D0CE6CB126561EEBFF C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_56D5A51152132FA716821C1361187213 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_466FCCDDC2DC52587D2C75F2CC3C616E C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C571B417AAF1F617555A0486AB3F5361 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C5C16E8B8D126375C32C54465617D152_E89BE6285BCA3816E41A2C36E7E420A5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C8E7EC0C85688F4738F3BE49B104BA67 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_15A9F8AEDFC175B994A2CDC33A11A4C2 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_2F3FE08FCF0D0709EDC7F26BB97C8334 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_59EC90812CBEB8A2C4BAD2905AF8A223 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_962006E91AFC5B57D8F73C84322495B8 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_A3F22A5A651285965E2D6280D83B8A8E C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_F2F8C36E48A4BF7F6684EEABA37385A5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CAEDF689AA6DC9642B833051B2B77D1A C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_F4E52DD529D15999F3852B6B321E6DC5 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D237426009EE0F53ADECD7FCEBA7288C_3280334BBB32DD326F2A95EB24176148 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D473E9C373099A94D5057303FDF0EE65_39B17C5C97CD64B7EE78FBDFB2D76D63 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D84E548583BE1EE7DB5A935821009D26_5B98B6CD6E69202676965CF5B0E2A7A7 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\DC2135CED98D8A4D7C0CEE202BB0B810 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_11E7D7852AC895619FD7E2B0A5A0B418 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_366EF438E828E24E4D91BD7F8407E04E C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_C52CC1C616E97ED158C06B1AF9727B13 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5054B3FD90C2AE6E53B5EA495D10CC9_D94EAF1FF31248E361F5225AC5A9F3F2 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5062987353057B4F90E8C7A2DEAE329 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_2016852E514A7800FCAA8CC8D3E235DF C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E6DAA7489C9999D36D1B356E8A295618_1E4069531DEFE4987BC608EB01B64158 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E6DAA7489C9999D36D1B356E8A295618_9B1F2AAB4FE666F1EFD6F0F3195FE7F7 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E82ACDA9F5169E971D6B19B65E168F2A_74FE5F81630EA140E7CCE97A8187A761 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EB2C4AB8B68FFA4B7733A9139239A396_D76DB901EE986B889F30D8CC06229E2D C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_313E6B316EFFE568616A721B4D9E42B0 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_912F99CA8D5FDC99CE2D346B99B73E21 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_BB8F11D9C88244CDDAC9C016062C8520 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_BE22E804D5F41067BEE3E16764A86F6E C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_EE6221D82CA37A87AD39A047D7697098 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4D9C889B7AEBCF4E1A2DAABC5C3628A_0A60212F88D89DF502A91422E8114D6B C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4D9C889B7AEBCF4E1A2DAABC5C3628A_7C51EAC10E1F61E24EF3E67B7197082C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F5A17C00E427F919C4A49EEF5AD0EE53 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F90F18257CBB4D84216AC1E1F3BB2C76 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB788E090BC1F3AA2FBC9E8FB2859601 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_64FBBF7EBC3C3336620E795DDC157490 C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_86CE0C4673E87225A876B30B842AD9FB C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCD2CC3451EF5F3DB8D4B7DD511B2F77_DDE7C84CBB7658FC5D51C45EABF2444C C:\Users\Master $partan\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FD3CFEE0152FD504B10BB840519AC309_9F1DB5FE2A9C9A684C2FEEEFE8B0A5BD C:\Users\MASTER~1\AppData\Local\Temp\avgnt.exe C:\Windows\TEMP\AVSETUP_53c3d2d0 C:\Windows\TEMP\cab_4628_2 C:\Windows\TEMP\cab_4628_3 C:\Windows\TEMP\cab_4628_4 C:\Windows\TEMP\cab_4628_5 C:\Windows\TEMP\cab_4628_6 C:\Windows\TEMP\cab_7240_2 C:\Windows\TEMP\cab_7240_3 C:\Windows\TEMP\cab_7240_4 C:\Windows\TEMP\cab_7240_5 C:\Windows\TEMP\cab_7240_6 C:\Windows\TEMP\fwtsqmfile00.sqm C:\Windows\TEMP\fwtsqmfile01.sqm C:\Windows\TEMP\fwtsqmfile02.sqm C:\Windows\TEMP\fwtsqmfile03.sqm C:\Windows\TEMP\HamachiSetup.log C:\Windows\TEMP\lpksetup-20140713-090149-0.log C:\Windows\TEMP\lpksetup-20140713-093447-0.log C:\Windows\TEMP\lpksetup-20140713-110800-0.log C:\Windows\TEMP\lpksetup-20140713-201111-0.log C:\Windows\TEMP\lpksetup-20140713-202655-0.log C:\Windows\TEMP\lpksetup-20140713-215344-0.log C:\Windows\TEMP\lpksetup-20140713-220057-0.log C:\Windows\TEMP\lpksetup-20140714-084709-0.log C:\Windows\TEMP\lpksetup-20140714-113756-0.log C:\Windows\TEMP\lpksetup-20140714-142506-0.log C:\Windows\TEMP\lpksetup-20140714-144104-0.log C:\Windows\TEMP\lpksetup-20140714-195130-0.log C:\Windows\TEMP\lpksetup-20140715-074951-0.log C:\Windows\TEMP\lpksetup-20140715-094442-0.log C:\Windows\Prefetch\ACENGSVR.EXE-591E7F61.pf C:\Windows\Prefetch\ADSMSRV.EXE-1A14F59E.pf C:\Windows\Prefetch\AgAppLaunch.db C:\Windows\Prefetch\AVCENTER.EXE-FD66D2A7.pf C:\Windows\Prefetch\AVSHADOW.EXE-04DD2548.pf C:\Windows\Prefetch\AVWSC.EXE-9DE67EBB.pf C:\Windows\Prefetch\CCUAC.EXE-3A725DBA.pf C:\Windows\Prefetch\CMD.EXE-AC113AA8.pf C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf C:\Windows\Prefetch\CONTROLDECK.EXE-1EFEC479.pf C:\Windows\Prefetch\DLLHOST.EXE-40DD444D.pf C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf C:\Windows\Prefetch\DLLHOST.EXE-A8DE6D5B.pf C:\Windows\Prefetch\FIREFOX.EXE-18ACFCFF.pf C:\Windows\Prefetch\FLASHPLAYERPLUGIN_14_0_0_145.-1B1DB0CB.pf C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf C:\Windows\Prefetch\IPMGUI.EXE-F9CAB886.pf C:\Windows\Prefetch\KHALMNPR.EXE-EDA7D0AE.pf C:\Windows\Prefetch\LDCONFIG.EXE-FBD6EA52.pf C:\Windows\Prefetch\LOGITECHUPDATE.EXE-85D5DCD6.pf C:\Windows\Prefetch\LULNCHR.EXE-37645C64.pf C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf C:\Windows\Prefetch\NVBACKEND.EXE-00368064.pf C:\Windows\Prefetch\NVSPCAPS64.EXE-8DEE0DBD.pf C:\Windows\Prefetch\NVSTREAMSVC.EXE-5E19636C.pf C:\Windows\Prefetch\NVTRAY.EXE-DB83881B.pf C:\Windows\Prefetch\OAWRAPPER.EXE-52C7DF4C.pf C:\Windows\Prefetch\PfSvPerfStats.bin C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-F1B02F03.pf C:\Windows\Prefetch\PRESENTATIONFONTCACHE.EXE-73BE9E78.pf C:\Windows\Prefetch\RAVCPL64.EXE-D6B4B613.pf C:\Windows\Prefetch\READER_SL.EXE-B1C62096.pf C:\Windows\Prefetch\ReadyBoot C:\Windows\Prefetch\RICONMAN.EXE-9FED550E.pf C:\Windows\Prefetch\RUNDLL32.EXE-61C085F4.pf C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf C:\Windows\Prefetch\SFTGC.EXE-3865E3D8.pf C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf C:\Windows\Prefetch\SVCHOST.EXE-C871F054.pf C:\Windows\Prefetch\UNS.EXE-E6E49771.pf C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf C:\Windows\Prefetch\ReadyBoot\Trace1.fx Java Cache empty Fin du rapport.
  5. bonjour voici le rapport ZHPFix merci Rapport de ZHPFix 2014.7.9.4 par Nicolas Coolman, Update du 09/07/2014 Fichier d'export Registre : Run by Master $partan at 15/07/2014 09:41:26 High Elevated Privileges : OK Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Corbeille vidée (00mn 04s) Dossier Prefetcher vidé Réparation des raccourcis navigateur ========== Logiciels ========== ABSENT Uninstall Process: c:\program files (x86)\bettermarkit\uninstall.exe ========== Processus mémoire ========== SUPPRIMÉ: Memory Process: C:\Windows\KMSEmulator.exe ========== Clés du Registre ========== SUPPRIMÉ Logiciel Key: [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\4a8f21d9-3757-44f6-ba89-772b679b5a92] SUPPRIMÉ: Service: BetterMarkIt SUPPRIMÉ:* HKCR\CLSID\{22222222-2222-2222-2222-220422902274} SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AF2CF8FE20EBB4443855807CA5D6E7A3 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\BA086F2D38A8E1A47912955A68B3AD24 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\64A6E60055D801F4BB8AC269354B72B8 SUPPRIMÉ: HKLM\Software\Wow6432Node\Phyxion.net\OpenCandy SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38D5CDD0A851B3940A43CC50ABBA251C SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC SUPPRIMÉ CLSID MPSK: {f7d1c4a7-c110-11e0-b40d-74f06db00c58} SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2 Branche de Base de Registres IFEO non infectée ! ========== Valeurs du Registre ========== SUPPRIMÉ RunValue: NCInstallQueue Aucune Valeur Standard Profile: FirewallRaz : Aucune Valeur Domain Profile: FirewallRaz : SUPPRIMÉ: FirewallRaz (Private) : TCP Query User{9E34C37B-DF05-4D30-AF2C-399157C36635}C:\windows\kmsemulator.exe SUPPRIMÉ: FirewallRaz (Private) : UDP Query User{102BABEC-9739-4416-A3F6-196FBF1B42B7}C:\windows\kmsemulator.exe SUPPRIMÉ: FirewallRaz (Public) : {82060C47-907E-472C-ADE7-4B4F0A8E1EC1} SUPPRIMÉ: FirewallRaz (Public) : {AF9BF685-4C58-49A1-954C-3AF6A835C175} ProxyFix : Configuration proxy supprimée avec succès SUPPRIMÉ ProxyServer Value SUPPRIMÉ ProxyEnable Value SUPPRIMÉ EnableHttp1_1 Value SUPPRIMÉ ProxyHttp1.1 Value SUPPRIMÉ ProxyOverride Value ========== Eléments de donnée du Registre ========== SUPPRIMÉ: R1 Search Page = http=127.0.0.1:13828 ========== Dossiers ========== Aucun dossiers CLSID Local utilisateur vide ========== Fichiers ========== SUPPRIMÉ: C:\Windows\Installer\764b3.msi SUPPRIMÉ: C:\Windows\Installer\ad985.msi SUPPRIMÉ: c:\program files (x86)\spybot - search & destroy\sdwinsec.exe SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\quarantine.exe SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\nw2388_24144\node_modules\gameo_utils\build\release\gameo_utils.dll SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\nw2388_24144\node_modules\goldengate\build\release\goldengate.dll SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\nw2388_24144\plugins\npswf32_13_0_0_168.dll SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\nw6092_23216\node_modules\gameo_utils\build\release\gameo_utils.dll SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\nw6092_23216\node_modules\goldengate\build\release\goldengate.dll SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\nw2388_24144\node_modules\windows-shortcuts\lib\shortcut\shortcut.exe SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\nw6092_23216\plugins\npswf32_13_0_0_168.dll SUPPRIMÉ: c:\users\master $partan\appdata\local\temp\nw6092_23216\node_modules\windows-shortcuts\lib\shortcut\shortcut.exe SUPPRIMÉS Temporaires Windows (1384) (22 111 055 octets) SUPPRIMÉS Flash Cookies (0) (0 octets) ========== Fichier HOSTS ========== Fichier Hosts verrouillé ou absent ! ========== Tache planifiée ========== SUPPRIMÉ: bettermarkit_wd SUPPRIMÉ: bettermarkit_wd SUPPRIMÉ: {18CF6B03-3827-4CC0-BB8B-E4027892ACFE} SUPPRIMÉ: {3225E727-2BF5-4823-B020-B9F8B4ECCC16} SUPPRIMÉ: {68955ECD-C74B-4DD0-8C65-05FAC3BD80A2} SUPPRIMÉ: {C1F1E376-A74B-4F25-BC2D-74B1DA67306C} ========== Restauration Système ========== Point de restauration du système créé avec succès ========== Autre ========== NON TRAITÉ Spybot - Search & Destroy v1.6.2 ========== Récapitulatif ========== 1 : Processus mémoire 34 : Clés du Registre 13 : Valeurs du Registre 1 : Eléments de donnée du Registre 1 : Dossiers 14 : Fichiers 1 : Logiciels 1 : Fichier HOSTS 6 : Tache planifiée 1 : Restauration Système 1 : Autre End of clean in 00mn 52s ========== Chemin de fichier rapport ========== C:\Users\Master $partan\AppData\Roaming\ZHP\ZHPFix[R1].txt - 15/07/2014 09:41:31 [7717]
  6. et voila le rapport ZHPDiag merci ~ Rapport de ZHPDiag v2014.7.13.104 - Nicolas Coolman (13/07/2014) ~ Lancé par M (15/07/2014 01:08:20) ~ Adresse du Site Web http://nicolascoolman.fr ~ Adresse du Forum http://forum.nicolascoolman.fr ~ Traduit par Nicolas Coolman ~ Etat de la version : Version à jour. ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): ---\\ Navigateurs Internet MSIE: Internet Explorer v11.0.9600.17207 MFIE: Mozilla Firefox 30.0 (Defaut) GCIE: Google Chrome v35.0.1916.153 ---\\ Informations sur les produits Windows ~ Langage: Français Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ---\\ Logiciels de protection du système Avira Free Antivirus v14.0.5.464 Malwarebytes Anti-Malware version 2.0.2.1012 Secunia PSI Spybot - Search & Destroy v1.6.2 Windows Defender W7 (Activate) ---\\ Logiciels d'optimisation du système CCleaner v4.10 ---\\ Logiciels de partage PeerToPeer Pando Media Booster v2.6.0.7 ---\\ Surveillance de Logiciels Adobe Flash Player 14 Plugin Adobe Reader X Java 7 Update 55 ---\\ Informations sur le système ~ Processor: Intel64 Family 6 Model 30 Stepping 5, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 8116 MB (76% free) System Restore: Activé (Enable) System drive C: has 6 GB (3%) free of 149 GB ---\\ Mode de connexion au système ~ Computer Name: M-PC ~ User Name: M ~ All Users Names: M, HomeGroupUser$, ASPNET, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\M\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\M\AppData\Roaming\ ~ %Desktop% : C:\Users\M\Desktop\ ~ %Favorites% : C:\Users\M\Favorites\ ~ %LocalAppData% : C:\Users\Ma\AppData\Local\ ~ %StartMenu% : C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 6 Go of 149 Go) D: Hard drive, Flash drive, Thumb drive (Free 51 Go of 426 Go) E: CD-ROM drive (Not Inserted) F: Hard drive, Flash drive, Thumb drive (Free 90 Go of 298 Go) G: Hard drive, Flash drive, Thumb drive (Free 48 Go of 298 Go) H: CD-ROM drive (Not Inserted) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 50 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.2EE102DF0EDD8A1EDD3D1E9B99A91BEC] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.18/06/2014 - 23:58:27.) -- C:\Windows\System32\wininet.dll [2266112] [MD5.88AB9B72B4BF3963A0DE0820B4B0B06C] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.04/03/2014 - 10:43:50.) -- C:\Windows\System32\Winlogon.exe [455168] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.30/05/2014 - 07:45:52.) -- C:\Windows\system32\Drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.24/01/2014 - 03:37:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1684928] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/408 ~ Mes musiques (My Musics) : 1/7 ~ Mes Favoris (My Favorites) : 1/22 ~ Mes Documents (My Documents) : 4/891 ~ Mon Bureau (My Desktop) : 1/22066 ~ Menu demarrer (Programs) : 1/61 ~ Hidden Files: Scanned in 00mn 13s ---\\ Processus lancés [MD5.868E3486E7EC522330344152A5535783] - (.ASUS - SmartLogon Application.) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305720] [PID.4100] [MD5.5EA707336336DDFADE5FD3726CEA1523] - (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840] [PID.4236] [MD5.37DEB76A2CF005841C4E45DE2B94D84F] - (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe [3058304] [PID.4664] [MD5.57B4D34232852BFE4453BE571DF90D21] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720] [PID.4820] [MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480] [PID.4988] [MD5.07A72133045173EBD14F838FE218A326] - (.Secunia - Secunia PSI Tray.) -- C:\Program Files (x86)\Secunia\PSI\psi_tray.exe [291896] [PID.4200] [MD5.A092258F26296C791D982E83814685BD] - (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [6806144] [PID.5148] [MD5.D98BC64645C2DAEDC1E79B4CCCCBBC8E] - (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624] [PID.5160] [MD5.5AEBF6FA9805C9101220AA4FB4FA17E7] - (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016] [PID.5172] [MD5.1DFDAAE21154299858F10DF216D6D865] - (.Pas de propriétaire - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1597440] [PID.5192] [MD5.1E9B225DE829A6F666A0BA9B8A7984BF] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [750160] [PID.5260] [MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336] [PID.5292] [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (...) -- ysWOW64\RunDll32.exe [0] [PID.4936] [MD5.BEE83619A26F90A6C8273F9CA9680397] - (.asus - ControlDeck.) -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe [1080448] [PID.6632] [MD5.67CE28A336E8E0B4F24FD72815C2F3B7] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8076288] [PID.4832] ~ Processes Running: Scanned in 00mn 00s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [user Data\Default] None G2 - GCE: Preference [user Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé) G2 - GCE: Preference [user Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Docs v.0.7 (Activé) G2 - GCE: Preference [user Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé) G2 - GCE: Preference [user Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call v.7.2.15747.10003, (Désactivé) G2 - GCE: Preference [user Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [mfffpogegjflfpflabcdkioaeobkgjik] GaiaAuthExtension v.0.0.1, (Activé) G2 - GCE: Preference [user Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Google+ Hangouts v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.1 (Activé) G2 - GCE: Preference [user Data\Default] [pafkbggdmjlpgkdkcbjmhmfcdpncadgh] Google Now v.1.2.0.1 (Activé) ---\\ Liste des dossiers d'extension Google Chrome G2 - EXT: C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [Google Docs] G2 - EXT: C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [skype Click to Call] G2 - EXT: C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [Google Wallet] ~ Google Lines Browser: 17 Scanned in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.10.