Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e) (modifié)

Salut,

 

J'ai eu des problèmes de virus sur mon pc. J'ai à priori réussi à les mettre hors d'état de nuire avec avast, malware bytes et pre_scan.

C'est sur ce dernier logiciel que j'ai une question, en effet en regardant le dossier de pre_scan je vois que la quarantaine est pleine (161 fichiers dont beaucoup de temps quand même). J'ai la possibilité de les supprimer de manière classique, en les mettant à la corbeille et en vidant la corbeille. Mais je me demande si ce n'est pas risqué. J'aurai donc voulu savoir comment supprimer tous ces fichiers proprement.

 

Merci

Modifié par pseudobidon_

Posté(e) (modifié)

Sinon, si quelqu'un voulait analyser le log de pre_scan, he's welcome

 

 

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan | 2.617 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

 

¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤

 

~ Mis à jour le 17/06/2012 | 20.00 par g3n-h@ckm@n

~ Informations Evolution : historique de l'outil

~ Informations sur les switchs Pre_Script : Les Switchs

~ Feedback Pre_scan : Feedback Pre_scan

~ Merci à Slyk & Saachaa pour leur apport à l'évolution de l'outil

 

~ Utilisateur : july (Administrateurs) | SID = S-1-5-21-589293692-2407116966-2412594055-1000

~ Ordinateur : JULY-PC

 

~ Système d'exploitation : Windows 7 Home Premium (64 bits) HomePremium Service Pack 1

~ Type d'installation : Client

~ Enregistré sous : july

~ Processeur : Intel® Core i3-2310M CPU @ 2.10GHz

~ Identification : Intel64 Family 6 Model 42 Stepping 7

 

Pare-feu windows : Actif

Windows Defender : Inactif

 

~ Mémoire RAM = Total (KB) : 4169860 | Used (%) : 34 | Free (KB) : 2716100

~ Pagefile = Total (KB) : 8337860 | Free (KB) : 6957210

~ Virtuelle = Total (KB) : 4194180 | Free (KB) : 3997080

 

¤¤¤¤¤¤¤¤¤¤ | Scripts de boot

 

C:\Windows\Setup\Scripts\labelc2rdrive.exe

C:\Windows\Setup\Scripts\labelc2rdrive.exe.config

C:\Windows\Setup\Scripts\oobe.cmd

C:\Windows\Setup\Scripts\readme.txt

C:\Windows\Setup\Scripts\SetupComplete.cmd

 

¤¤¤¤¤¤¤¤¤¤ | Drives

 

c:\ -> [Fixed] | [OS] | Total : 190780 Mo | Free : 47000 Mo -> NTFS

d:\ -> [Fixed] | [DATA] | Total : 260560 Mo | Free : 260140 Mo -> NTFS

f:\ -> [Fixed] | [CIBOX-320] | Total : 305240 Mo | Free : 294040 Mo -> NTFS

 

Scan : 15:59:45 | 18/06/2012

 

¤¤¤¤¤¤¤¤¤¤ | Navigateurs

 

Internet Explorer : 9.0.8112.16421

 

¤ Par défaut :

 

[HKCR\http | command] : "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1"

 

 

¤¤¤¤¤¤¤¤¤¤ | Frameworks

 

~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v1.0.3705

~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v1.1.4322

~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v1.0.3705

~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v1.1.4322

~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v2.0.50727

~ [14/07/2009 07:32:38] - C:\Windows\Microsoft.net\Framework\v3.0

~ [14/07/2009 07:32:38] - C:\Windows\Microsoft.net\Framework\v3.5

~ [17/01/2012 00:10:13] - C:\Windows\Microsoft.net\Framework\v4.0.30319

 

¤¤¤¤¤¤¤¤¤¤ | Windows Updates

 

 

 

¤¤¤¤¤¤¤¤¤¤ | Sessions | Profiles | Directories

 

~ [HKLM | ProfileList\S-1-5-21-589293692-2407116966-2412594055-1000] : ProfileImagePath -> C:\Users\july

~ [HKLM | ProfileList\S-1-5-21-589293692-2407116966-2412594055-1000] : RefCount -> 3

~ [HKLM | ProfileList\S-1-5-21-589293692-2407116966-2412594055-1000] : State -> 0

 

~ C:\Windows\system32\config\systemprofile

~ C:\Windows\ServiceProfiles\LocalService

~ C:\Windows\ServiceProfiles\NetworkService

~ C:\Users\july

 