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.30214.0.) -- C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\Program Files\Microsoft Office\Office14\NPAUTHZ.dll P2 - FPN: [HKCU] [pandonetworks.com/PandoWebPlugin] - (.Pando Networks - Pando Web Plugin.) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll ~ Firefox Browser: 6 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17041 (winblue_gdr.140305-1710)) -- C:\Windows\SysWOW64\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0 ~ IE Browser: 19 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:13828 =>Hijacker.Proxy R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\System32\Userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Search Helper [64Bits] - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corporation - Search Helper for Internet Explorer.) -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.dll O2 - BHO: Java Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.dll O2 - BHO: Java Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll ~ BHO: 10 Scanned in 00mn 00s ---\\ Applications lancées au démarrage du système (O4) O4 - HKLM\..\Run: [ASUS WebStorage] . (...) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe O4 - HKLM\..\Run: [synTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\Run: [intelTBRunOnce] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O4 - HKLM\..\Run: [THXCfg64] . (.Creative Technology Ltd. - Pas de description.) -- C:\Windows\system32\THXCfg64.dll O4 - HKLM\..\Run: [EvtMgr6] . (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe O4 - HKLM\..\Run: [bCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation O4 - HKLM\..\Run: [Windows Mobile-based device management] . (.Microsoft Corporation - Gestionnaire pour appareils Windows Mobile.) -- C:\Windows\WindowsMobile\wmdcBase.exe O4 - HKLM\..\Run: [shadowPlay] . (.NVIDIA Corporation - NVIDIA Capture Server Proxy.) -- C:\Windows\system32\nvspcap64.dll O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe O4 - HKLM\..\RunOnce: [NCInstallQueue] Clé orpheline O4 - HKCU\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe O4 - HKLM\..\Wow6432Node\Run: [updateLBPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe O4 - HKLM\..\Wow6432Node\Run: [updateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe O4 - HKLM\..\Wow6432Node\Run: [THX TruStudio NB Settings] . (.Creative Technology Ltd - THXAudioNB.) -- C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe O4 - HKLM\..\Wow6432Node\Run: [updReg] . (.Creative Technology Ltd. - Creative UpdReg.) -- C:\Windows\UpdReg.exe O4 - HKLM\..\Wow6432Node\Run: [ASUS VIBE] . (.ecm - WindowsApplication2.) -- C:\Program Files (x86)\ASUS\ASUS VIBE\ASUS VIBE.exe O4 - HKLM\..\Wow6432Node\Run: [Gaming Mouse Hid] . (.Pas de propriétaire - hid MFC Application.) -- C:\Program Files (x86)\Gaming Mouse\hid.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O4 - HKLM\..\Wow6432Node\Run: [ATKOSD2] . (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe O4 - HKLM\..\Wow6432Node\Run: [Wireless Console 3] . (.Pas de propriétaire - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe O4 - HKLM\..\Wow6432Node\Run: [sunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1876490198-3120024593-1354422944-1000\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe ~ Application: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: Se&nd to OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} -- C:\Program Files (x86)\MICROS~2\Office14\ONBttnIE.dll (.not file.) O9 - Extra button: OneNote Lin&ked Notes [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} -- C:\Program Files (x86)\MICROS~2\Office14\ONBTTN~1.dll (.not file.) ~ IE Extra Buttons: Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation O10 - WLSP:\000000000010\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll ~ Winsock: 10 Scanned in 00mn 00s ---\\ Site dans la Zone de confiance d'Internet Explorer (O15) O15 - Trusted Zone: [HKCU\...\Domains] *.clonewarsadventures.com O15 - Trusted Zone: [HKCU\...\Domains] *.freerealms.com O15 - Trusted Zone: [HKCU\...\Domains] *.soe.com O15 - Trusted Zone: [HKCU\...\Domains] *.sony.com ~ IE Zone Confiance: Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{621FA7A6-CFF8-4142-9520-20FE796B90B8}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS1\Services\Tcpip\..\{621FA7A6-CFF8-4142-9520-20FE796B90B8}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS2\Services\Tcpip\..\{621FA7A6-CFF8-4142-9520-20FE796B90B8}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: LBTWlgn . (.Logitech, Inc. - Logitech Bluetooth Service.) -- c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc. - ASUS FastBoot.) - C:\Windows\system32\FBAgent.exe O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service: bettermarkit (BetterMarkIt) . (...) - C:\Program Files (x86)\bettermarkit\BetterMarkIt152.exe (.not file.) =>PUP.BestToolbars O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) . (.Broadcom Corporation. - Bluetooth Support Server.) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe O23 - Service: LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc. - LMIGuardianSvc.) - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe O23 - Service: Intel® Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: Mobile Broadband HL Service (Mobile Broadband HL Service) . (...) - C:\ProgramData\MobileBrServ\mbbservice.exe O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.8.) - C:\Windows\system32\nvvsvc.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\SysWOW64\PnkBstrA.exe O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe O23 - Service: Secunia PSI Agent (Secunia PSI Agent) . (.Secunia - Secunia PSI Agent.) - C:\Program Files (x86)\Secunia\PSI\PSIA.exe O23 - Service: Secunia Update Agent (Secunia Update Agent) . (.Secunia - Secunia Update Agent.) - C:\Program Files (x86)\Secunia\PSI\sua.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: Intel® Turbo Boost Technology Monitor (TurboBoost) . (.Intel® Corporation - Turbo Boost Monitor Service.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe O23 - Service: Intel® Management & Security Application User Notificatio (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe ~ Services: 26 Scanned in 00mn 08s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) [MD5.3ACABCA6A8DB71B7F19C8A7523AE1846] [APT] [ACMON] (.ASUS.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [691328] [MD5.A6B6AB9502B63F43A9A56AE6AFB22078] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [262320] [MD5.F4DCD4912B185C3AAEB92A7040832AD1] [APT] [ASUS Live Update] (...) -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [51768] [MD5.DF0677FBF770F8BD6C40027D49FA9911] [APT] [ASUS P4G] (.ATK.) -- C:\Program Files\P4G\BatteryLife.exe [339072] [MD5.868E3486E7EC522330344152A5535783] [APT] [ASUS SmartLogon Console Sensor] (.ASUS.) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305720] [MD5.BEE83619A26F90A6C8273F9CA9680397] [APT] [ASUSControlDeck] (.asus.) -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe [1080448] [MD5.00000000000000000000000000000000] [APT] [bettermarkit_wd] (...) -- C:\Program Files (x86)\bettermarkit\BetterMarkIt152_wd.exe (.not file.) [0] =>PUP.BestToolbars [MD5.5B1AA494C27CF0BC3B03E8666ACB225E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [4455704] [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [135664] [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [135664] [MD5.3E7D0AEAD7CD6BB5DA5B70D901FEE88C] [APT] [{023964D0-266F-4417-83D8-E51E38EA7F9F}] (.Broadcom Corporation..) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [1395416] [MD5.00000000000000000000000000000000] [APT] [{18CF6B03-3827-4CC0-BB8B-E4027892ACFE}] (...) -- D:\JeuX\Bejeweled 2 Deluxe\Bejeweled 2 Deluxe 1.0 (Crack Only).exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{3225E727-2BF5-4823-B020-B9F8B4ECCC16}] (...) -- I:\WD\setup.exe (.not file.) [0] [MD5.DA5A50429534C438D7AC17606DE52243] [APT] [{373CCD86-ABB6-4F9B-A1C8-AF90628458C6}] (.Łukasz Kurdubelski.) -- C:\Users\Master $partan\Desktop\Nouveau dossier (4)\carteinteractiveoblivion3.52\Mapa v 3.52.exe [10213888] [MD5.DA5A50429534C438D7AC17606DE52243] [APT] [{390570AD-F74B-4E0E-9133-13719AA51EDA}] (.Łukasz Kurdubelski.) -- C:\Users\Master $partan\Desktop\Nouveau dossier (4)\carteinteractiveoblivion3.52\Mapa v 3.52.exe [10213888] [MD5.63B00911EB0C2EE184C22EB583A40EF1] [APT] [{4480F8D2-1C43-40C8-BBFC-ACC58408658F}] (.TRACKZAPPER.COM.) -- C:\Program Files (x86)\Connection Booster\ConnectionBooster.exe [1372160] [MD5.00000000000000000000000000000000] [APT] [{462F8E9A-31BC-49A6-82D6-796168C4634A}] (...) -- C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe (.not file.) [0] [MD5.B1E01D636350983E94171E229C759468] [APT] [{49BD291A-79F7-4E7E-BC96-C2BC3FABE54B}] (.Mozilla Corporation.) -- c:\program files (x86)\mozilla firefox\firefox.exe [275568] [MD5.D915D6CF2585BA639173EADAAFDB11E2] [APT] [{666DE0C9-7C6A-4C42-80DE-C4FB04AEEE19}] (...) -- D:\JeuX\Heroes of Might and Magic V - Tribes of the East\bin\H5_Game.exe [12939216] [MD5.00000000000000000000000000000000] [APT] [{68955ECD-C74B-4DD0-8C65-05FAC3BD80A2}] (...) -- C:\Users\Master $partan\Downloads\TwonkyMediaServerWHS.msi" (.not file.) [0] [MD5.DA5A50429534C438D7AC17606DE52243] [APT] [{6D267CF1-04C2-4D27-B859-7CFEEAD80309}] (.Łukasz Kurdubelski.) -- C:\Users\Master $partan\Desktop\Nouveau dossier (4)\carteinteractiveoblivion3.52\Mapa v 3.52.exe [10213888] [MD5.512E818760DF8DC6018925069D640890] [APT] [{6F52D707-3F67-47ED-BDA8-1347BFA92B5C}] (...) -- C:\Program Files (x86)\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\setup.exe [316728] [MD5.3E7D0AEAD7CD6BB5DA5B70D901FEE88C] [APT] [{7EB882E7-4A70-4D6E-A713-FA54E4FFFBD1}] (.Broadcom Corporation..) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [1395416] [MD5.D915D6CF2585BA639173EADAAFDB11E2] [APT] [{87117121-C7EB-4749-AD5E-90BF19A14511}] (...) -- D:\JeuX\Heroes of Might and Magic V - Tribes of the East\bin\H5_Game.exe [12939216] [MD5.D915D6CF2585BA639173EADAAFDB11E2] [APT] [{8C21D095-7FE4-4DEC-B62A-492527D5384A}] (...) -- D:\JeuX\Heroes of Might and Magic V - Tribes of the East\bin\H5_Game.exe [12939216] [MD5.DA5A50429534C438D7AC17606DE52243] [APT] [{B3B61E42-6DD8-440B-94F8-2F53D858F563}] (.Łukasz Kurdubelski.) -- C:\Users\Master $partan\Desktop\Nouveau dossier (4)\carteinteractiveoblivion3.52\Mapa v 3.52.exe [10213888] [MD5.00000000000000000000000000000000] [APT] [{BFA7450B-CC53-4403-B736-4AB66084D04F}] (...) -- C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C1F1E376-A74B-4F25-BC2D-74B1DA67306C}] (...) -- C:\Users\Master $partan\Downloads\TwonkyMediaServerWHS.msi" (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C6FAB29D-B6F7-43FF-B306-6C658F2979B4}] (...) -- C:\Program Files (x86)\NCSoft\Launcher\NCLauncher.exe (.not file.) [0] [MD5.DA5A50429534C438D7AC17606DE52243] [APT] [{CB9EE96E-7EE1-400F-A29B-807C4A6652B9}] (.Łukasz Kurdubelski.) -- C:\Users\Master $partan\Desktop\Nouveau dossier (4)\carteinteractiveoblivion3.52\Mapa v 3.52.exe [10213888] [MD5.C6B3E2702322614DC9BF37E8077978BE] [APT] [{CFEA0614-648E-4E91-9DA1-AA4D03466E1C}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [21446272] [MD5.DA5A50429534C438D7AC17606DE52243] [APT] [{F329DB15-3D8C-4B9B-B828-5F2A578FE02D}] (.Łukasz Kurdubelski.) -- C:\Users\Master $partan\Desktop\Nouveau dossier (4)\carteinteractiveoblivion3.52\Mapa v 3.52.exe [10213888] [MD5.D8D4C15EE51135672F5FB86E1C761FB6] [APT] [{FCF2F72D-23DA-41FE-8384-75BCF15B591F}] (...) -- C:\Riot Games\League of Legends\LoLSkins.exe [1001984] [MD5.3E7D0AEAD7CD6BB5DA5B70D901FEE88C] [APT] [{FF709A5B-CB66-4505-A59E-635294C18FB0}] (.Broadcom Corporation..) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [1395416] [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [1002] O39 - APT: bettermarkit_wd - (...) -- C:\Windows\Tasks\bettermarkit_wd.job [412] =>PUP.BestToolbars O39 - APT: bettermarkit_wd - (...) -- C:\Windows\System32\Tasks\bettermarkit_wd [412] =>PUP.BestToolbars O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1078] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1078] O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1082] O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1082] ~ Scheduled Task: 41 Scanned in 00mn 17s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 10 Scanned in 00mn 01s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (avipbb) . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys O41 - Driver: (avkmgr) . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) - C:\Windows\System32\DRIVERS\avkmgr.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Drivers: 69 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {7BF67A61-BE7C-4806-B93C-97F299D6A6FE} O42 - Logiciel: ASUS AP Bank - (.ASUSTEK.) [HKLM][64Bits] -- ASUS AP Bank_is1 O42 - Logiciel: ASUS Data Security Manager - (.ASUS.) [HKLM][64Bits] -- {FA2092C5-7979-412D-A962-6485274AE1EE} O42 - Logiciel: ASUS FancyStart - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {2B81872B-A054-48DA-BE3B-FA5C164C303A} O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {E657B243-9AD4-4ECC-BE81-4CCF8D667FD0} O42 - Logiciel: ASUS MultiFrame - (.ASUS.) [HKLM][64Bits] -- {9D48531D-2135-49FC-BC29-ACCDA5396A76} O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {91EFE3A1-585E-4F66-B5F6-F118F56C4C47} O42 - Logiciel: ASUS SmartLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5} O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} O42 - Logiciel: ASUS VIBE - (.Ecareme, Inc..) [HKLM][64Bits] -- ASUS VIBE O42 - Logiciel: ASUS Virtual Camera - (.asus.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {77D28FF5-242F-488A-8215-937D6A4D69E0} O42 - Logiciel: Adobe Flash Player 14 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 14 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader X (10.1.10) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc O42 - Logiciel: Arc - (.Perfect World Entertainment.) [HKLM][64Bits] -- {CED8E25B-122A-4E80-B612-7F99B93284B3} O42 - Logiciel: Asus_G73_Screensaver - (.ASUS.) [HKLM][64Bits] -- Asus_G73_Screensaver O42 - Logiciel: Avira Free Antivirus v14.0.5.464 - (.Avira.) [HKLM][64Bits] -- Avira AntiVir Desktop O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net O42 - Logiciel: Battlefield 3™ - (.Electronic Arts.) [HKLM][64Bits] -- {76285C16-411A-488A-BCE3-C83CB933D8CF} O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner O42 - Logiciel: Call of Duty® 4 - Modern Warfare 1.4 Patch - (...) [HKLM][64Bits] -- InstallShield_{3BD633E0-4BF8-4499-9149-88F0767D449C} O42 - Logiciel: Call of Duty® 4 - Modern Warfare 1.6 Patch - (...) [HKLM][64Bits] -- InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE} O42 - Logiciel: Call of Duty® 4 - Modern Warfare 1.7 Patch - (...) [HKLM][64Bits] -- InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498} O42 - Logiciel: CloneSpy 2.63 - (.CloneSpy.) [HKLM][64Bits] -- CloneSpy O42 - Logiciel: Connection Booster 4.0.0.0 - (.TRACKZAPPER.COM.) [HKLM][64Bits] -- Connection Booster_is1 O42 - Logiciel: ControlDeck - (.ASUS.) [HKLM][64Bits] -- {5B65EF64-1DFA-414A-8C94-7BB726158E21} O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.DT Soft Ltd O42 - Logiciel: Driver Sweeper version 2.6.0 - (.Phyxion.net.) [HKLM][64Bits] -- {5A67D2EA-FB70-4033-A6F3-606AD85B2015}_is1 O42 - Logiciel: EasyBits GO - (.EasyBits Media.) [HKCU][64Bits] -- Game Organizer O42 - Logiciel: ExpressGate Cloud - (.Asus.) [HKLM][64Bits] -- InstallShield_{499DED08-6FA8-4749-8E94-8526CC9D1CA8} O42 - Logiciel: ExpressGate Cloud - (.Asus.) [HKLM][64Bits] -- {499DED08-6FA8-4749-8E94-8526CC9D1CA8} O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B-1317777F0755} O42 - Logiciel: FormatFactory 2.70 - (.Free Time.) [HKLM][64Bits] -- FormatFactory O42 - Logiciel: Fresco Logic USB3.0 Host Controller - (.Fresco Logic Inc..) [HKLM][64Bits] -- {F7142CCD-6612-4F94-BF76-D256FE6EC84C} O42 - Logiciel: GBoost - (.GZero.) [HKLM][64Bits] -- {235B7B98-EAC3-4953-AE2C-EABCE1CD65C9}_is1 O42 - Logiciel: Game Park Console - (.Oberon Media, Inc..) [HKLM][64Bits] -- {E71E60C1-533E-45A5-8D80-E475E88D2B17}_is1 O42 - Logiciel: Gameo - (.Fried Cookie Software.) [HKCU][64Bits] -- Gameo O42 - Logiciel: Gaming Mouse - (.ASUS.) [HKLM][64Bits] -- {C52DE33F-117A-4EC8-8A32-084E828D7B1E} O42 - Logiciel: Garry's Mod - (.Facepunch Studios.) [HKLM][64Bits] -- Steam App 4000 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {75939021-3B68-419D-8DC1-E9823BFF9658} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone O42 - Logiciel: Helium - (.ClockworkMod.) [HKLM][64Bits] -- {9A781940-AC41-4D5E-8E1E-76A04B916FB9} O42 - Logiciel: Hotel Dash Suite Success - (.Oberon Media Inc..) [HKLM][64Bits] -- Hotel Dash Suite Success O42 - Logiciel: Intel® Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Intel® Turbo Boost Technology Monitor - (.Intel.) [HKLM][64Bits] -- {39F4C6F9-618A-4E5B-8FB2-6BD661174E32} O42 - Logiciel: Internet TV pour Windows Media Center - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D318C86-AF4C-409F-A6AC-7183FF4CF424} =>.Microsoft Corporation O42 - Logiciel: Java 7 Update 55 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: KaraWin - (...) [HKLM][64Bits] -- {9C6BE23B-81BC-4407-A3DB-B4B2E3A30642} O42 - Logiciel: LOLReplay - (.www.leaguereplays.com.) [HKLM][64Bits] -- LOLReplay O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 3.0.1 O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {3E75652D-99B1-417E-B163-BEF33CAD3F16} O42 - Logiciel: Lineage® II: Freya (High Five) - (.NCsoft.) [HKLM][64Bits] -- {21040472-F8DF-48A9-A093-2986C1495670} O42 - Logiciel: LoL Jungler Timer 2 - (.UNKNOWN.) [HKLM][64Bits] -- com.spiderneo.loljunglertimer O42 - Logiciel: LoL Jungler Timer 2 - (.UNKNOWN.) [HKLM][64Bits] -- {0DFDBA3E-2608-567A-8296-26F50C7AFBFD} O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- LogMeIn Hamachi O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- {AAA70FA9-D9FF-49FB-A98C-5F21ED3692E2} O42 - Logiciel: Logitech SetPoint 6.32 - (.Logitech.) [HKLM][64Bits] -- sp6 O42 - Logiciel: MD-@ HSUPA - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- MD-@ HSUPA O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM][64Bits] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44} O42 - Logiciel: Malwarebytes Anti-Malware version 2.0.2.1012 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFF8B8E8-E086-4DE0-935F-FE22CAB54F80} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Mobile Broadband HL Service - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Mobile Broadband HL Service O42 - Logiciel: Mozilla Firefox 30.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 30.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: MyFreeCodec - (...) [HKCU][64Bits] -- MyFreeCodec O42 - Logiciel: NB Probe - (...) [HKLM][64Bits] -- {6324A1EF-CEF4-43E3-8BCD-9EF3F67317FD} O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Display Control Panel O42 - Logiciel: NVIDIA GeForce Experience 2.0.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.0725 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {7B5AA67E-FEA0-40BB-BAB5-CA56645A589C} O42 - Logiciel: NVIDIA Pilote 3D Vision 331.82 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.26.4 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver O42 - Logiciel: NVIDIA Pilote graphique 331.82 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo O42 - Logiciel: Net4Switch - (.ASUS.) [HKLM][64Bits] -- {9D6D7811-43B3-463C-BC79-5D1755269989} O42 - Logiciel: Nexus Mod Manager - (.Black Tree Gaming.) [HKLM][64Bits] -- 6af12c54-643b-4752-87d0-8335503010de_is1 O42 - Logiciel: Oblivion - (.Bethesda Softworks.) [HKLM][64Bits] -- {35CB6715-41F8-4F99-8881-6FC75BF054B0} O42 - Logiciel: Oblivion mod manager 1.1.12 - (.Timeslip.) [HKLM][64Bits] -- Oblivion mod manager_is1 O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin O42 - Logiciel: Pando Media Booster - (.Pando Networks Inc..) [HKLM][64Bits] -- {980A182F-E0A2-4A40-94C1-AE0C1235902E} O42 - Logiciel: PlanetSide 2 - (.Sony Online Entertainment.) [HKLM][64Bits] -- Steam App 218230 O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Samsung Kies3 - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7} O42 - Logiciel: Samsung Kies3 - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {88547073-C566-4895-9005-EBE98EA3F7C7} O42 - Logiciel: Samsung Story Album Viewer - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F} O42 - Logiciel: Samsung Story Album Viewer - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {698BBAD8-B116-495D-B879-0F07A533E57F} O42 - Logiciel: Screen Recording Suite V2.4.2 - (.Apowersoft.) [HKLM][64Bits] -- {EB9F3F92-4857-4121-AA6F-1C424AC6C266}_is1 O42 - Logiciel: Secunia PSI (2.0.0.4003) - (.Secunia.) [HKLM][64Bits] -- Secunia PSI O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} O42 - Logiciel: Skype™ 6.16 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7} O42 - Logiciel: Spotify - (...) [HKLM][64Bits] -- Spotify O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1 O42 - Logiciel: StarCraft II - (.Blizzard Entertainment.) [HKLM][64Bits] -- StarCraft II O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey O42 - Logiciel: THX TruStudio - (.Creative Technology Limited.) [HKLM][64Bits] -- {B11AB9C8-18A6-41DC-98B4-4988CC030136} O42 - Logiciel: The Elder Scrolls V: Skyrim - (.Bethesda Game Studios.) [HKLM][64Bits] -- Steam App 72850 O42 - Logiciel: TwonkyMedia Server - (.PacketVideo Corporation.) [HKLM][64Bits] -- {05ED16EE-B7D0-411B-A6EC-5CB720190915} O42 - Logiciel: USB2.0 UVC 2M WebCam - (.Sonix.) [HKLM][64Bits] -- USB2.0 UVC 2M WebCam O42 - Logiciel: VLC media player 2.1.3 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WIDCOMM Bluetooth Software - (.Broadcom Corporation.) [HKLM][64Bits] -- {A1439D4F-FD46-47F2-A1D3-FEE097C29A09} O42 - Logiciel: War Thunder Launcher 1.0.1.361 - (.Gaijin Entertainment.) [HKLM][64Bits] -- {ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1 O42 - Logiciel: WhoCrashed 5.00 - (.Resplendence Software Projects Sp..) [HKLM][64Bits] -- WhoCrashed_is1 O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} O42 - Logiciel: WinRAR 4.00 (32 bits) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Windows Driver Package - Broadcom (BTHUSB) Bluetooth (02/25/2010 6.2.0.941 - (.Broadcom.) [HKLM][64Bits] -- 85CE3A3657FAE5FD305B143E90E6FC89BA53001C O42 - Logiciel: Windows Driver Package - Broadcom Bluetooth (01/19/2010 6.2.0.1417) - (.Broadcom.) [HKLM][64Bits] -- 7341A1B43E7FE58942EB1E820A17C18305DFBCE6 O42 - Logiciel: Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) - (.Broadcom.) [HKLM][64Bits] -- 2AA10AB519DC7432D599A0E860206A7DDCC27764 O42 - Logiciel: Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) - (.Broadcom.) [HKLM][64Bits] -- 6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1 O42 - Logiciel: Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) - (.Broadcom.) [HKLM][64Bits] -- 3BA80AB4C7E9F8497C115C844953A3D4BEB84D21 O42 - Logiciel: Windows Media Center Add-in for Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EDBEB2B-7C8D-42E6-8312-0F84394A3223} =>.Microsoft Corporation O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {20FDF948-C8ED-4543-A539-F7F4AEF5AFA2} O42 - Logiciel: Wondershare MobileGo for Android ( Version 2.0.1 ) - (.Wondershare.) [HKLM][64Bits] -- {1E04C795-7359-4E05-8A0E-5644F777AA08}_is1 O42 - Logiciel: World of Goo - (.Oberon Media Inc..) [HKLM][64Bits] -- World of Goo O42 - Logiciel: bettermarkit - (.bettermarkitnet Soft.) [HKLM][64Bits] -- 4a8f21d9-3757-44f6-ba89-772b679b5a92 =>PUP.BestToolbars O42 - Logiciel: eReg - (.Logitech, Inc..) [HKLM][64Bits] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} O42 - Logiciel: ebi.BookReader3J - (.eBOOK Initiative Japan Co., Ltd..) [HKLM][64Bits] -- {F3D2DEDC-4732-4188-8A3A-1A3FFBD4D6C8} O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {37D0157F-45C6-4DB2-9AE5-489DD98CE169} O42 - Logiciel: syncables desktop SE - (.syncables.) [HKLM][64Bits] -- {341697D8-9923-445E-B42A-529E5A99CB7A} ~ Logic: 95 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\3rd Eye Solutions] [HKCU\Software\ASUS] [HKCU\Software\ATK0100] [HKCU\Software\Adobe] [HKCU\Software\Aion] [HKCU\Software\AppDataLow\Software\JavaSoft] [HKCU\Software\AppDataLow\Software\MarkAny] [HKCU\Software\AppDataLow\Software\better_markit] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Apple Inc.] [HKCU\Software\Avira] [HKCU\Software\Blizzard Entertainment] [HKCU\Software\Bugsplat] [HKCU\Software\CanonBJ] [HKCU\Software\Chromium] [HKCU\Software\ClassesB] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Coinis] [HKCU\Software\Creative Tech] [HKCU\Software\Cryptic] [HKCU\Software\CyberLink] [HKCU\Software\DT Soft] [HKCU\Software\EBI] [HKCU\Software\ECAREME] [HKCU\Software\Electronic Arts] [HKCU\Software\FreeTime] [HKCU\Software\GNU] [HKCU\Software\Gabest] [HKCU\Software\Gaijin] [HKCU\Software\Gameforge4d] [HKCU\Software\GoldenGate] [HKCU\Software\Google] [HKCU\Software\Haali] [HKCU\Software\HugeRock] [HKCU\Software\IM Providers] [HKCU\Software\Intel] [HKCU\Software\JEDI-VCL] [HKCU\Software\JavaSoft] [HKCU\Software\KaraWin] [HKCU\Software\LOLReplay] [HKCU\Software\Leadertech] [HKCU\Software\Logitech] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\NCsoft] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\Netscape] [HKCU\Software\ODBC] [HKCU\Software\PWRD] [HKCU\Software\Pando Networks] [HKCU\Software\Perfect World Platform Client] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Razer] [HKCU\Software\Realtek] [HKCU\Software\Resplendence Sp] [HKCU\Software\Riot Games] [HKCU\Software\Safer Networking Limited] [HKCU\Software\Samsung] [HKCU\Software\SecuROM] [HKCU\Software\Secunia] [HKCU\Software\Skype] [HKCU\Software\Spotify] [HKCU\Software\Suunto] [HKCU\Software\Synaptics] [HKCU\Software\Sysinternals] [HKCU\Software\TeleCharger] [HKCU\Software\Trolltech] [HKCU\Software\TuneUp] [HKCU\Software\Valve] [HKCU\Software\Viber] [HKCU\Software\VideACE] [HKCU\Software\Widcomm] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Windows Live Writer] [HKCU\Software\Wow6432Node] [HKLM\Software\AGEIA Technologies] [HKLM\Software\ASUS] [HKLM\Software\ATI Technologies] [HKLM\Software\ATK0100] [HKLM\Software\Alienware] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\CoreSecurity] [HKLM\Software\Creative Tech] [HKLM\Software\ECAREME] [HKLM\Software\EvolutionLauncher] [HKLM\Software\GEAR Software] [HKLM\Software\Google] [HKLM\Software\HaaliMkx] [HKLM\Software\IM Providers] [HKLM\Software\InstalledOptions] [HKLM\Software\Intel] [HKLM\Software\Khronos] [HKLM\Software\LogMeIn, Inc.] [HKLM\Software\Logitech] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\ODBC] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SAMSUNG] [HKLM\Software\SONIX] [HKLM\Software\SRS Labs] [HKLM\Software\Sonic] [HKLM\Software\Synaptics] [HKLM\Software\TuneUp] [HKLM\Software\Waves Audio] [HKLM\Software\WidCommUpdate] [HKLM\Software\Widcomm] [HKLM\Software\Wow6432Node\AGEIA Technologies] [HKLM\Software\Wow6432Node\AGFNExEmu] [HKLM\Software\Wow6432Node\ASUS] [HKLM\Software\Wow6432Node\Activision] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\Apple Computer, Inc.] [HKLM\Software\Wow6432Node\Apple Inc.] [HKLM\Software\Wow6432Node\AsLdr] [HKLM\Software\Wow6432Node\AviSynth] [HKLM\Software\Wow6432Node\Avira] [HKLM\Software\Wow6432Node\Bethesda Softworks] [HKLM\Software\Wow6432Node\Blizzard Entertainment] [HKLM\Software\Wow6432Node\Caphyon] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\Creative Labs] [HKLM\Software\Wow6432Node\Creative Tech] [HKLM\Software\Wow6432Node\CyberLink] [HKLM\Software\Wow6432Node\DT Soft] [HKLM\Software\Wow6432Node\DivXNetworks] [HKLM\Software\Wow6432Node\EA Games] [HKLM\Software\Wow6432Node\EBI] [HKLM\Software\Wow6432Node\Electronic Arts] [HKLM\Software\Wow6432Node\Even Balance] [HKLM\Software\Wow6432Node\GNU] [HKLM\Software\Wow6432Node\GZero] [HKLM\Software\Wow6432Node\Gameforge4d] [HKLM\Software\Wow6432Node\Gameforge] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\HaaliMkx] [HKLM\Software\Wow6432Node\Huawei technologies] [HKLM\Software\Wow6432Node\Hudson] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaRa] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\Karasoft] [HKLM\Software\Wow6432Node\Khronos] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\NCsoft] [HKLM\Software\Wow6432Node\NVIDIA Corporation] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Oberon Media] [HKLM\Software\Wow6432Node\OpenAL] [HKLM\Software\Wow6432Node\Origin Games] [HKLM\Software\Wow6432Node\Pando Networks] [HKLM\Software\Wow6432Node\Perfect World Entertainment] [HKLM\Software\Wow6432Node\Phyxion.net] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\PopCap] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Riot Games] [HKLM\Software\Wow6432Node\Safer Networking Limited] [HKLM\Software\Wow6432Node\Samsung] [HKLM\Software\Wow6432Node\Secunia] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\Software] [HKLM\Software\Wow6432Node\TeamSpeak 3 Client] [HKLM\Software\Wow6432Node\TrendMicro] [HKLM\Software\Wow6432Node\TuneUp] [HKLM\Software\Wow6432Node\Turbine] [HKLM\Software\Wow6432Node\TwonkyMedia] [HKLM\Software\Wow6432Node\Valve] [HKLM\Software\Wow6432Node\VideACE] [HKLM\Software\Wow6432Node\VideoLAN] [HKLM\Software\Wow6432Node\Volatile] [HKLM\Software\Wow6432Node\WinRAR] [HKLM\Software\Wow6432Node\Windows] [HKLM\Software\Wow6432Node\Wondershare] [HKLM\Software\Wow6432Node\X-AVCSD] [HKLM\Software\Wow6432Node\id] [HKLM\Software\Wow6432Node\mozilla.org] [HKLM\Software\Wow6432Node\syncables] [HKLM\Software\Wow6432Node] ~ Key Software: 459 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 17/03/2011 - 07:53:47 - [] ----D C:\Program Files (x86)\7-Zip O43 - CFD: 04/06/2012 - 10:39:26 - [] ----D C:\Program Files (x86)\Adobe O43 - CFD: 19/12/2013 - 10:24:58 - [0] ----D C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 09/02/2012 - 14:53:36 - [] ----D C:\Program Files (x86)\Apowersoft O43 - CFD: 11/08/2013 - 10:18:28 - [] ----D C:\Program Files (x86)\Apple Software Update =>.Apple Inc O43 - CFD: 12/03/2012 - 15:49:31 - [] ----D C:\Program Files (x86)\ASUS O43 - CFD: 22/11/2012 - 22:47:16 - [] ----D C:\Program Files (x86)\Avira O43 - CFD: 13/07/2014 - 09:55:34 - [] ----D C:\Program Files (x86)\Battle.net O43 - CFD: 01/06/2014 - 18:09:30 - [] ----D C:\Program Files (x86)\Battlelog Web Plugins O43 - CFD: 03/09/2011 - 14:47:59 - [] ----D C:\Program Files (x86)\Bethesda Softworks O43 - CFD: 11/08/2013 - 10:17:41 - [] ----D C:\Program Files (x86)\Bonjour O43 - CFD: 08/10/2013 - 18:10:07 - [] ----D C:\Program Files (x86)\ClockworkMod O43 - CFD: 13/06/2012 - 11:08:07 - [] ----D C:\Program Files (x86)\CloneSpy O43 - CFD: 01/06/2014 - 18:07:40 - [] ----D C:\Program Files (x86)\Common Files O43 - CFD: 17/07/2011 - 18:34:13 - [] ----D C:\Program Files (x86)\Connection Booster O43 - CFD: 31/10/2010 - 10:16:57 - [] ----D C:\Program Files (x86)\Creative O43 - CFD: 31/10/2010 - 09:51:37 - [] ----D C:\Program Files (x86)\CyberLink O43 - CFD: 04/06/2012 - 10:42:23 - [] ----D C:\Program Files (x86)\DAEMON Tools Lite =>.DT Soft Ltd O43 - CFD: 31/10/2010 - 10:19:06 - [] ----D C:\Program Files (x86)\EBI O43 - CFD: 27/10/2011 - 19:33:13 - [] ----D C:\Program Files (x86)\FreeTime O43 - CFD: 15/12/2011 - 18:20:14 - [] ----D C:\Program Files (x86)\Gaming Mouse O43 - CFD: 13/06/2012 - 11:11:42 - [] ----D C:\Program Files (x86)\GBoost O43 - CFD: 20/06/2014 - 14:11:18 - [] ----D C:\Program Files (x86)\Google O43 - CFD: 18/11/2013 - 11:08:10 - [] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 31/10/2010 - 10:05:18 - [] ----D C:\Program Files (x86)\Intel O43 - CFD: 13/07/2014 - 21:59:15 - [] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 25/11/2013 - 09:46:38 - [] ----D C:\Program Files (x86)\iTunes O43 - CFD: 04/05/2014 - 14:32:40 - [] ----D C:\Program Files (x86)\Java O43 - CFD: 04/06/2012 - 19:08:07 - [] ----D C:\Program Files (x86)\Karasoft O43 - CFD: 26/06/2014 - 11:48:35 - [] ----D C:\Program Files (x86)\LogMeIn Hamachi O43 - CFD: 05/07/2014 - 14:11:33 - [] ----D C:\Program Files (x86)\LoL Jungler Timer 2 O43 - CFD: 18/01/2014 - 23:37:10 - [] ----D C:\Program Files (x86)\LOLReplay O43 - CFD: 14/07/2014 - 13:44:27 - [] ----D C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 09/10/2013 - 08:16:28 - [] ----D C:\Program Files (x86)\MarkAny O43 - CFD: 19/11/2012 - 10:37:46 - [] ----D C:\Program Files (x86)\MD-@ HSUPA O43 - CFD: 18/02/2013 - 14:20:58 - [] ----D C:\Program Files (x86)\Microsoft O43 - CFD: 10/04/2012 - 23:19:57 - [] ----D C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 17/09/2012 - 10:46:31 - [] ----D C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 10/04/2012 - 23:12:25 - [] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 28/03/2014 - 10:53:48 - [] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 08/01/2011 - 18:52:20 - [] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 10/04/2012 - 23:20:54 - [] ----D C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 10/04/2012 - 23:23:20 - [] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 13/07/2014 - 09:46:19 - [] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 13/07/2014 - 09:46:48 - [] ----D C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 10/04/2012 - 23:23:38 - [] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 31/10/2010 - 09:58:36 - [] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 20/05/2014 - 15:14:30 - [] ----D C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 01/06/2014 - 14:13:27 - [] ----D C:\Program Files (x86)\Origin O43 - CFD: 31/05/2014 - 11:54:35 - [] ----D C:\Program Files (x86)\Origin Games O43 - CFD: 16/04/2011 - 17:04:43 - [] ----D C:\Program Files (x86)\Pando Networks O43 - CFD: 31/01/2014 - 17:26:00 - [] ----D C:\Program Files (x86)\Phyxion.net O43 - CFD: 02/08/2012 - 17:03:43 - [0] ----D C:\Program Files (x86)\PopCap Games O43 - CFD: 15/12/2011 - 16:55:40 - [] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 07:32:38 - [] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 09/10/2013 - 16:28:24 - [] ----D C:\Program Files (x86)\Samsung O43 - CFD: 21/12/2011 - 14:18:28 - [] ----D C:\Program Files (x86)\Secunia O43 - CFD: 21/05/2014 - 13:56:34 - [] R---D C:\Program Files (x86)\Skype O43 - CFD: 14/11/2011 - 06:33:04 - [] ----D C:\Program Files (x86)\Spotify O43 - CFD: 04/09/2012 - 11:54:44 - [] ----D C:\Program Files (x86)\Spybot - Search & Destroy O43 - CFD: 13/07/2014 - 20:04:26 - [] ----D C:\Program Files (x86)\Steam O43 - CFD: 05/01/2012 - 18:09:08 - [] ----D C:\Program Files (x86)\Suunto Track Exporter O43 - CFD: 31/10/2010 - 09:55:37 - [] ----D C:\Program Files (x86)\syncables O43 - CFD: 12/02/2012 - 19:41:35 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 01/08/2012 - 09:03:20 - [] ----D C:\Program Files (x86)\Trend Micro O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 18/03/2011 - 17:34:59 - [] ----D C:\Program Files (x86)\VideoLAN O43 - CFD: 01/05/2012 - 16:11:29 - [] ----D