[HKLM | ProfileLoader\{F5441CBB-AE7D-4495-905B-161047E58936}] : DllName -> userenv.dll

 

¤¤¤¤¤¤¤¤¤¤ | Contrôle MD5

 

[MD5.332FEAB1435662FC6C672E25BEB37BE3] - [14/01/2012 11:22:15] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\explorer.exe

[MD5.C235A51CB740E45FFA0EBFB9BAFCDA64] - [14/07/2009 01:56:52] - (.© Microsoft Corporation. - Explorateur Windows.) - [2801 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe

[MD5.0862495E0C825893DB75EF44FAEA8E93] - [14/01/2012 11:22:16] - (.© Microsoft Corporation. - Explorateur Windows.) - [2803 Ko] - (6.1.7600.16768) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe

[MD5.E38899074D4951D31B4040E994DD7C8D] - [14/01/2012 11:22:16] - (.© Microsoft Corporation. - Explorateur Windows.) - [2803.5 Ko] - (6.1.7600.20910) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe

[MD5.AC4C51EB24AA95B77F705AB159189E24] - [18/02/2011 21:49:38] - (.© Microsoft Corporation. - Explorateur Windows.) - [2805 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe

[MD5.332FEAB1435662FC6C672E25BEB37BE3] - [14/01/2012 11:22:15] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe

[MD5.3B69712041F3D63605529BD66DC00C48] - [14/01/2012 11:22:16] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.21669) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe

[MD5.15BC38A7492BEFE831966ADB477CF76F] - [14/07/2009 01:41:14] - (.© Microsoft Corporation. - Explorateur Windows.) - [2552 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe

[MD5.2AF58D15EDC06EC6FDACCE1F19482BBF] - [14/01/2012 11:22:15] - (.© Microsoft Corporation. - Explorateur Windows.) - [2553.5 Ko] - (6.1.7600.16768) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe

[MD5.255CF508D7CFB10E0794D6AC93280BD8] - [14/01/2012 11:22:15] - (.© Microsoft Corporation. - Explorateur Windows.) - [2553.5 Ko] - (6.1.7600.20910) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe

[MD5.40D777B7A95E00593EB1568C68514493] - [18/02/2011 21:49:51] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe

[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - [14/01/2012 11:22:14] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.17567) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe

[MD5.0FB9C74046656D1579A64660AD67B746] - [14/01/2012 11:22:15] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.21669) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe

[MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 01:19:49] - (.© Microsoft Corporation. - Processus d’exécution client-serveur.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\csrss.exe

[MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 01:19:49] - (.© Microsoft Corporation. - Processus d’exécution client-serveur.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-csrss_31bf3856ad364e35_6.1.7600.16385_none_b4d8d57efdc6b4f3\csrss.exe ->

[MD5.24ACB7E5BE595468E3B9AA488B9B4FCB] - [14/07/2009 01:19:46] - (.© Microsoft Corporation. - Applications Services et Contrôleur.) - [321 Ko] - (6.1.7600.16385) - C:\Windows\System32\services.exe

[MD5.24ACB7E5BE595468E3B9AA488B9B4FCB] - [14/07/2009 01:19:46] - (.© Microsoft Corporation. - Applications Services et Contrôleur.) - [321 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe

[MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Gestionnaire de sessions Windows.) - [110 Ko] - (6.1.7600.16385) - C:\Windows\System32\smss.exe

[MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Windows Session Manager.) - [110 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe

[MD5.BAFE84E637BF7388C96EF48D4D3FDD53] - [18/02/2011 21:49:55] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [30 Ko] - (6.1.7601.17514) - C:\Windows\System32\userinit.exe

[MD5.61AC3EFDFACFDD3F0F11DD4FD4044223] - [18/02/2011 21:49:42] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\SysWOW64\userinit.exe

[MD5.6F8F1376A13114CC10C0E69274F5A4DE] - [14/07/2009 01:50:33] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [29.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe

[MD5.BAFE84E637BF7388C96EF48D4D3FDD53] - [18/02/2011 21:49:55] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [30 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

[MD5.6DE80F60D7DE9CE6B8C2DDFDF79EF175] - [14/07/2009 01:34:20] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [25.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe

[MD5.61AC3EFDFACFDD3F0F11DD4FD4044223] - [18/02/2011 21:49:42] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe

[MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 01:52:37] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\System32\wininit.exe