C:\Program Files (x86)\Western Digital O43 - CFD: 11/08/2013 - 10:51:57 - [] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 12/08/2012 - 22:01:21 - [] ----D C:\Program Files (x86)\Windows Home Server O43 - CFD: 27/08/2013 - 09:13:05 - [] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 14/07/2011 - 16:45:45 - [] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 12/12/2013 - 09:54:10 - [] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - 07:32:38 - [] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 14/07/2011 - 16:45:44 - [] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 14/07/2011 - 16:45:45 - [] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 14/07/2011 - 16:45:45 - [] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 13/03/2011 - 05:03:25 - [] ----D C:\Program Files (x86)\WinRAR O43 - CFD: 19/11/2013 - 19:33:13 - [] ----D C:\Program Files (x86)\Wondershare O43 - CFD: 14/07/2014 - 13:47:14 - [] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman O43 - CFD: 21/12/2011 - 13:30:32 - [] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 05/07/2014 - 14:11:29 - [] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 25/11/2013 - 09:46:11 - [] ----D C:\Program Files (x86)\Common Files\Apple O43 - CFD: 07/06/2014 - 13:37:48 - [] ----D C:\Program Files (x86)\Common Files\Blizzard Entertainment O43 - CFD: 12/03/2012 - 15:44:00 - [] ----D C:\Program Files (x86)\Common Files\ControlDeck O43 - CFD: 31/10/2010 - 10:16:52 - [] ----D C:\Program Files (x86)\Common Files\Creative Labs Shared O43 - CFD: 01/06/2014 - 18:07:40 - [] --H-D C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 31/10/2010 - 10:16:02 - [] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 13/11/2013 - 15:31:29 - [] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 12/12/2011 - 18:37:44 - [] ----D C:\Program Files (x86)\Common Files\LogiShrd O43 - CFD: 04/06/2012 - 10:02:48 - [] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 31/10/2010 - 09:54:25 - [] ----D C:\Program Files (x86)\Common Files\Oberon Media O43 - CFD: 31/10/2010 - 10:05:25 - [] ----D C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 14/07/2009 - 05:20:08 - [] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 21/05/2014 - 13:56:34 - [] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - 05:20:08 - [] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 11/07/2014 - 13:31:53 - [] ----D C:\Program Files (x86)\Common Files\Steam O43 - CFD: 10/04/2012 - 23:10:13 - [] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 08/01/2011 - 18:50:01 - [] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 19/11/2013 - 19:33:17 - [] ----D C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 25/11/2013 - 09:46:39 - [] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 18/04/2013 - 14:20:15 - [] ----D C:\ProgramData\Adobe O43 - CFD: 11/08/2013 - 10:18:09 - [] ----D C:\ProgramData\Apple O43 - CFD: 11/08/2013 - 10:18:41 - [] ----D C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Application Data O43 - CFD: 12/02/2012 - 19:42:30 - [] ----D C:\ProgramData\ASUS O43 - CFD: 22/11/2012 - 22:47:16 - [] ----D C:\ProgramData\Avira O43 - CFD: 28/03/2011 - 00:37:57 - [] ----D C:\ProgramData\BanzaiInteractive O43 - CFD: 06/06/2014 - 16:37:19 - [] ----D C:\ProgramData\Battle.net O43 - CFD: 23/11/2012 - 03:12:23 - [] ----D C:\ProgramData\Birdstep Technology O43 - CFD: 07/06/2014 - 13:37:48 - [] ----D C:\ProgramData\Blizzard Entertainment O43 - CFD: 08/12/2011 - 11:46:27 - [] --H-D C:\ProgramData\CanonBJ O43 - CFD: 31/01/2014 - 17:28:24 - [] --H-D C:\ProgramData\Common Files O43 - CFD: 02/06/2011 - 19:10:39 - [] ----D C:\ProgramData\Creative Labs O43 - CFD: 31/10/2010 - 09:51:38 - [] ----D C:\ProgramData\CyberLink O43 - CFD: 14/06/2012 - 16:44:07 - [] ----D C:\ProgramData\DAEMON Tools Lite =>.DT Soft Ltd O43 - CFD: 08/05/2012 - 16:18:43 - [] ----D C:\ProgramData\DatacardService O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Documents O43 - CFD: 05/02/2012 - 19:03:38 - [] ----D C:\ProgramData\EA Core O43 - CFD: 01/06/2014 - 18:35:41 - [] ----D C:\ProgramData\EA Logs O43 - CFD: 15/07/2011 - 17:58:59 - [] ----D C:\ProgramData\Easybits GO O43 - CFD: 31/10/2010 - 10:19:09 - [0] ----D C:\ProgramData\EBI O43 - CFD: 01/06/2014 - 18:08:04 - [] ----D C:\ProgramData\Electronic Arts O43 - CFD: 04/06/2012 - 16:56:20 - [] ----D C:\ProgramData\eSobi O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Favorites O43 - CFD: 18/12/2011 - 18:38:42 - [0] ----D C:\ProgramData\GoBoingo O43 - CFD: 01/08/2012 - 16:17:05 - [] ----D C:\ProgramData\Google O43 - CFD: 15/12/2011 - 17:38:49 - [] ----D C:\ProgramData\Logishrd O43 - CFD: 20/06/2014 - 14:11:50 - [] ----D C:\ProgramData\LogMeIn O43 - CFD: 14/07/2014 - 13:44:25 - [] ----D C:\ProgramData\Malwarebytes O43 - CFD: 25/05/2013 - 18:06:28 - [0] ----D C:\ProgramData\Media Center Programs O43 - CFD: 13/07/2014 - 20:27:17 - [] -S--D C:\ProgramData\Microsoft O43 - CFD: 13/07/2014 - 09:18:00 - [] ----D C:\ProgramData\Microsoft Help O43 - CFD: 22/09/2012 - 15:06:08 - [] ----D C:\ProgramData\MobileBrServ O43 - CFD: 24/04/2012 - 22:46:58 - [] ----D C:\ProgramData\Mozilla O43 - CFD: 14/07/2014 - 19:47:55 - [] ----D C:\ProgramData\NVIDIA O43 - CFD: 20/05/2014 - 15:14:26 - [] ----D C:\ProgramData\NVIDIA Corporation O43 - CFD: 31/10/2010 - 09:55:09 - [] ----D C:\ProgramData\OberonGameConsole O43 - CFD: 04/05/2014 - 14:33:01 - [0] ----D C:\ProgramData\Oracle O43 - CFD: 01/06/2014 - 14:14:08 - [] ----D C:\ProgramData\Origin O43 - CFD: 11/07/2014 - 01:09:59 - [] ----D C:\ProgramData\P4G O43 - CFD: 11/07/2014 - 01:09:58 - [] ----D C:\ProgramData\PMB Files =>P2P.Pando O43 - CFD: 04/12/2013 - 12:27:12 - [] ----D C:\ProgramData\pwd O43 - CFD: 31/10/2010 - 10:19:09 - [0] ----D C:\ProgramData\RSMR O43 - CFD: 08/10/2013 - 18:27:32 - [] ----D C:\ProgramData\Samsung O43 - CFD: 21/05/2014 - 13:56:29 - [] ----D C:\ProgramData\Skype O43 - CFD: 13/07/2014 - 20:04:27 - [] ----D C:\ProgramData\Spybot - Search & Destroy O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Start Menu O43 - CFD: 15/04/2011 - 16:39:21 - [] ----D C:\ProgramData\Sun O43 - CFD: 28/03/2011 - 01:04:58 - [] ---AD C:\ProgramData\Temp O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Templates O43 - CFD: 01/02/2012 - 14:14:50 - [] ----D C:\ProgramData\Tigo Internet O43 - CFD: 31/01/2014 - 17:31:30 - [] ----D C:\ProgramData\TuneUp Software O43 - CFD: 12/08/2012 - 21:46:02 - [0] ----D C:\ProgramData\TwonkyMedia O43 - CFD: 16/03/2011 - 12:06:30 - [] ----D C:\ProgramData\VirtualizedApplications O43 - CFD: 31/01/2014 - 17:28:24 - [] -SH-D C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 21/06/2014 - 17:19:08 - [] ----D C:\Users\Master $partan\AppData\Roaming\.minecraft O43 - CFD: 21/12/2011 - 13:34:27 - [] ----D C:\Users\Master $partan\AppData\Roaming\Adobe O43 - CFD: 09/02/2012 - 14:53:41 - [] ----D C:\Users\Master $partan\AppData\Roaming\Apowersoft O43 - CFD: 11/08/2013 - 10:23:36 - [] ----D C:\Users\Master $partan\AppData\Roaming\Apple Computer O43 - CFD: 18/11/2013 - 11:10:59 - [] ----D C:\Users\Master $partan\AppData\Roaming\Arc O43 - CFD: 17/03/2011 - 21:15:01 - [] ----D C:\Users\Master $partan\AppData\Roaming\Asus O43 - CFD: 18/01/2011 - 21:01:20 - [] ----D C:\Users\Master $partan\AppData\Roaming\Asus WebStorage O43 - CFD: 22/11/2012 - 22:52:49 - [] ----D C:\Users\Master $partan\AppData\Roaming\Avira O43 - CFD: 28/03/2011 - 00:37:57 - [] ----D C:\Users\Master $partan\AppData\Roaming\BanzaiInteractive O43 - CFD: 11/07/2014 - 01:09:59 - [] ----D C:\Users\Master $partan\AppData\Roaming\Battle.net O43 - CFD: 13/06/2012 - 15:48:27 - [] ----D C:\Users\Master $partan\AppData\Roaming\CloneSpy O43 - CFD: 05/07/2014 - 14:11:37 - [] ----D C:\Users\Master $partan\AppData\Roaming\com.spiderneo.loljunglertimer O43 - CFD: 30/07/2011 - 15:49:42 - [] ----D C:\Users\Master $partan\AppData\Roaming\Command & Conquer 3 Les guerres du Tiberium O43 - CFD: 31/07/2011 - 10:38:29 - [] ----D C:\Users\Master $partan\AppData\Roaming\Command & Conquer 3 La Fureur de Kane O43 - CFD: 11/08/2013 - 22:17:41 - [] ----D C:\Users\Master $partan\AppData\Roaming\DAEMON Tools Lite =>.DT Soft Ltd O43 - CFD: 26/02/2014 - 09:56:47 - [] ----D C:\Users\Master $partan\AppData\Roaming\dvdcss O43 - CFD: 31/07/2013 - 07:11:45 - [0] ----D C:\Users\Master $partan\AppData\Roaming\eSobi O43 - CFD: 10/07/2014 - 23:54:49 - [] ----D C:\Users\Master $partan\AppData\Roaming\Gameo O43 - CFD: 11/07/2014 - 01:09:59 - [] ----D C:\Users\Master $partan\AppData\Roaming\Gaming Mouse O43 - CFD: 14/07/2011 - 16:53:31 - [] ----D C:\Users\Master $partan\AppData\Roaming\go O43 - CFD: 10/07/2014 - 23:54:53 - [] --H-D C:\Users\Master $partan\AppData\Roaming\GoldenGate O43 - CFD: 06/08/2011 - 14:08:06 - [] ----D C:\Users\Master $partan\AppData\Roaming\Google O43 - CFD: 13/06/2012 - 11:11:43 - [] ----D C:\Users\Master $partan\AppData\Roaming\GZero O43 - CFD: 08/01/2011 - 18:54:54 - [] ----D C:\Users\Master $partan\AppData\Roaming\Identities O43 - CFD: 12/12/2011 - 18:37:45 - [] ----D C:\Users\Master $partan\AppData\Roaming\Leadertech O43 - CFD: 12/12/2011 - 18:35:17 - [] ----D C:\Users\Master $partan\AppData\Roaming\Logishrd O43 - CFD: 12/12/2011 - 18:41:26 - [] ----D C:\Users\Master $partan\AppData\Roaming\Logitech O43 - CFD: 12/08/2013 - 08:14:34 - [] ----D C:\Users\Master $partan\AppData\Roaming\LolClient O43 - CFD: 12/03/2011 - 14:51:44 - [] ----D C:\Users\Master $partan\AppData\Roaming\Macromedia O43 - CFD: 21/12/2011 - 09:16:44 - [0] ----D C:\Users\Master $partan\AppData\Roaming\Malwarebytes O43 - CFD: 14/07/2009 - 09:44:38 - [0] ----D C:\Users\Master $partan\AppData\Roaming\Media Center Programs O43 - CFD: 10/07/2014 - 15:41:56 - [] -S--D C:\Users\Master $partan\AppData\Roaming\Microsoft O43 - CFD: 02/06/2011 - 19:24:31 - [] ----D C:\Users\Master $partan\AppData\Roaming\Mozilla O43 - CFD: 27/02/2014 - 19:25:50 - [] ----D C:\Users\Master $partan\AppData\Roaming\NVIDIA O43 - CFD: 31/05/2014 - 11:40:02 - [] ----D C:\Users\Master $partan\AppData\Roaming\Origin O43 - CFD: 12/06/2012 - 18:38:51 - [] ----D C:\Users\Master $partan\AppData\Roaming\Research In Motion O43 - CFD: 11/08/2013 - 22:39:36 - [] ----D C:\Users\Master $partan\AppData\Roaming\Riot Games O43 - CFD: 09/10/2013 - 09:55:40 - [] ----D C:\Users\Master $partan\AppData\Roaming\Samsung O43 - CFD: 30/07/2011 - 13:28:11 - [] R-H-D C:\Users\Master $partan\AppData\Roaming\SecuROM O43 - CFD: 11/07/2014 - 00:29:32 - [] ----D C:\Users\Master $partan\AppData\Roaming\Skype O43 - CFD: 12/07/2011 - 10:56:17 - [] ----D C:\Users\Master $partan\AppData\Roaming\skypePM O43 - CFD: 10/04/2012 - 23:13:21 - [] ----D C:\Users\Master $partan\AppData\Roaming\SoftGrid Client O43 - CFD: 10/07/2014 - 13:00:16 - [] ----D C:\Users\Master $partan\AppData\Roaming\Spotify O43 - CFD: 16/03/2011 - 05:37:05 - [0] ----D C:\Users\Master $partan\AppData\Roaming\TP O43 - CFD: 01/06/2011 - 12:42:38 - [] ----D C:\Users\Master $partan\AppData\Roaming\TS3Client O43 - CFD: 16/12/2011 - 19:58:16 - [] ----D C:\Users\Master $partan\AppData\Roaming\ts3overlay O43 - CFD: 31/01/2014 - 17:28:40 - [] ----D C:\Users\Master $partan\AppData\Roaming\TuneUp Software O43 - CFD: 12/06/2014 - 22:08:26 - [] ----D C:\Users\Master $partan\AppData\Roaming\vlc O43 - CFD: 02/05/2011 - 09:21:08 - [] ----D C:\Users\Master $partan\AppData\Roaming\Windows Live Writer O43 - CFD: 13/03/2011 - 05:03:50 - [] ----D C:\Users\Master $partan\AppData\Roaming\WinRAR O43 - CFD: 19/11/2013 - 19:33:13 - [] ----D C:\Users\Master $partan\AppData\Roaming\Wondershare O43 - CFD: 15/07/2014 - 01:09:13 - [] ----D C:\Users\Master $partan\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 19/11/2013 - 21:39:18 - [] ----D C:\Users\Master $partan\AppData\Local\Adobe O43 - CFD: 11/08/2013 - 10:18:29 - [] ----D C:\Users\Master $partan\AppData\Local\Apple O43 - CFD: 11/08/2013 - 10:19:09 - [] ----D C:\Users\Master $partan\AppData\Local\Apple Computer O43 - CFD: 08/01/2011 - 18:49:22 - [] -SH-D C:\Users\Master $partan\AppData\Local\Application Data O43 - CFD: 16/12/2011 - 20:03:14 - [] ----D C:\Users\Master $partan\AppData\Local\ApplicationHistory O43 - CFD: 12/03/2011 - 15:16:23 - [] ----D C:\Users\Master $partan\AppData\Local\assembly O43 - CFD: 22/08/2011 - 17:44:10 - [] ----D C:\Users\Master $partan\AppData\Local\ASUS O43 - CFD: 15/07/2014 - 01:09:00 - [] ----D C:\Users\Master $partan\AppData\Local\Battle.net O43 - CFD: 02/08/2012 - 17:23:20 - [] ----D C:\Users\Master $partan\AppData\Local\Black_Tree_Gaming O43 - CFD: 06/05/2014 - 18:54:37 - [] ----D C:\Users\Master $partan\AppData\Local\Blizzard O43 - CFD: 06/05/2014 - 17:38:29 - [] ----D C:\Users\Master $partan\AppData\Local\Blizzard Entertainment O43 - CFD: 09/09/2013 - 12:30:59 - [] ----D C:\Users\Master $partan\AppData\Local\Broadcom O43 - CFD: 26/08/2012 - 18:26:14 - [] ----D C:\Users\Master $partan\AppData\Local\Chromium O43 - CFD: 13/07/2014 - 20:04:19 - [0] ----D C:\Users\Master $partan\AppData\Local\CrashDumps O43 - CFD: 30/06/2014 - 19:28:56 - [0] ----D C:\Users\Master $partan\AppData\Local\Diagnostics O43 - CFD: 09/10/2013 - 09:38:14 - [] ----D C:\Users\Master $partan\AppData\Local\Downloaded Installations O43 - CFD: 13/04/2014 - 10:52:58 - [] -SH-D C:\Users\Master $partan\AppData\Local\EmieSiteList O43 - CFD: 13/04/2014 - 10:52:58 - [] -SH-D C:\Users\Master $partan\AppData\Local\EmieUserList O43 - CFD: 01/06/2014 - 18:09:30 - [] ----D C:\Users\Master $partan\AppData\Local\ESN O43 - CFD: 08/12/2013 - 17:49:17 - [] ----D C:\Users\Master $partan\AppData\Local\Gameforge4d O43 - CFD: 13/07/2014 - 11:10:41 - [] ----D C:\Users\Master $partan\AppData\Local\Gameo O43 - CFD: 31/03/2013 - 21:18:43 - [] ----D C:\Users\Master $partan\AppData\Local\Google O43 - CFD: 13/06/2012 - 11:11:50 - [] ----D C:\Users\Master $partan\AppData\Local\GZero O43 - CFD: 08/01/2011 - 18:49:22 - [] -SH-D C:\Users\Master $partan\AppData\Local\Historique O43 - CFD: 24/09/2012 - 04:44:36 - [] ----D C:\Users\Master $partan\AppData\Local\LiveGBoost O43 - CFD: 12/12/2011 - 18:47:01 - [] ----D C:\Users\Master $partan\AppData\Local\Logishrd O43 - CFD: 20/06/2014 - 14:11:50 - [] ----D C:\Users\Master $partan\AppData\Local\LogMeIn O43 - CFD: 14/07/2014 - 14:40:26 - [] ----D C:\Users\Master $partan\AppData\Local\LogMeIn Hamachi O43 - CFD: 11/06/2012 - 21:48:20 - [] ----D C:\Users\Master $partan\AppData\Local\Macromedia O43 - CFD: 03/05/2014 - 11:08:16 - [] ----D C:\Users\Master $partan\AppData\Local\Microsoft O43 - CFD: 08/06/2013 - 22:08:22 - [] ----D C:\Users\Master $partan\AppData\Local\Microsoft Games O43 - CFD: 26/02/2014 - 09:40:14 - [] ----D C:\Users\Master $partan\AppData\Local\Microsoft Help O43 - CFD: 03/10/2013 - 13:55:52 - [] ----D C:\Users\Master $partan\AppData\Local\Mozilla O43 - CFD: 19/12/2013 - 10:32:05 - [] ----D C:\Users\Master $partan\AppData\Local\NVIDIA O43 - CFD: 20/05/2014 - 15:14:27 - [] ----D C:\Users\Master $partan\AppData\Local\NVIDIA Corporation O43 - CFD: 15/09/2011 - 20:13:54 - [] ----D C:\Users\Master $partan\AppData\Local\Oblivion O43 - CFD: 31/05/2014 - 11:41:50 - [] ----D C:\Users\Master $partan\AppData\Local\Origin O43 - CFD: 07/06/2012 - 03:41:36 - [] ----D C:\Users\Master $partan\AppData\Local\Pando_Temp O43 - CFD: 11/07/2014 - 13:03:14 - [] ----D C:\Users\Master $partan\AppData\Local\PMB Files =>P2P.Pando O43 - CFD: 08/01/2011 - 18:49:33 - [] ----D C:\Users\Master $partan\AppData\Local\Power2Go O43 - CFD: 15/01/2012 - 19:47:38 - [] ----D C:\Users\Master $partan\AppData\Local\Prism O43 - CFD: 29/12/2012 - 15:56:37 - [] ----D C:\Users\Master $partan\AppData\Local\Programs O43 - CFD: 01/06/2014 - 18:13:37 - [] ----D C:\Users\Master $partan\AppData\Local\PunkBuster O43 - CFD: 17/04/2011 - 07:30:57 - [] ----D C:\Users\Master $partan\AppData\Local\reakktor O43 - CFD: 28/09/2012 - 15:30:32 - [] ----D C:\Users\Master $partan\AppData\Local\Samsung O43 - CFD: 11/03/2013 - 16:23:00 - [] ----D C:\Users\Master $partan\AppData\Local\SCE O43 - CFD: 21/12/2011 - 14:18:36 - [0] ----D C:\Users\Master $partan\AppData\Local\Secunia PSI O43 - CFD: 26/02/2014 - 22:51:24 - [] ----D C:\Users\Master $partan\AppData\Local\Skype O43 - CFD: 02/08/2012 - 10:55:10 - [] ----D C:\Users\Master $partan\AppData\Local\Skyrim O43 - CFD: 16/03/2011 - 05:36:58 - [] ----D C:\Users\Master $partan\AppData\Local\SoftGrid Client O43 - CFD: 08/07/2014 - 17:16:21 - [] ----D C:\Users\Master $partan\AppData\Local\Spotify O43 - CFD: 15/07/2014 - 00:55:39 - [] ----D C:\Users\Master $partan\AppData\Local\Temp O43 - CFD: 08/01/2011 - 18:49:22 - [] -SH-D C:\Users\Master $partan\AppData\Local\Temporary Internet Files O43 - CFD: 02/06/2011 - 19:10:24 - [] ----D C:\Users\Master $partan\AppData\Local\The Lord of the Rings Online O43 - CFD: 02/06/2011 - 14:37:39 - [] ----D C:\Users\Master $partan\AppData\Local\Turbine O43 - CFD: 28/05/2014 - 20:06:54 - [] ----D C:\Users\Master $partan\AppData\Local\Ubisoft O43 - CFD: 31/01/2014 - 21:47:43 - [] ----D C:\Users\Master $partan\AppData\Local\VirtualStore O43 - CFD: 28/05/2014 - 16:29:11 - [0] ----D C:\Users\Master $partan\AppData\Local\WarThunder O43 - CFD: 03/05/2014 - 11:08:17 - [] ----D C:\Users\Master $partan\AppData\Local\Windows Live O43 - CFD: 22/03/2014 - 13:31:15 - [] ----D C:\Users\Master $partan\AppData\Local\Windows Live Writer O43 - CFD: 19/11/2013 - 19:33:18 - [] ----D C:\Users\Master $partan\AppData\Local\Wondershare O43 - CFD: 14/07/2009 - 06:54:32 - [] R---D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 20/12/2011 - 17:47:24 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ad-Remover O43 - CFD: 19/05/2014 - 11:34:19 - [] R---D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 10/10/2013 - 07:24:55 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ClockworkMod O43 - CFD: 13/06/2012 - 11:08:07 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CloneSpy O43 - CFD: 07/08/2011 - 08:18:28 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite O43 - CFD: 27/10/2011 - 19:33:24 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 10/07/2014 - 23:54:39 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gameo O43 - CFD: 25/05/2013 - 17:34:52 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 14/07/2009 - 06:49:38 - [] R---D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 25/08/2013 - 10:24:31 - [0] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCsoft O43 - CFD: 08/06/2013 - 17:02:50 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StarCraft II O43 - CFD: 19/05/2014 - 11:34:19 - [] R---D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 28/05/2014 - 16:29:05 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder O43 - CFD: 13/03/2011 - 05:03:26 - [] ----D C:\Users\Master $partan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ Program Folder: 285 Scanned in 00mn 03s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.A064A1D9CBD7F6959AAEAEAFF96DB2E9] - 10/07/2014 - 11:53:43 ---A- . (.Microsoft Corporation - Accessibilité au Clavier visuel.) -- C:\Windows\System32\osk.exe [692736] O44 - LFC:[MD5.F1726E14C8F7B40CD828345890AAF764] - 10/07/2014 - 11:53:43 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3157504] O44 - LFC:[MD5.D6AFBAA93169E6772565A1BC896D666B] - 10/07/2014 - 11:53:46 ---A- . (.Microsoft Corporation - Édition DirectShow..) -- C:\Windows\System32\qedit.dll [624128] O44 - LFC:[MD5.D4CCE15190269486A5E6D4D4E597F798] - 10/07/2014 - 11:53:53 ---A- . (.Microsoft Corporation - DLL serveur LSA.) -- C:\Windows\System32\lsasrv.dll [1460736] O44 - LFC:[MD5.FA886682CFC5D36718D3E436AACF10B9] - 10/07/2014 - 11:54:02 ---A- . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\Drivers\afd.sys [497152] O44 - LFC:[MD5.A01E5B6BA2766A8AD2583EE5490CEE09] - 10/07/2014 - 12:02:48 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [96441528] O44 - LFC:[MD5.35B54D4CE5217DAF2ABCE55E39A3AFCF] - 10/07/2014 - 14:17:45 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [416944] O44 - LFC:[MD5.4C7BC6BDC31CC8B62AA6B50AF5C9F70C] - 10/07/2014 - 23:34:51 ---A- . (...) -- C:\Windows\System32\AutoRunFilter.ini [2778] O44 - LFC:[MD5.E23BA7A7BD97FC6B8AB5EA32A46D05CD] - 13/07/2014 - 08:14:27 ---A- . (.Microsoft Corporation - Bibliothèque de chiffrement Windows.) -- C:\Windows\System32\ncrypt.dll [307200] O44 - LFC:[MD5.C9DD5C0D5AF2D7A54BA32E8FBD3B67F1] - 13/07/2014 - 08:14:27 ---A- . (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll [22016] O44 - LFC:[MD5.7D1017ED11B7C3B162628069742B5E58] - 13/07/2014 - 08:14:27 ---A- . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll [314880] O44 - LFC:[MD5.BFC98590EAB40C785D6134B1FA818A62] - 13/07/2014 - 08:14:27 ---A- . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll [210944] O44 - LFC:[MD5.79EE13A5A406E4603874686B8005DA72] - 13/07/2014 - 08:14:27 ---A- . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\TSpkg.dll [86528] O44 - LFC:[MD5.A805B5E68262302D1A60BE3DED5846C9] - 13/07/2014 - 08:14:28 ---A- . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll [728064] O44 - LFC:[MD5.E8E98B3B7A6E1250F4AA7AF8FA17D5BB] - 13/07/2014 - 08:14:29 ---A- . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll [340992] O44 - LFC:[MD5.52012C83F7E9AF65D13F04415F0508F5] - 13/07/2014 - 09:27:39 ---A- . (.Microsoft Corporation - Microsoft Spell Checking Facility.) -- C:\Windows\System32\MsSpellCheckingFacility.exe [940032] O44 - LFC:[MD5.FEC19C351EF1B2C998A85D1BFD765675] - 13/07/2014 - 09:27:39 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft ®.) -- C:\Windows\System32\mshtml.dll [23464448] O44 - LFC:[MD5.89A53CDE0DA5680AF48A181D82C752CA] - 13/07/2014 - 09:27:40 ---A- . (.Microsoft Corporation - DAC for Trident DOM.) -- C:\Windows\System32\MshtmlDac.dll [83968] O44 - LFC:[MD5.F876957CA193B20A21D52F91418657D7] - 13/07/2014 - 09:27:40 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [195584] O44 - LFC:[MD5.2EE102DF0EDD8A1EDD3D1E9B99A91BEC] - 13/07/2014 - 09:27:40 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2266112] O44 - LFC:[MD5.945FA19B388FCF0FEA6124B5FD71C72F] - 13/07/2014 - 09:27:41 ---A- . (.Microsoft Corporation - Microsoft ® HTML Media DLL.) -- C:\Windows\System32\mshtmlmedia.dll [1249280] O44 - LFC:[MD5.4EC7738394D2BC7BCB5F7A3657F57252] - 13/07/2014 - 09:27:41 ---A- . (.Microsoft Corporation - Microsoft ® JScript.) -- C:\Windows\System32\jscript9.dll [5721088] O44 - LFC:[MD5.BDD4A74421B023C81DA63168BD10C01B] - 13/07/2014 - 09:27:41 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [846336] O44 - LFC:[MD5.50FF2DD806CC6CF3B3F98F9A1A711603] - 13/07/2014 - 09:27:41 ---A- . (.Microsoft Corporation - Microsoft ® JScript Diagnostics.) -- C:\Windows\System32\jscript9diag.dll [752640] O44 - LFC:[MD5.00401347C3BC466E5F2516387EBBCA7D] - 13/07/2014 - 09:27:41 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [548352] O44 - LFC:[MD5.1FD6C2F6AC489C271565730F6E9E1A05] - 13/07/2014 - 09:27:41 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [85504] O44 - LFC:[MD5.CD76B3D60D28634A67B0AD7CB2E45929] - 13/07/2014 - 09:27:41 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\System32\ieUnatt.exe [139264] O44 - LFC:[MD5.854C5F171F5CEE272232AC0286F3B3B9] - 13/07/2014 - 09:27:42 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\System32\ieui.dll [598016] O44 - LFC:[MD5.366FA6D38406DC8BED62825C196144D1] - 13/07/2014 - 09:27:42 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13527040] O44 - LFC:[MD5.8B2ADE09864BF3F7AA6D395DAFEC41B5] - 13/07/2014 - 09:27:43 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [51200] O44 - LFC:[MD5.7469D4E046BD7D155CAC2697BD28B58B] - 13/07/2014 - 09:27:44 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [66048] O44 - LFC:[MD5.1685AA234852657C4A6D253CCBBE84E0] - 13/07/2014 - 09:27:44 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [2040832] O44 - LFC:[MD5.A21C6231459F4CAC212676A9367A1A68] - 13/07/2014 - 09:27:44 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [2768384] O44 - LFC:[MD5.391D68668CFC061F26BE593A61F745E0] - 13/07/2014 - 09:27:45 ---A- . (.Microsoft Corporation - IE ETW Collector Service Resources.) -- C:\Windows\System32\ieetwcollectorres.dll [4096] O44 - LFC:[MD5.7176CB0FFAAC3E54ABB2014E821120F9] - 13/07/2014 - 09:27:45 ---A- . (.Microsoft Corporation - IE ETW Collector Service.) -- C:\Windows\System32\ieetwcollector.exe [111616] O44 - LFC:[MD5.D8E6706AECD7AA50764E126CE3F36555] - 13/07/2014 - 09:27:45 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [631808] O44 - LFC:[MD5.CA67F68CEC788C0C69AD47C5125DDD8E] - 13/07/2014 - 09:27:45 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [608768] O44 - LFC:[MD5.73C7D1FCF6F58F3BF077FB42B0214BC0] - 13/07/2014 - 09:27:46 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1393664] O44 - LFC:[MD5.C2F62DF01E3552DB0571FEF4D514675B] - 13/07/2014 - 09:27:47 ---A- . (.Microsoft Corporation - IE ETW Collector Proxy Stub Resources.) -- C:\Windows\System32\ieetwproxystub.dll [48640] O44 - LFC:[MD5.5E646AD50848A409291418B5759595B9] - 13/07/2014 - 09:27:47 ---A- . (.Microsoft Corporation - JavaScript Performance Collection Agent.) -- C:\Windows\System32\JavaScriptCollectionAgent.dll [38400] O44 - LFC:[MD5.DA5BAC4C5BDB22BBC6771534EA95AD33] - 13/07/2014 - 09:27:47 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2724864] O44 - LFC:[MD5.C0F9F52C36E584C0339406ABF6DA1FBA] - 13/07/2014 - 09:27:47 ---A- . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll [266424] O44 - LFC:[MD5.FC50DF22550C565DD096ACFAF18A37ED] - 13/07/2014 - 09:27:48 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [33792] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 13/07/2014 - 19:10:39 ---A- . (...) -- C:\Windows\setuperr.log [0] O44 - LFC:[MD5.9D9ED48F841EA37AA5310D54B9E5D3C7] - 14/07/2014 - 12:44:25 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [91352] O44 - LFC:[MD5.15E8ABC06843672955CE26A009533BAD] - 14/07/2014 - 12:44:25 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [63704] O44 - LFC:[MD5.2409C84705AAC44F162E469EE1229CD4] - 14/07/2014 - 13:07:26 ---A- . (...) -- C:\Windows\win.ini [8949] O44 - LFC:[MD5.8F99F7AC04EB1660F2834BB79260EB9D] - 14/07/2014 - 13:24:18 ---A- . (...) -- C:\Windows\PFRO.log [179756] O44 - LFC:[MD5.5F864E926608DDEFA2AD490915E69605] - 14/07/2014 - 13:34:49 ---A- . (...) -- C:\Windows\WindowsUpdate.log [69122] O44 - LFC:[MD5.331DCC2ADF9402EB60D46C6FCF5B6DA4] - 14/07/2014 - 13:37:33 ---A- . (...) -- C:\Windows\ntbtlog.txt [997608] O44 - LFC:[MD5.6BCAF46E2B7FA9ACE92B4D39F3037C5C] - 14/07/2014 - 13:40:05 ---A- . (...) -- C:\Windows\System32\acovcnt.exe [45056] O44 - LFC:[MD5.4663C5AD76FE8E19592DE808156FA07D] - 14/07/2014 - 13:52:08 ---A- . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\Drivers\avgntflt.sys [117712] O44 - LFC:[MD5.09036D9F85BE6B659D375D2F0BAD0AD2] - 14/07/2014 - 13:52:09 ---A- . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\Drivers\avnetflt.sys [42040] O44 - LFC:[MD5.8618A82BAC11A01ED70ACCA48CC56C52] - 14/07/2014 - 18:50:17 ---A- . (...) -- C:\Windows\setupact.log [1512] O44 - LFC:[MD5.04F1A24BF3993E5969B8DF46C49AE18A] - 14/07/2014 - 18:57:42 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1707740] O44 - LFC:[MD5.BCDFF0EE0251166ED08EFB8C16844D6E] - 14/07/2014 - 18:57:42 ---A- . (...) -- C:\Windows\System32\perfc009.dat [127638] O44 - LFC:[MD5.570026FF1E8F01BCC7B1C559D9CF3AF9] - 14/07/2014 - 18:57:42 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [156636] O44 - LFC:[MD5.3C05BBD6FFE9B2C1966615F58FF3B6B1] - 14/07/2014 - 18:57:42 ---A- . (...) -- C:\Windows\System32\perfh009.dat [666672] O44 - LFC:[MD5.9892B8DCCD15223362C89E860164946E] - 14/07/2014 - 18:57:42 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [761060] O44 - LFC:[MD5.FDAFF4476CED1214C556419D926816DE] - 14/07/2014 - 23:49:56 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.8A50D5304E6AE48664CF5838EC32F647] - 14/07/2014 - 23:57:19 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [122584] ~ Files: 63 Scanned in 01mn 25s ---\\ Opérations et fonctions au démarrage de Windows Explorer (O46) O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook [64Bits] - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL ~ ShellExecuteHooks: Scanned in 00mn 00s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Notification Packages . (.Broadcom Corporation. - BtwProximityCP DLL.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll ~ LSA: 10 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ Clé de registre Shell MountPoints2 (MPKS) (O51) O51 - MPSK:{19e134e5-0578-11e2-a937-582c80139263}\AutoRun\command. (...) -- I:\AutoRun.exe (.not file.) O51 - MPSK:{19e134f9-0578-11e2-a937-582c80139263}\AutoRun\command. (...) -- I:\AutoRun.exe (.not file.) O51 - MPSK:{1effcd86-0af8-11e2-853b-bcaec5020a43}\AutoRun\command. (...) -- I:\AutoRun.exe (.not file.) O51 - MPSK:{9f2d3bf8-ed4b-11e2-92dc-bcaec5020a43}\AutoRun\command. (...) -- J:\AutoRun.exe (.not file.) O51 - MPSK:{cdc3f688-4ccd-11e1-8583-bcaec5020a43}\AutoRun\command. (...) -- I:\AutoRun.exe (.not file.) O51 - MPSK:{cdc3f698-4ccd-11e1-8583-bcaec5020a43}\AutoRun\command. (...) -- I:\AutoRun.exe (.not file.) O51 - MPSK:{e59e1ba3-04b5-11e2-b70a-bcaec5020a43}\AutoRun\command. (...) -- I:\AutoRun.exe (.not file.) O51 - MPSK:{f7d1c4a7-c110-11e0-b40d-74f06db00c58}\AutoRun\command. (...) -- H:\setup\rsrc\Autorun.exe (.not file.) O51 - MPSK:{fdb2ceac-00a2-11e2-94fa-74f06db00c58}\AutoRun\command. (...) -- I:\AutoRun.exe (.not file.) O51 - MPSK:{fdb2cfb4-00a2-11e2-94fa-74f06db00c58}\AutoRun\command. (...) -- I:\AutoRun.exe (.not file.) ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) O53 - SMSR:HKLM\...\startupreg\command . (.Samsung - KiesPDLR.) -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\ADSMTray [Key] . (.ASUSTek Computer Inc. - ADSMTray.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe O53 - SMSR:HKLM\...\startupreg\ASUS Screen Saver Protector [Key] . (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe =>.DT Soft Ltd O53 - SMSR:HKLM\...\startupreg\Gameo [Key] . (...) -- C:\Users\Master $partan\AppData\Roaming\Gameo\gameo.exe O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe O53 - SMSR:HKLM\...\startupreg\KiesAirMessage [Key] . (.Samsung Electronics - Pas de description.) -- C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe O53 - SMSR:HKLM\...\startupreg\KiesPDLR [Key] . (.Samsung - KiesPDLR.) -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O53 - SMSR:HKLM\...\startupreg\KiesPreload [Key] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe O53 - SMSR:HKLM\...\startupreg\KiesTrayAgent [Key] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe =>.Samsung Electronics Co O53 - SMSR:HKLM\...\startupreg\LogMeIn Hamachi Ui [Key] . (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp O53 - SMSR:HKLM\...\startupreg\Spotify Web Helper [Key] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe ~ SMSR Keys: 15 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableRegistryTools"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0 ~ MWPS: 17 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ~ MWPE Keys: 4 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [339536] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [182864] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [15440] O58 - SDL:11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [107904] O58 - SDL:14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [194128] O58 - SDL:11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [27008] O58 - SDL:24/12/2010 - 11:43:40 ---A- . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\Apowersoft_AudioDevice.sys [29288] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [87632] O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [97856] O58 - SDL:22/08/2011 - 12:51:37 ---A- . (.ASUSTek Computer Inc - Data Security Manager Driver.) -- C:\Windows\System32\Drivers\AsDsm.sys [35384] O58 - SDL:11/01/2010 - 16:36:32 ---A- . (.Primax Ltd - Primax USB Optical Mouse Driver.) -- C:\Windows\System32\Drivers\Asusgms.sys [11520] O58 - SDL:27/06/2011 - 01:37:00 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athrx.sys [2753536] O58 - SDL:13/05/2009 - 17:07:20 ---A- . (.ASUS - ATK0100 ACPI Utility.) -- C:\Windows\System32\Drivers\ATK64AMD.sys [15928] O58 - SDL:14/07/2014 - 13:52:08 ---A- . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\Drivers\avgntflt.sys [117712] =>.Avira Operations GmbH O58 - SDL:03/06/2014 - 13:37:55 ---A- . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\Drivers\avipbb.sys [130584] =>.Avira Operations GmbH O58 - SDL:28/11/2013 - 20:21:50 ---A- . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\Drivers\avkmgr.sys [28600] =>.Avira Operations GmbH O58 - SDL:14/07/2014 - 13:52:09 ---A- . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\Drivers\avnetflt.sys [42040] =>.Avira Operations GmbH O58 - SDL:10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [270848] O58 - SDL:10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [18432] O58 - SDL:10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [8704] O58 - SDL:14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [286720] O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [47104] O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [14976] O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [14720] O58 - SDL:14/12/2009 - 09:03:49 ---A- . (.Broadcom Corporation. - Widcomm Bluetooth USB Filter for Windows XP.) -- C:\Windows\System32\Drivers\btusbflt.sys [53800] O58 - SDL:09/09/2013 - 11:18:48 ---A- . (.Broadcom Corporation. - Broadcom Bluetooth USB AMP Filter for Windows Vista.) -- C:\Windows\System32\Drivers\btwampfl.sys [598808] O58 - SDL:09/09/2013 - 11:18:48 ---A- . (.Broadcom Corporation. - Bluetooth Audio Device.) -- C:\Windows\System32\Drivers\btwaudio.sys [184144] O58 - SDL:09/09/2013 - 11:18:48 ---A- . (.Broadcom Corporation. - Broadcom Bluetooth AVDT Service.) -- C:\Windows\System32\Drivers\btwavdt.sys [210984] O58 - SDL:09/09/2013 - 11:18:47 ---A- . (.Broadcom Corporation. - Broadcom Bluetooth L2CAP Service.) -- C:\Windows\System32\Drivers\btwl2cap.sys [39976] O58 - SDL:09/09/2013 - 11:18:47 ---A- . (.Broadcom Corporation. - Bluetooth Remote Control HID Minidriver.) -- C:\Windows\System32\Drivers\btwrchid.sys [21544] O58 - SDL:10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [468480] O58 - SDL:14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [17488] O58 - SDL:04/06/2012 - 09:42:23 ---A- . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\Drivers\dtsoftbus01.sys [283200] O58 - SDL:14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496] O58 - SDL:10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3286016] O58 - SDL:28/10/2010 - 11:33:54 ---A- . (.Fresco Logic - xHCI Bus Driver.) -- C:\Windows\System32\Drivers\FLxHCIc.sys [215104] O58 - SDL:28/10/2010 - 11:33:54 ---A- . (.Fresco Logic - xHCI Hub Driver.) -- C:\Windows\System32\Drivers\FLxHCIh.sys [81984] O58 - SDL:13/03/2008 - 14:51:00 ---A- . (.FTDI Ltd. - FTDIBUS USB Driver.) -- C:\Windows\System32\Drivers\ftdibus.sys [68800] O58 - SDL:13/03/2008 - 14:49:36 ---A- . (.FTDI Ltd. - FTDIBUS Serial Device Driver.) -- C:\Windows\System32\Drivers\ftser2k.sys [84288] O58 - SDL:21/08/2012 - 12:01:20 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [33240] O58 - SDL:18/03/2009 - 17:35:42 --HA- . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\Drivers\hamachi.sys [33856] O58 - SDL:10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232] O58 - SDL:17/09/2009 - 20:54:54 ---A- . (.Intel Corporation - Intel® Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [56344] O58 - SDL:20/11/2010 - 14:33:35 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [78720] O58 - SDL:03/03/2010 - 12:51:39 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\Drivers\iaStor.sys [540696] O58 - SDL:11/03/2011 - 07:41:26 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [410496] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [44112] O58 - SDL:20/07/2009 - 10:29:39 ---A- . (.Pas de propriétaire - Keyboard Filter Driver.) -- C:\Windows\System32\Drivers\kbfiltr.sys [15416] O58 - SDL:21/04/2010 - 08:47:49 ---A- . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controller.) -- C:\Windows\System32\Drivers\L1C62x64.sys [76912] O58 - SDL:02/09/2011 - 07:30:24 ---A- . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\Windows\System32\Drivers\LHidFilt.Sys [66840] O58 - SDL:02/09/2011 - 07:30:36 ---A- . (.Logitech, Inc. - Logitech Mouse Filter Driver..) -- C:\Windows\System32\Drivers\LMouFilt.Sys [60696] O58 - SDL:15/12/2011 - 16:38:42 ---A- . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) -- C:\Windows\System32\Drivers\LNonPnP.sys [18960] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [114752] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [106560] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [65600] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [115776] O58 - SDL:02/09/2011 - 07:30:46 ---A- . (.Logitech, Inc. - Logitech USB Filter Driver..) -- C:\Windows\System32\Drivers\LUsbFilt.sys [42776] O58 - SDL:12/05/2014 - 06:25:56 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25816] O58 - SDL:12/05/2014 - 06:26:00 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [91352] O58 - SDL:14/07/2014 - 23:57:19 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [122584] O58 - SDL:18/11/2009 - 00:11:59 ---A- . (.Creative Technology Ltd. - Creative Audio Driver.) -- C:\Windows\System32\Drivers\MBfilt64.sys [32344] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\System32\Drivers\megasas.sys [35392] O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [284736] O58 - SDL:12/05/2014 - 06:26:10 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [63704] O58 - SDL:14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [51264] O58 - SDL:04/12/2013 - 02:22:50 ---A- . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\Drivers\nvhda64v.sys [196384] O58 - SDL:14/11/2013 - 12:58:12 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 331.82.) -- C:\Windows\System32\Drivers\nvlddmkm.sys [12613408] O58 - SDL:11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [148352] O58 - SDL:11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166272] O58 - SDL:31/03/2014 - 17:42:44 ---A- . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\Drivers\nvvad64v.sys [40392] O58 - SDL:01/09/2010 - 09:30:58 ---A- . (.Secunia - Secunia PSI Driver.) -- C:\Windows\System32\Drivers\psi_mf.sys [17976] O58 - SDL:14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1524816] O58 - SDL:14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [128592] O58 - SDL:09/01/2009 - 14:02:08 ---A- . (.Research in Motion Ltd - RIM Virtual Serial Driver.) -- C:\Windows\System32\Drivers\RimSerial_AMD64.sys [31744] O58 - SDL:14/05/2007 - 15:06:18 ---A- . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520] O58 - SDL:22/07/2010 - 10:41:05 ---A- . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHD64.sys [2435816] O58 - SDL:02/09/2011 - 11:46:28 ---A- . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vista/Win7.) -- C:\Windows\System32\Drivers\RtsPStor.sys [339048] O58 - SDL:10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040] O58 - SDL:10/06/2009 - 21:35:57 ---A- . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190 Ethernet Device.) -- C:\Windows\System32\Drivers\SiSG664.sys [56832] O58 - SDL:14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [43584] O58 - SDL:14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [80464] O58 - SDL:29/12/2008 - 10:14:27 ---A- . (.Pas de propriétaire - USBCAMD for Sonix UVC.) -- C:\Windows\System32\Drivers\sncduvc.sys [35456] O58 - SDL:20/08/2009 - 03:41:37 ---A- . (.Pas de propriétaire - UVC Camera Streaming Driver.) -- C:\Windows\System32\Drivers\snp2uvc.sys [1800192] O58 - SDL:20/08/2013 - 06:02:12 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudbus.sys [103576] O58 - SDL:20/08/2013 - 06:02:12 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudmdm.sys [204568] O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656] O58 - SDL:05/03/2010 - 04:19:45 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [316464] O58 - SDL:17/04/2010 - 00:07:28 ---A- . (...) -- C:\Windows\System32\Drivers\TurboB.sys [13832] O58 - SDL:13/12/2012 - 12:50:36 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl64.sys [54784] O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [17488] O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [161872] O58 - SDL:18/03/2009 - 17:35:42 --HA- . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\hamachi.sys [33856] O58 - SDL:27/09/2006 - 22:53:22 ---A- . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\SysWOW64\drivers\pxhelp20.sys [36560] O58 - SDL:05/02/2013 - 09:54:40 ---A- . (...) -- C:\Windows\SysWOW64\FsUsbExDisk.Sys [37344] O58 - SDL:06/04/2009 - 09:08:04 ---A- . (.INCA Internet Co., Ltd. - nProtect NPSC Kernel Mode Driver for NT.) -- C:\Windows\SysWOW64\npptNT2.sys [4682] ~ Drivers: 96 Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 08/07/2014 - 01:10:49 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\Google\Chrome\User Data\PepperFlash\14.0.0.145\pepflashplayer.dll [14663856] =>.Google PepperFlash O61 - LFC: 08/07/2014 - 01:11:37 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\NVIDIA\NvBackend\Packages\00005cc5\DAO.18671673.exe [3722216] O61 - LFC: 08/07/2014 - 01:11:51 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\Temp\Quarantine.exe [384143] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (...) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\SpotifyHelper.exe [601144] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (...) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\ffmpegsumo.dll [867896] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (...) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\libEGL.dll [108600] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (...) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\libGLESv2.dll [886840] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (...) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\libcef.dll [36966968] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (.Microsoft Corporation.) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\d3dcompiler_43.dll [2106424] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (.Microsoft Corporation.) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\d3dcompiler_46.dll [3222584] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (.Spotify Ltd.) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1178168] O61 - LFC: 09/07/2014 - 01:11:59 ---A- . (.The ICU Project.) -- C:\Users\Master $partan\AppData\Roaming\Spotify\Data\icudt.dll [9963064] O61 - LFC: 09/07/2014 - 01:12:00 ---A- . (.Spotify Ltd.) -- C:\Users\Master $partan\AppData\Roaming\Spotify\SpotifyLauncher.exe [61496] O61 - LFC: 09/07/2014 - 01:12:00 ---A- . (.Spotify Ltd.) -- C:\Users\Master $partan\AppData\Roaming\Spotify\spotify.exe [6162488] O61 - LFC: 10/07/2014 - 01:10:53 ---A- . (.NVIDIA Corporation.) -- C:\Users\Master $partan\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe [173136] O61 - LFC: 10/07/2014 - 01:10:53 ---A- . (.NVIDIA Corporation.) -- C:\Users\Master $partan\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\Ontology.dll [831056] O61 - LFC: 10/07/2014 - 01:11:39 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\NVIDIA\NvBackend\Packages\00005cf0\DAO.18679456.exe [3722312] O61 - LFC: 10/07/2014 - 01:11:55 ---A- . (...) -- C:\Users\Master $partan\AppData\Roaming\Gameo\uninstall.exe [218107] O61 - LFC: 10/07/2014 - 01:12:13 ---A- . (...) -- C:\Users\Master $partan\Downloads\install_flashplayer (1).exe [736352] O61 - LFC: 10/07/2014 - 01:12:13 ---A- . (...) -- C:\Users\Master $partan\Downloads\install_flashplayer.exe [736352] O61 - LFC: 10/07/2014 - 01:12:13 ---A- . (.Adobe Systems Incorporated.) -- C:\Users\Master $partan\Downloads\flashplayer.exe [17938608] O61 - LFC: 13/07/2014 - 01:11:49 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\Temp\nw2388_24144\node_modules\gameo_utils\build\Release\gameo_utils.dll [95232] O61 - LFC: 13/07/2014 - 01:11:49 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\Temp\nw2388_24144\node_modules\goldengate\build\Release\goldengate.dll [385536] O61 - LFC: 13/07/2014 - 01:11:50 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\Temp\nw2388_24144\plugins\NPSWF32_13_0_0_168.dll [16340144] O61 - LFC: 13/07/2014 - 01:11:50 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\Temp\nw6092_23216\node_modules\gameo_utils\build\Release\gameo_utils.dll [95232] O61 - LFC: 13/07/2014 - 01:11:50 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\Temp\nw6092_23216\node_modules\goldengate\build\Release\goldengate.dll [385536] O61 - LFC: 13/07/2014 - 01:11:50 ---A- . (.Optimum X.) -- C:\Users\Master $partan\AppData\Local\Temp\nw2388_24144\node_modules\windows-shortcuts\lib\shortcut\Shortcut.exe [57344] O61 - LFC: 13/07/2014 - 01:11:51 ---A- . (...) -- C:\Users\Master $partan\AppData\Local\Temp\nw6092_23216\plugins\NPSWF32_13_0_0_168.dll [16340144] O61 - LFC: 13/07/2014 - 01:11:51 ---A- . (.Optimum X.) -- C:\Users\Master $partan\AppData\Local\Temp\nw6092_23216\node_modules\windows-shortcuts\lib\shortcut\Shortcut.exe [57344] O61 - LFC: 14/07/2014 - 01:12:11 ---A- . (...) -- C:\Users\Master $partan\Downloads\adwcleaner_3.215.exe [1348263] O61 - LFC: 14/07/2014 - 01:12:11 ---A- . (...) -- C:\Users\Master $partan\Downloads\avira_internet_security_fr.exe [170567224] O61 - LFC: 14/07/2014 - 01:12:13 ---A- . (.Malwarebytes Corporation.) -- C:\Users\Master $partan\Downloads\mbam-setup-2.0.2.1012.exe [17292760] O61 - LFC: 14/07/2014 - 01:12:13 ---A- . (.Thisisu.) -- C:\Users\Master $partan\Downloads\JRT.exe [1016261] O61 - LFC: 14/07/2014 - 01:12:15 ---A- . (.Nicolas Coolman.) -- C:\Users\Master $partan\Downloads\ZHPDiag2.exe [6859108] =>.Nicolas Coolman ~ 1392 Fichiers temporaires (Temporary files) ~ 7 Fichiers cookies (Cookies files) ~ Files: 34 Scanned in 01mn 26s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 02/07/2009 - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys (ASMMAP64) .(.ASUS - Memory mapping Driver.) - LEGACY_ASMMAP64 O64 - Services: CurCS - 14/07/2014 - C:\Windows\System32\DRIVERS\avgntflt.sys (avgntflt) .(.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) - LEGACY_AVGNTFLT O64 - Services: CurCS - 03/06/2014 - C:\Windows\System32\DRIVERS\avipbb.sys (avipbb) .(.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB O64 - Services: CurCS - 28/11/2013 - C:\Windows\System32\DRIVERS\avkmgr.sys (avkmgr) .(.Avira Operations GmbH & Co. KG - Avira Manager Driver.) - LEGACY_AVKMGR O64 - Services: CurCS - 03/08/2007 - C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys (ghaio) .(...) - LEGACY_GHAIO O64 - Services: CurCS - 30/04/2014 - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys (NvStreamKms) .(.NVIDIA Corporation - Nvidia Streaming Kernel Service.) - LEGACY_NVSTREAMKMS O64 - Services: CurCS - 01/09/2010 - C:\Windows\System32\DRIVERS\psi_mf.sys (PSI) .(.Secunia - Secunia PSI Driver.) - LEGACY_PSI O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 17/04/2010 - C:\Windows\System32\DRIVERS\TurboB.sys (TurboB) .(...) - LEGACY_TURBOB ~ Legacy: 85 Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> <ChromeHTML>[HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ~ FASS Keys: 11 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows.) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Services: 32 Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.5DBA4E7FEF49F6EC1AFF1C8B888FEB24] [sPRF][13/03/2011] (...) -- C:\ProgramData\ezsidmv.dat [56] [MD5.0D3B680986310AE5540578C0E481C6A0] [sPRF][18/07/2010] (...) -- C:\ProgramData\FullRemove.exe [131984] ~ Files: 2 Scanned in 00mn 00s ---\\ Enumère les données de la clé NameSpace (MNS) (O92) O92 - MNS: ASUS WebStorage - {d6044399-0b9e-4084-a9ac-c4b7c7800fcf} ~ MNS: 1 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.8825FC48BD37615FAFF318A26A684709] [WIS][11/09/2012] (.Boxore OU - Boxore Client Installer.) -- C:\Windows\Installer\764b3.msi [1511424] =>Adware.Boxore [MD5.B67811645C5A3B8E4E4B1A1DB1EE271C] [WIS][19/09/2012] (.Boxore OU. - Software Update Helper.) -- C:\Windows\Installer\ad985.msi [45056] =>Adware.Boxore ~ WIS: 2 Scanned in 00mn 10s ---\\ Recherche de clés de registre CLSID (O101) [HKCR\CLSID\{22222222-2222-2222-2222-220422902274}] (CrossriderApp0049074.Sandbox) =>PUP.CrossRider ~ BCK: 5068 Scanned in 00mn 07s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 09/07/2014 262320 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Auto 10/07/1658 0 | (BetterMarkIt) . (...) - C:\Program Files (x86)\bettermarkit\BetterMarkIt152.exe =>PUP.BestToolbars SS - | Demand 31/10/2010 79360 | (Creative ALchemy AL6 Licensing Service) . (.Creative Labs.) - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe SS - | Demand 31/10/2010 79360 | (Creative Audio Engine Licensing Service) . (.Creative Labs.) - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe SS - | Auto 31/10/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 31/10/2010 135664 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Auto 23/06/2014 2524496 | (Hamachi2Svc) . (.LogMeIn Inc..) - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe SS - | Demand 19/10/2013 641352 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SS - | Demand 27/09/2011 359192 | (LBTServ) . (.Logitech, Inc..) - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe SS - | Demand 13/07/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SS - | Auto 26/01/2009 1153368 | (SBSDWSCService) . (.Safer Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 10/07/2014 542912 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SR - | Auto 18/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Demand 31/03/2008 225280 | (ADSMService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe SR - | Auto 22/06/2010 379520 | (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Windows\system32\FBAgent.exe SR - | Auto 14/07/2014 430160 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe SR - | Auto 14/07/2014 430160 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe SR - | Auto 07/09/2013 55624 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SR - | Auto 15/06/2009 84536 | (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe SR - | Auto 15/12/2009 96896 | (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SR - | Auto 27/02/2013 1008344 | (btwdins) . (.Broadcom Corporation..) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe SR - | Auto 31/08/2011 2425960 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe SR - | Auto 15/04/2014 377616 | (LMIGuardianSvc) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe SR - | Auto 01/10/2009 262144 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe SR - | Auto 28/06/2012 233344 | (Mobile Broadband HL Service) . (...) - C:\ProgramData\MobileBrServ\mbbservice.exe SR - | Auto 30/04/2014 1618888 | (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe SR - | Auto 30/04/2014 21009352 | (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe SR - | Auto 11/11/2013 922912 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe SR - | Auto 10/07/1658 0 | (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe SR - | Auto 22/09/2010 249136 | (SeaPort) . (.Microsoft Corporation.) - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe SR - | Auto 14/10/2011 994360 | (Secunia PSI Agent) . (.Secunia.) - C:\Program Files (x86)\Secunia\PSI\PSIA.exe SR - | Auto 14/10/2011 399416 | (Secunia Update Agent) . (.Secunia.) - C:\Program Files (x86)\Secunia\PSI\sua.exe SR - | Demand 03/08/2007 125496 | (spmgr) . (...) - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe SR - | Auto 11/11/2013 414496 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe SR - | Auto 17/04/2010 134928 | (TurboBoost) . (.Intel® Corporation.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe SR - | Auto 01/10/2009 2314240 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 08s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by Master $partan at 15/07/2014 01:29:23 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Master $partan at 15/07/2014 01:29:25 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Liste des émulateurs de CD/DVD (MBR Hook) O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.DT Soft Ltd ~ Emulateurs: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : 13026 - (13/07/2014) Clés trouvées (Keys found) : 32 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 2 Fichiers trouvés (Files found) : 6 [HKLM\SYSTEM\CurrentControlSet\Services\BetterMarkIt] =>PUP.BestToolbars^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\4a8f21d9-3757-44f6-ba89-772b679b5a92] =>PUP.BestToolbars^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160] =>Adware.PredictAd [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AF2CF8FE20EBB4443855807CA5D6E7A3] =>Adware.Boxore [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\BA086F2D38A8E1A47912955A68B3AD24] =>Adware.PredictAd [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9] =>Adware.MyWebSearch [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\64A6E60055D801F4BB8AC269354B72B8] =>Adware.Boxore [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2] =>Toolbar.Ask [HKLM\Software\Wow6432Node\Phyxion.net\OpenCandy] =>Adware.OpenCandy [HKLM\Software\Classes\CLSID\{22222222-2222-2222-2222-220422902274}] =>PUP.CrossRider [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38D5CDD0A851B3940A43CC50ABBA251C] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ C:\ProgramData\PMB Files =>P2P.Pando^ C:\Users\Master $partan\AppData\Local\PMB Files =>P2P.Pando^ C:\Windows\Tasks\bettermarkit_wd.job =>PUP.BestToolbars^ C:\Windows\System32\Tasks\bettermarkit_wd =>PUP.BestToolbars^ C:\Windows\Installer\764b3.msi =>Adware.Boxore^ C:\Windows\Installer\ad985.msi =>Adware.Boxore^ [HKCR\CLSID\{22222222-2222-2222-2222-220422902274}] (CrossriderApp0049074.Sandbox) =>PUP.CrossRider^ C:\Windows\KMSEmulator.exe =>Hijacker.Windows ~ Additionnel Scan: 387669 Items scanned in 00mn 21s ---\\ Informations complémentaires sur les modules ~ http://nicolascoolman.fr/g2-google-chrome-extensions/ =>.Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) ~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/ =>.Internet Explorer, Proxy Management (R5) ~ http://nicolascoolman.fr/o2-browser-helper-objects-de-navigateur/ =>.Browser Helper Objects de navigateur (O2) ~ http://nicolascoolman.fr/o4-applications-demarrees-par-le-registre/ =>.Applications lancées au démarrage du système (O4) ~ http://nicolascoolman.fr/o51-mountpoints2-shell-key-mpsk/ =>.Clé de registre Shell MountPoints2 (MPKS) (O51) ~ AMI: 5 Scanned in 00mn 00s ---\\ Récapitulatif des détections trouvées sur votre station http://nicolascoolman.fr/hijacker-proxy =>Hijacker.Proxy http://nicolascoolman.fr/adware-boxore =>Adware.Boxore http://nicolascoolman.fr/pup-crossrider =>PUP.CrossRider http://nicolascoolman.fr/toolbar-ask =>Toolbar.Ask http://nicolascoolman.fr/adware-predictad =>Adware.PredictAd http://nicolascoolman.fr/adware-mywebsearch =>Adware.MyWebSearch http://nicolascoolman.fr/adware-opencandy =>Adware.OpenCandy http://nicolascoolman.fr/hijacker-windows =>Hijacker.Windows ~ MSI: 8 link(s) detected in 00mn 00s End of the scan (1715 lines in 21mn 31s)(0)