[MD5.B5C5DCAD3899512020D135600129D665] - [14/07/2009 01:36:49] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [94 Ko] - (6.1.7600.16385) - C:\Windows\SysWOW64\wininit.exe

[MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 01:52:37] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_8ce7aa761e01ad49\wininit.exe

[MD5.B5C5DCAD3899512020D135600129D665] - [14/07/2009 01:36:49] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [94 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\x86_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_30c90ef265a43c13\wininit.exe

[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - [18/02/2011 21:49:42] - (.© Microsoft Corporation. - Application d’ouverture de session Windows.) - [381.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\winlogon.exe

[MD5.132328DF455B0028F13BF0ABEE51A63A] - [14/07/2009 01:52:48] - (.© Microsoft Corporation. - Windows Logon Application.) - [380 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe

[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - [18/02/2011 21:49:42] - (.© Microsoft Corporation. - Application d’ouverture de session Windows.) - [381.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe

[MD5.1C7857B62DE5994A75B054A9FD4C3825] - [16/02/2012 21:44:07] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487 Ko] - (6.1.7601.17752) - C:\Windows\System32\drivers\afd.sys

[MD5.B9384E03479D2506BC924C16A3DB87BC] - [14/07/2009 01:21:44] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16385_none_33dd3439781e25f7\afd.sys

[MD5.6EF20DDF3172E97D69F596FB90602F29] - [14/01/2012 11:21:53] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488 Ko] - (6.1.7600.16802) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16802_none_3430bc3977dfec2d\afd.sys

[MD5.DB9D6C6B2CD95A9CA414D045B627422E] - [16/02/2012 21:44:07] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7600.16937) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16937_none_34154fcd77f3bbda\afd.sys

[MD5.FBFF8B7C9D116229E9208A0D1CAEB49B] - [14/01/2012 11:21:53] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488 Ko] - (6.1.7600.20951) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.20951_none_3483491e9126fe55\afd.sys

[MD5.CCA39961E76B491DDF44B1E90FC8971D] - [16/02/2012 21:44:07] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7600.21115) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.21115_none_34b263fe91032456\afd.sys

[MD5.D31DC7A16DEA4A9BAF179F3D6FBDB38C] - [18/02/2011 21:49:39] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17514_none_360e4801750ca991\afd.sys

[MD5.D5B031C308A409A0A576BFF4CF083D30] - [14/01/2012 11:21:53] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7601.17603) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17603_none_3618198975057170\afd.sys

[MD5.1C7857B62DE5994A75B054A9FD4C3825] - [16/02/2012 21:44:07] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487 Ko] - (6.1.7601.17752) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17752_none_35e10b89752ee0f5\afd.sys

[MD5.F4AD06143EAC303F55D0E86C40802976] - [14/01/2012 11:21:53] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7601.21712) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21712_none_3695e61e8e2c13d4\afd.sys

[MD5.36A14FD1A23F57046361733B792CA8DB] - [16/02/2012 21:44:07] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [486.5 Ko] - (6.1.7601.21887) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21887_none_364f3a028e605345\afd.sys

[MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\drivers\atapi.sys

[MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys

[MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

[MD5.F036CE71586E93D94DAB220D7BDF4416] - [18/02/2011 21:49:57] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\cdrom.sys

[MD5.83D2D75E1EFB81B3450C18131443F7DB] - [14/07/2009 01:19:54] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys

[MD5.F036CE71586E93D94DAB220D7BDF4416] - [18/02/2011 21:49:57] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

[MD5.09594D1089C523423B32A4229263F068] - [18/02/2011 21:49:47] - (.© Microsoft Corporation. - MBT Transport driver.) - [255.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\netbt.sys

[MD5.9162B273A44AB9DCE5B44362731D062A] - [14/07/2009 01:21:29] - (.© Microsoft Corporation. - MBT Transport driver.) - [253 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-netbt_31bf3856ad364e35_6.1.7600.16385_none_bc59ba0910f52e0c\netbt.sys

[MD5.09594D1089C523423B32A4229263F068] - [18/02/2011 21:49:47] - (.© Microsoft Corporation. - MBT Transport driver.) - [255.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-netbt_31bf3856ad364e35_6.1.7601.17514_none_be8acdd10de3b1a6\netbt.sys

[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [18/02/2011 21:49:36] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\tdx.sys

[MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - [14/07/2009 01:21:15] - (.© Microsoft Corporation. - TDI Translation Driver.) - [97.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-tdi-over-tcpip_31bf3856ad364e35_6.1.7600.16385_none_4632b9f2f5c6af5e\tdx.sys

[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [18/02/2011 21:49:36] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-tdi-over-tcpip_31bf3856ad364e35_6.1.7601.17514_none_4863cdbaf2b532f8\tdx.sys

[MD5.0D08D2F3B3FF84E433346669B5E0F639] - [18/02/2011 21:49:55] - (.© Microsoft Corporation. - Pilote de cliché instantané du volume.) - [288.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\volsnap.sys

[MD5.58F82EED8CA24B461441F9C3E4F0BF5C] - [14/07/2009 01:20:09] - (.© Microsoft Corporation. - Volume Shadow Copy Driver.) - [288.08 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_volume.inf_31bf3856ad364e35_6.1.7600.16385_none_71aba92815c60174\volsnap.sys

[MD5.0D08D2F3B3FF84E433346669B5E0F639] - [18/02/2011 21:49:55] - (.© Microsoft Corporation. - Volume Shadow Copy Driver.) - [288.88 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_volume.inf_31bf3856ad364e35_6.1.7601.17514_none_73dcbcf012b4850e\volsnap.sys

 

16:01:12

 

¤¤¤¤¤¤¤¤¤¤ | Processus

 

atiesrxx.exe (980) -> Processus stoppé

atieclxx.exe (1376) -> Processus stoppé

wlanext.exe (1404) -> Processus stoppé

FBAgent.exe (1412) -> Processus stoppé

conhost.exe (1420) -> Processus stoppé

AsLdrSrv.exe (1504) -> Processus stoppé

GFNEXSrv.exe (1568) -> Processus stoppé

AvastSvc.exe (1600) -> Processus stoppé

spoolsv.exe (1800) -> Processus stoppé

InsOnSrv.exe (2040) -> Processus stoppé

sftvsa.exe (2204) -> Processus stoppé

WLIDSVC.EXE (2368) -> Processus stoppé

WLIDSVCM.EXE (2816) -> Processus stoppé

sftlist.exe (2864) -> Processus stoppé

taskhost.exe (2976) -> Processus stoppé

explorer.exe (2304) -> Processus stoppé

InsOnWMI.exe (3104) -> Processus stoppé

taskeng.exe (3132) -> Processus stoppé

AsScrPro.exe (3160) -> Processus stoppé

taskeng.exe (3296) -> Processus stoppé

LiveUpdate.exe (3400) -> Processus stoppé

ATKOSD2.exe (3412) -> Processus stoppé

BatteryLife.exe (3420) -> Processus stoppé

ETDCtrl.exe (3632) -> Processus stoppé

AmIcoSinglun64.exe (3656) -> Processus stoppé

RAVBg64.exe (3680) -> Processus stoppé

sidebar.exe (3688) -> Processus stoppé

CLMLSvc.exe (3696) -> Processus stoppé

cacaoweb.exe (3796) -> Processus stoppé

Skype.exe (3804) -> Processus stoppé

SonicFocusTray.exe (4024) -> Processus stoppé

AvastUI.exe (4088) -> Processus stoppé

DMedia.exe (3128) -> Processus stoppé

HControlUser.exe (3316) -> Processus stoppé

wcourier.exe (3284) -> Processus stoppé

RAVCpl64.exe (3596) -> Processus stoppé

CVHSVC.EXE (4820) -> Processus stoppé

SearchIndexer.exe (4984) -> Processus stoppé

TiMiniService.exe (4656) -> Processus stoppé

TiResumeSrv.exe (4764) -> Processus stoppé

ETDCtrlHelper.exe (5436) -> Processus stoppé

wmpnetwk.exe (5504) -> Processus stoppé

PresentationFontCache.exe (5856) -> Processus stoppé

LMS.exe (1856) -> Processus stoppé

UNS.exe (1872) -> Processus stoppé

wuauclt.exe (4244) -> Processus stoppé

taskhost.exe (4220) -> Processus stoppé

taskeng.exe (5720) -> Processus stoppé

 

¤¤¤¤¤¤¤¤¤¤ | Processus en cours

 

Demarrage : Normal

 

3112 | C:\Users\july\Desktop\winlogon (1).exe - july - High - "C:\Users\july\Desktop\winlogon (1).exe" - 2304

3472 | C:\Program Files\AVAST Software\Avast\AvastSvc.exe - Système - Normal - "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" - 656