  7. re donc voici le rapport de adwcleaner en attendant les autres merci # AdwCleaner v3.215 - Rapport créé le 14/07/2014 à 14:23:32 # Mis à jour le 09/07/2014 par Xplode # Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits) # Nom d'utilisateur : M - M-PC # Exécuté depuis : C:\Users\M\Downloads\adwcleaner_3.215.exe # Option : Nettoyer ***** [ Services ] ***** ***** [ Fichiers / Dossiers ] ***** ***** [ Raccourcis ] ***** ***** [ Registre ] ***** ***** [ Navigateurs ] ***** -\\ Internet Explorer v11.0.9600.17207 -\\ Mozilla Firefox v30.0 (fr) [ Fichier : C:\Users\M\AppData\Roaming\Mozilla\Firefox\Profiles\axan8aae.default-1405339347079\prefs.js ] -\\ Google Chrome v35.0.1916.153 [ Fichier : C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\preferences ] [ Fichier : C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [11423 octets] - [14/07/2014 14:17:24] AdwCleaner[R1].txt - [1224 octets] - [14/07/2014 14:22:12] AdwCleaner[s0].txt - [10129 octets] - [14/07/2014 14:19:29] AdwCleaner[s1].txt - [1145 octets] - [14/07/2014 14:23:32] ########## EOF - C:\AdwCleaner\AdwCleaner[s1].txt - [1205 octets] ##########
  8. bonjour à tous je viens de récupéré ce pc à mon fils qui ne l'a pas nettoyer ni MaJ depuis très longtemps. hier je m'y suis mis dessus et ... rien de stable plus quelques problèmes sur Mozilla (j'ai pu faire quelques MaJ quand même) j'ai lancé un antivirus dont voici le rapport si une âme charitable voudrait bien s'y pencher je vous en remercie par avance je reste dans l'attente cordialement rapport: [ERROR] InitIntelligentRepairSystem: Error in calling script function InitializeWhiteList: Runtime error. Script file is invalid! Avira Free Antivirus Date de création du fichier de rapport: dimanche 13 juillet 2014 11:57 Le programme fonctionne en version intégrale illimitée. Les services en ligne sont disponibles. Détenteur de la licence : Avira Antivirus Free Numéro de série : 0000139006-VAQUE-0000001 Plateforme : Windows 7 Home Premium Version de Windows : (Service Pack 1) [6.1.7601] Mode Boot : Mode sans échec Identifiant : Master $partan Nom de l'ordinateur : M-PC Informations de version: BUILD.DAT : 14.0.4.672 91560 Bytes 27/05/2014 20:00:00 AVSCAN.EXE : 14.0.4.632 1030736 Bytes 03/06/2014 12:37:58 AVSCANRC.DLL : 14.0.4.620 62032 Bytes 03/06/2014 12:37:58 LUKE.DLL : 14.0.4.620 57936 Bytes 03/06/2014 12:38:14 AVSCPLR.DLL : 14.0.4.620 89680 Bytes 03/06/2014 12:37:58 AVREG.DLL : 14.0.4.632 261200 Bytes 03/06/2014 12:37:56 avlode.dll : 14.0.4.638 583760 Bytes 03/06/2014 12:37:56 avlode.rdf : 14.0.4.38 65097 Bytes 10/07/2014 10:06:42 XBV00008.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:13 XBV00009.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:13 XBV00010.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:13 XBV00011.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00012.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00013.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00014.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00015.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00016.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00017.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00018.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00019.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00020.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00021.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00022.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00023.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:14 XBV00024.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00025.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00026.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00027.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00028.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00029.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00030.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00031.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00032.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00033.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00034.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:15 XBV00035.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:16 XBV00036.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:16 XBV00037.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:16 XBV00038.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:16 XBV00039.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:16 XBV00040.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:16 XBV00041.VDF : 8.11.153.142 2048 Bytes 06/06/2014 16:04:16 XBV00081.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00082.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00083.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00084.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00085.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00086.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00087.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00088.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00089.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00090.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00091.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00092.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00093.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:36 XBV00094.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00095.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00096.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00097.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00098.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00099.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00100.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00101.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00102.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00103.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00104.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00105.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00106.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00107.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00108.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00109.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00110.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00111.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00112.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:37 XBV00113.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00114.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00115.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00116.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00117.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00118.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00119.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00120.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00121.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00122.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00123.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00124.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00125.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00126.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00127.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00128.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00129.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00130.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:38 XBV00131.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00132.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00133.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00134.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00135.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00136.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00137.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00138.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00139.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00140.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00141.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00142.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00143.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00144.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00145.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00146.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00147.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00148.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00149.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00150.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:39 XBV00151.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00152.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00153.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00154.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00155.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00156.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00157.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00158.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00159.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00160.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00161.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00162.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00163.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00164.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00165.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00166.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00167.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00168.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00169.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:40 XBV00170.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00171.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00172.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00173.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00174.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00175.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00176.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00177.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00178.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00179.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00180.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00181.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00182.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00183.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00184.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:41 XBV00185.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00186.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00187.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00188.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00189.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00190.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00191.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00192.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00193.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00194.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00195.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00196.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00197.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00198.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00199.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00200.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00201.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00202.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00203.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00204.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:42 XBV00205.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00206.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00207.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00208.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00209.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00210.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00211.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00212.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00213.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00214.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00215.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00216.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00217.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00218.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00219.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00220.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00221.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00222.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00223.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00224.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:43 XBV00225.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00226.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00227.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00228.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00229.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00230.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00231.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00232.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00233.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00234.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00235.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00236.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00237.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00238.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00239.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00240.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00241.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00242.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:44 XBV00243.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00244.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00245.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00246.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00247.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00248.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00249.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00250.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00251.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00252.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00253.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00254.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00255.VDF : 8.11.159.102 2048 Bytes 08/07/2014 23:27:45 XBV00000.VDF : 7.11.70.0 66736640 Bytes 04/04/2013 10:51:21 XBV00001.VDF : 7.11.74.226 2201600 Bytes 30/04/2013 13:15:12 XBV00002.VDF : 7.11.80.60 2751488 Bytes 28/05/2013 12:20:17 XBV00003.VDF : 7.11.85.214 2162688 Bytes 21/06/2013 07:34:21 XBV00004.VDF : 7.11.91.176 3903488 Bytes 23/07/2013 07:34:32 XBV00005.VDF : 7.11.98.186 6822912 Bytes 29/08/2013 12:10:26 XBV00006.VDF : 7.11.139.38 15708672 Bytes 27/03/2014 16:20:36 XBV00007.VDF : 7.11.152.100 4193792 Bytes 02/06/2014 15:41:10 XBV00042.VDF : 8.11.153.142 710656 Bytes 06/06/2014 16:04:19 XBV00043.VDF : 8.11.155.44 1013760 Bytes 16/06/2014 16:04:22 XBV00044.VDF : 8.11.159.102 1662976 Bytes 08/07/2014 23:27:33 XBV00045.VDF : 8.11.159.104 13824 Bytes 08/07/2014 23:27:34 XBV00046.VDF : 8.11.159.108 13312 Bytes 08/07/2014 23:27:34 XBV00047.VDF : 8.11.159.112 30720 Bytes 09/07/2014 12:06:47 XBV00048.VDF : 8.11.159.114 6144 Bytes 09/07/2014 12:06:47 XBV00049.VDF : 8.11.159.116 10240 Bytes 09/07/2014 12:06:47 XBV00050.VDF : 8.11.159.118 5632 Bytes 09/07/2014 12:06:47 XBV00051.VDF : 8.11.159.122 7168 Bytes 09/07/2014 12:06:47 XBV00052.VDF : 8.11.159.126 180736 Bytes 09/07/2014 18:06:48 XBV00053.VDF : 8.11.159.148 174080 Bytes 09/07/2014 18:06:48 XBV00054.VDF : 8.11.159.168 2560 Bytes 09/07/2014 18:06:48 XBV00055.VDF : 8.11.159.188 15360 Bytes 09/07/2014 10:06:42 XBV00056.VDF : 8.11.159.210 25600 Bytes 09/07/2014 10:06:42 XBV00057.VDF : 8.11.159.212 7168 Bytes 09/07/2014 10:06:42 XBV00058.VDF : 8.11.159.218 27648 Bytes 10/07/2014 10:06:42 XBV00059.VDF : 8.11.159.220 2048 Bytes 10/07/2014 10:06:42 XBV00060.VDF : 8.11.159.222 29696 Bytes 10/07/2014 16:07:20 XBV00061.VDF : 8.11.159.224 167936 Bytes 10/07/2014 16:07:20 XBV00062.VDF : 8.11.159.226 35328 Bytes 10/07/2014 16:07:20 XBV00063.VDF : 8.11.159.230 186368 Bytes 10/07/2014 16:07:28 XBV00064.VDF : 8.11.159.250 16896 Bytes 10/07/2014 22:06:46 XBV00065.VDF : 8.11.159.252 2048 Bytes 10/07/2014 22:06:46 XBV00066.VDF : 8.11.160.16 6144 Bytes 10/07/2014 22:06:46 XBV00067.VDF : 8.11.160.40 17408 Bytes 10/07/2014 10:36:03 XBV00068.VDF : 8.11.160.42 2048 Bytes 11/07/2014 10:36:03 XBV00069.VDF : 8.11.160.46 179200 Bytes 11/07/2014 10:36:03 XBV00070.VDF : 8.11.160.48 203264 Bytes 11/07/2014 07:06:47 XBV00071.VDF : 8.11.160.50 6144 Bytes 11/07/2014 07:06:47 XBV00072.VDF : 8.11.160.52 2048 Bytes 11/07/2014 07:06:47 XBV00073.VDF : 8.11.160.54 2048 Bytes 11/07/2014 07:06:47 XBV00074.VDF : 8.11.160.58 22016 Bytes 11/07/2014 07:06:47 XBV00075.VDF : 8.11.160.60 2048 Bytes 11/07/2014 07:06:47 XBV00076.VDF : 8.11.160.62 8192 Bytes 11/07/2014 07:06:47 XBV00077.VDF : 8.11.160.66 198656 Bytes 12/07/2014 07:06:48 XBV00078.VDF : 8.11.160.68 7168 Bytes 12/07/2014 07:06:48 XBV00079.VDF : 8.11.160.70 14848 Bytes 12/07/2014 07:06:48 XBV00080.VDF : 8.11.160.72 7168 Bytes 12/07/2014 07:06:48 LOCAL001.VDF : 8.11.160.72 107993088 Bytes 12/07/2014 07:07:04 Version du moteur : 8.3.20.34 AEVDF.DLL : 8.3.0.4 118976 Bytes 20/03/2014 18:25:38 AESCRIPT.DLL : 8.1.4.220 532680 Bytes 11/07/2014 10:36:02 AESCN.DLL : 8.3.1.2 135360 Bytes 28/05/2014 18:57:43 AESBX.DLL : 8.2.20.24 1409224 Bytes 08/05/2014 15:38:34 AERDL.DLL : 8.2.0.138 704888 Bytes 02/12/2013 13:55:59 AEPACK.DLL : 8.4.0.42 786632 Bytes 02/07/2014 17:43:10 AEOFFICE.DLL : 8.3.0.10 209096 Bytes 11/07/2014 10:36:02 AEHEUR.DLL : 8.1.4.1160 7229640 Bytes 11/07/2014 10:36:02 AEHELP.DLL : 8.3.1.0 278728 Bytes 28/05/2014 18:57:39 AEGEN.DLL : 8.1.7.28 450752 Bytes 06/06/2014 14:32:18 AEEXP.DLL : 8.4.2.6 237760 Bytes 27/06/2014 12:01:03 AEEMU.DLL : 8.1.3.2 393587 Bytes 07/11/2012 08:26:50 AEDROID.DLL : 8.4.2.24 442568 Bytes 05/06/2014 14:30:13 AECORE.DLL : 8.3.1.4 241864 Bytes 06/06/2014 14:32:18 AEBB.DLL : 8.1.1.4 53619 Bytes 07/11/2012 08:26:50 AVWINLL.DLL : 14.0.4.620 24144 Bytes 03/06/2014 12:37:51 AVPREF.DLL : 14.0.4.632 50256 Bytes 03/06/2014 12:37:56 AVREP.DLL : 14.0.4.620 219216 Bytes 03/06/2014 12:37:57 AVARKT.DLL : 14.0.4.632 225872 Bytes 03/06/2014 12:37:52 AVEVTLOG.DLL : 14.0.4.620 182352 Bytes 03/06/2014 12:37:54 SQLITE3.DLL : 14.0.4.620 452176 Bytes 03/06/2014 12:38:19 AVSMTP.DLL : 14.0.4.620 76368 Bytes 03/06/2014 12:37:59 NETNT.DLL : 14.0.4.620 13392 Bytes 03/06/2014 12:38:14 RCIMAGE.DLL : 14.0.4.620 4980816 Bytes 03/06/2014 12:37:51 RCTEXT.DLL : 14.0.4.620 76368 Bytes 03/06/2014 12:37:51 Configuration pour la recherche actuelle: Nom de la tâche...............................: Sélection manuelle Fichier de configuration......................: C:\ProgramData\Avira\AntiVir Desktop\PROFILES\folder.avp Documentation.................................: par défaut Action principale.............................: Réparer Action secondaire.............................: Supprimer Recherche sur les secteurs d'amorçage maître..: marche Contrôle en cours des secteurs d'amorçage.....: marche Secteurs d'amorçage...........................: C:, D:, F:, G:, Contrôle en cours des programmes actifs.......: marche Recherche du registre.........................: marche Recherche de Rootkits.........................: marche Contrôle d'intégrité de fichiers système......: marche Recherche sur tous les fichiers...............: Tous les fichiers Recherche sur les archives....................: marche Limiter la profondeur de récursivité..........: 20 Archive Smart Extensions......................: marche Types d'archives divergents...................: +, +, +, +, +, +, +, +, Heuristique de macrovirus.....................: marche Heuristique de fichiers.......................: Intégral Catégories de dangers divergentes.............: +APPL,+GAME,+JOKE,+PCK,+SPR, Début de la recherche: dimanche 13 juillet 2014 11:57 La recherche sur les secteurs d'amorçage commence: Secteur d'amorçage 'HDD0(C:, D:)' [iNFO] Aucun virus trouvé! Secteur d'amorçage 'HDD1(F:, G:)' [iNFO] Aucun virus trouvé! La recherche sur les processus démarrés commence: Recherche en cours du processus 'avscan.exe' - '107' module(s) ont été recherchés Recherche en cours du processus 'avcenter.exe' - '137' module(s) ont été recherchés Début du contrôle des fichiers système: Signé -&amp;gt; 'C:\Windows\system32\svchost.exe' Signé -&amp;gt; 'C:\Windows\system32\winlogon.exe' Signé -&amp;gt; 'C:\Windows\explorer.exe' Signé -&amp;gt; 'C:\Windows\system32\smss.exe' Signé -&amp;gt; 'C:\Windows\system32\wininet.DLL' Signé -&amp;gt; 'C:\Windows\system32\wsock32.DLL' Signé -&amp;gt; 'C:\Windows\system32\ws2_32.DLL' Signé -&amp;gt; 'C:\Windows\system32\services.exe' Signé -&amp;gt; 'C:\Windows\system32\lsass.exe' Signé -&amp;gt; 'C:\Windows\system32\csrss.exe' Signé -&amp;gt; 'C:\Windows\system32\drivers\kbdclass.sys' Signé -&amp;gt; 'C:\Windows\system32\spoolsv.exe' Signé -&amp;gt; 'C:\Windows\system32\alg.exe' Signé -&amp;gt; 'C:\Windows\system32\wuauclt.exe' Signé -&amp;gt; 'C:\Windows\system32\advapi32.DLL' Signé -&amp;gt; 'C:\Windows\system32\user32.DLL' Signé -&amp;gt; 'C:\Windows\system32\gdi32.DLL' Signé -&amp;gt; 'C:\Windows\system32\kernel32.DLL' Signé -&amp;gt; 'C:\Windows\system32\ntdll.DLL' Signé -&amp;gt; 'C:\Windows\system32\ntoskrnl.exe' Signé -&amp;gt; 'C:\Windows\system32\drivers\beep.sys' Signé -&amp;gt; 'C:\Windows\system32\ctfmon.exe' Signé -&amp;gt; 'C:\Windows\system32\imm32.dll' Signé -&amp;gt; 'C:\Windows\system32\dsound.dll' Signé -&amp;gt; 'C:\Windows\system32\aclui.dll' Signé -&amp;gt; 'C:\Windows\system32\msvcrt.dll' Signé -&amp;gt; 'C:\Windows\system32\d3d9.dll' Signé -&amp;gt; 'C:\Windows\system32\dnsapi.dll' Signé -&amp;gt; 'C:\Windows\system32\mshtml.dll' Signé -&amp;gt; 'C:\Windows\system32\regsvr32.exe' Signé -&amp;gt; 'C:\Windows\system32\rundll32.exe' Signé -&amp;gt; 'C:\Windows\system32\userinit.exe' Signé -&amp;gt; 'C:\Windows\system32\reg.exe' Signé -&amp;gt; 'C:\Windows\regedit.exe' Les fichiers système ont été contrôlés ('34' fichiers) La recherche sur les renvois aux fichiers exécutables (registre) commence: Le registre a été contrôlé ( '6701' fichiers). La recherche sur les fichiers sélectionnés commence: Recherche débutant dans 'C:\' &amp;lt;OS&amp;gt; C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-bg.exe [RESULTAT] Contient le modèle de détection du logiciel publicitaire ADWARE/CrossRider.A.5530 [REMARQUE] Une copie de sécurité a été créée sous le nom 57f6f9de.qua ( QUARANTAINE ) [REMARQUE] Fichier supprimé. [0] Type d'archive: RSRC --&amp;gt; C:\Program Files (x86)\ClockworkMod\Helium\usb_driver\amd64\WUDFUpdate_01009.dll [1] Type d'archive: RSRC --&amp;gt; C:\Program Files (x86)\ClockworkMod\Helium\usb_driver\i386\winusbcoinstaller2.dll [2] Type d'archive: RSRC --&amp;gt; C:\Program Files (x86)\ClockworkMod\Helium\usb_driver\i386\WUDFUpdate_01009.dll [3] Type d'archive: RSRC --&amp;gt; C:\Program Files (x86)\Western Digital\Passport III Essential Tools\Google\Picasa\setup.exe [4] Type d'archive: RSRC --&amp;gt; C:\Users\M\Downloads\aeron_patch_3.zip [5] Type d'archive: ZIP --&amp;gt; system/GameGuard.des [RESULTAT] Le fichier est comprimé à l'aide d'un programme de compression inhabituel (PCK/Themida). Veuillez vérifier l'origine de ce fichier. [AVERTISSEMENT] Impossible de réparer les fichiers dans les archives C:\Users\M\Downloads\aeron_patch_3.zip [RESULTAT] Le fichier est comprimé à l'aide d'un programme de compression inhabituel (PCK/Themida). Veuillez vérifier l'origine de ce fichier. [REMARQUE] Une copie de sécurité a été créée sous le nom 4f72c3f8.qua ( QUARANTAINE ) [REMARQUE] Fichier supprimé. --&amp;gt; C:\Users\M\Downloads\setup.exe [5] Type d'archive: NSIS --&amp;gt; ProgramFilesDir/[PluginsDir]/Convert.dll [RESULTAT] Contient le modèle de détection de l'application APPL/OutBrowse.AA [AVERTISSEMENT] Impossible de réparer les fichiers dans les archives C:\Users\M\Downloads\setup.exe [RESULTAT] Contient le modèle de détection de l'application APPL/OutBrowse.AA [REMARQUE] Une copie de sécurité a été créée sous le nom 1d2f9401.qua ( QUARANTAINE ) [REMARQUE] Fichier supprimé. --&amp;gt; C:\Users\M\Downloads\system.rar [5] Type d'archive: RAR --&amp;gt; system\GameGuard.des [RESULTAT] Le fichier est comprimé à l'aide d'un programme de compression inhabituel (PCK/Themida). Veuillez vérifier l'origine de ce fichier. [AVERTISSEMENT] Impossible de réparer les fichiers dans les archives C:\Users\M\Downloads\system.rar [RESULTAT] Le fichier est comprimé à l'aide d'un programme de compression inhabituel (PCK/Themida). Veuillez vérifier l'origine de ce fichier. [REMARQUE] Une copie de sécurité a été créée sous le nom 7b1bdbd5.qua ( QUARANTAINE ) [REMARQUE] Fichier supprimé. F:\Lineage play\system\GameGuard.des [RESULTAT] Le fichier est comprimé à l'aide d'un programme de compression inhabituel (PCK/Themida). Veuillez vérifier l'origine de ce fichier. [REMARQUE] Une copie de sécurité a été créée sous le nom 3e858b76.qua ( QUARANTAINE ) [REMARQUE] Fichier supprimé. Recherche débutant dans 'D:\' &amp;lt;DATA&amp;gt; Recherche débutant dans 'F:\' &amp;lt;SDATA1&amp;gt; --&amp;gt; C:\Windows\SoftwareDistribution\Download\7f2978f1d1671d4b51e0af207f92f9775f930677 [5] Type d'archive: CAB (Microsoft) --&amp;gt; winusbcoinstaller2.dll [6] Type d'archive: RSRC --&amp;gt; C:\Windows\System32\WinUSBCoInstaller2.dll [7] Type d'archive: RSRC --&amp;gt; C:\Windows\System32\DriverStore\FileRepository\android_winusb.inf_amd64_neutral_f685ef2e2cb1fb2b\amd64\WinUSBCoInstaller2.dll [8] Type d'archive: RSRC --&amp;gt; C:\Windows\System32\DriverStore\FileRepository\android_winusb_win8.inf_amd64_neutral_451ff3f992127ecc\WinUSBCoInstaller2.dll [9] Type d'archive: RSRC --&amp;gt; D:\WD\Google\Picasa\setup.exe [10] Type d'archive: RSRC --&amp;gt; \\?\F:\clips &amp;amp; applis Android\Les.Indispensables.APK_ANDROID.FRENCH.CanOn\Les.Indispensables.APK_ANDROID.FRENCH.CanOn\Smart keyboard pro 4.6.1 + 20 Skins\Smart Keyboard Pro 4.6.1.apk [AVERTISSEMENT] Impossible de lire le fichier! F:\clips &amp;amp; applis Android\Les.Indispensables.APK_ANDROID.FRENCH.CanOn\Les.Indispensables.APK_ANDROID.FRENCH.CanOn\Smart keyboard pro 4.6.1 + 20 Skins\Smart Keyboard Pro 4.6.1.apk [AVERTISSEMENT] Impossible de lire le fichier! F:\Lineage II High Five Installer\system\GameGuard.des [RESULTAT] Le fichier est comprimé à l'aide d'un programme de compression inhabituel (PCK/Themida). Veuillez vérifier l'origine de ce fichier. [REMARQUE] Une copie de sécurité a été créée sous le nom 419e1236.qua ( QUARANTAINE ) [REMARQUE] Fichier supprimé. Recherche débutant dans 'G:\' &amp;lt;SDATA2&amp;gt; Fin de la recherche: dimanche 13 juillet 2014 19:02 Temps écoulé: 7:04:36 Heure(s) La recherche a été effectuée intégralement. 60761 Les répertoires ont été contrôlés 2302904 Des fichiers ont été contrôlés 9 Des virus ou programmes indésirables ont été trouvés 0 Des fichiers ont été classés comme suspects 6 Des fichiers ont été supprimés 0 Des virus ou programmes indésirables ont été réparés 6 Les fichiers ont été déplacés dans la quarantaine 0 Les fichiers ont été renommés 0 Impossible de scanner des fichiers 2302895 Fichiers non infectés 31726 Les archives ont été contrôlées 4 Avertissements 6 Consignes ____________________________________________________________________________________________________________________________________________________________________
  9. lucdemarseille

    Écran bleu...

    en attendant une reponse je suis aller voir ce qu'etait CLOCK_WATCHDOG_TIMEOUT et d'apres ce que j'ai vu il se pourrait que cela ait un rapport avec des drivers je dois vous dire que depuis que j'ai mis les drivers de la CG à jour j'ai souvent un message "Le pilote d'affichage ne répondait plus et a été récupéré" un truc dans ce style merci
  10. lucdemarseille

    Écran bleu...

    voici le rapport merci System Information (local) computer name: MASTERPARTAN-PC windows version: Windows 7 Service Pack 1, 6.1, build: 7601 windows dir: C:\Windows Hardware: G73Jw, ASUSTeK Computer Inc. CPU: GenuineIntel Intel® Core i7 CPU Q 740 @ 1.73GHz Intel586, level: 6 8 logical processors, active mask: 255 RAM: 8510619648 total VM: 2147352576, free: 1874497536 Crash Dump Analysis Crash dump directory: C:\Windows\Minidump Crash dumps are enabled on your computer. On Wed 29/01/2014 18:32:44 GMT your computer crashed crash dump file: C:\Windows\Minidump\012914-19468-01.dmp This was probably caused by the following module: ntoskrnl.exe (nt+0x75BC0) Bugcheck code: 0x101 (0x19, 0x0, 0xFFFFF880032F9180, 0x6) Error: CLOCK_WATCHDOG_TIMEOUT file path: C:\Windows\system32\ntoskrnl.exe product: Microsoft® Windows® Operating System company: Microsoft Corporation description: NT Kernel & System Bug check description: This indicates that an expected clock interrupt on a secondary processor, in a multi-processor system, was not received within the allocated interval. This appears to be a typical software driver bug and is not likely to be caused by a hardware problem. This problem might be caused by a thermal issue. The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time. Conclusion One crash dump has been found and analyzed. No offending third party drivers have been found. Consider using WhoCrashed Professional which offers more detailed analysis using symbol resolution. Also configuring your system to produce a full memory dump may help you. Read the topic general suggestions for troubleshooting system crashes for more information. Note that it's not always possible to state with certainty whether a reported driver is actually responsible for crashing your system or that the root cause is in another module. Nonetheless it's suggested you look for updates for the products that these drivers belong to and regularly visit Windows update or enable automatic updates for Windows. In case a piece of malfunctioning hardware is causing trouble, a search with Google on the bug check errors together with the model name and brand of your computer may help you investigate this further.
  11. bonjour à tous et bonne année je me tourne une nouvelle fois vers vous car mon pc donne des signes de fatigue... en effet, depuis quelques temps, il est plus long avec des ecrans bleus aleatoires avant hier j'ai pris le taureau par les cornes et, l'ai ouvert afin de le depoussierer avec soins ainsi qu'un bon coup d'antivirus (avira antivir free), spybot search & destroy et CCleaner pensant que tout rentrerait dans l'ordre. mais les ecrans bleus sont revenus.... je reste dans le flou et compte sur vous je reste dans l'attente et vous remercie par avance
  12. bonjour à tous le pc de mon fils ayant rendu l'âme il est entrain de squatter le mien pour son jeu LoL et autres je viens d'aller me faire faire un devis pour restaurer une vieille tour que j'avais pensant m'en sortir à bon marché (+/- 400€) et le devis est vite monté à 877 € sachant qu'il ne me faut que : -une Carte Mere (celle proposee est une Asus Z87-K socket LGA 1150 = 127.90€) -un processeur (celui proposé est un Intel I7 -4770 3.4GHz Haswell = 309€) -de la mémoire (proposee Corsair Vengeance 8 Go kit 2x4 Go DDR-SDRAM PC 12800 CL9 garantie 10 ans = 71.20€) -une Carte Graphique (celle proposee Asus GTX660 TI = 269€) -une alimentation (proposee Cooler Master Silent Pro M2 720W 80 PLUS Bronze = 99.90€) je me tourne vers vous afin de savoir s'il n'y a pas d'equivalence dans d'autres produits/marques pour descendre le prix pour le reste j'ai deja je reste dans l'attente merci
  13. bonjour à vous je viens d'offrir un nouveau PC PACKARD BELL EasyNote LV44-HC-015FR à ma fille et je ne trouve pas de Bluetooth dessus ? alors avant de courir acheter une clé je voulais vous poser la question je ne trouve pas de réponse sur le net merci d'avance
×
×
  • Créer...