4832 | C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe - Système - Normal - "C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe" - 656

2412 | C:\Pre_Scan\Pv.exe - july - Normal - C:\Pre_Scan\Pv.exe -o"%i | %f - %u - %p - %l - %r" - 2468

 

¤¤¤¤¤¤¤¤¤¤ | Winlogon

 

 

¤

 

[HKLM | Winlogon] | Shell : explorer.exe

[HKLM | Winlogon] | AutoRestartShell : -> 0

[HKLM | Winlogon] | userinit : userinit.exe, -> C:\Windows\System32\userinit.exe,

[HKLM | Winlogon] | PowerDownAfterShutdown : -> 1

[HKLM | Winlogon] | System :

[HKLM | Winlogon] | Taskman :

[HKLM | Winlogon] | VMApplet : SystemPropertiesPerformance.exe /pagefile

 

¤¤¤¤¤¤¤¤¤¤ | Winlogon\Notify

 

 

¤¤¤¤¤¤¤¤¤¤ | Associations

 

[.exe] : exefile

[exefile | command] : "%1" %*

[.com] : comfile

[comfile | command] : "%1" %*

[.reg] : regfile

[regfile | command] : regedit.exe "%1"

[.scr] : scrfile

[scrfile | command] : "%1" /S

[.bat] : batfile

[batfile | command] : "%1" %*

[.cmd] : cmdfile

[cmdfile | command] : "%1" %*

[.pif] : piffile

[piffile | command] : "%1" %*

[.url] : InternetShortcut

[internetShortcut | command] : "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l

[Application.Manifest | command] : rundll32.exe dfshim.dll,ShOpenVerbApplication %1

[Application.Reference | command] : rundll32.exe dfshim.dll,ShOpenVerbShortcut %1|%2

[Folder | command] : %SystemRoot%\Explorer.exe -> C:\Windows\explorer.exe

 

¤

 

[iE | Command] | @ : C:\Program Files (x86)\Internet Explorer\iexplore.exe -> "C:\Program Files (x86)\Internet Explorer\iexplore.exe"

[Applications | IE | Command] | @ : "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1

[Chrome | Command] | @ : "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -> "C:\Users\july\AppData\Local\Google\Chrome\Application\Chrome.exe"

[Assoc | Applications] | @ : File extension redirect -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s

 

¤¤¤¤¤¤¤¤¤¤ | Corrections diverses

 

[HKLM | HideDesktopIcons\ClassicStartMenu] | {9343812e-1c37-4a49-a12e-4b2d810d956b} : 1 -> 0

[HKLM | HideDesktopIcons\NewStartPanel] | {F02C1A0D-BE21-4350-88B0-7367FC96EF3C} : 1 -> 0

[HKLM | HideDesktopIcons\NewStartPanel] | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> 0

[HKLM | HideDesktopIcons\NewStartPanel] | {208D2C60-3AEA-1069-A2D7-08002B30309D} : 1 -> 0

[HKLM | HideDesktopIcons\NewStartPanel] | {871C5380-42A0-1069-A2EA-08002B30309D} : 1 -> 0

[HKLM | HideDesktopIcons\NewStartPanel] | {5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} : 1 -> 0

[HKLM | HideDesktopIcons\NewStartPanel] | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> 0

[HKLM | HideDesktopIcons\NewStartPanel] | {9343812e-1c37-4a49-a12e-4b2d810d956b} : 1 -> 0

[HKLM | Advanced\Folder\Hidden\SHOWALL] | CheckedValue : 1

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Explorer\Advanced] | Start_PowerButtonAction : 2

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Desktop] | Wallpaper : C:\Users\july\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg

[HKU\S-1-5-19 | Policies\Explorer] | NoDesktop : -> 0

[HKU\S-1-5-20 | Policies\Explorer] | NoDesktop : -> 0

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Policies\Explorer] | NoDesktop : -> 0

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000_Classes | Policies\Explorer] | NoDesktop : -> 0

[HKU\S-1-5-18 | Policies\Explorer] | NoDesktop : -> 0

[HKLM | policies\Explorer] | NoDesktop : -> 0

[HKU\S-1-5-19 | Explorer\Advanced] | Hidden : -> 0

[HKU\S-1-5-20 | Explorer\Advanced] | Hidden : -> 0

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Explorer\Advanced] | Hidden : 2 -> 0

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000_Classes | Explorer\Advanced] | Hidden : -> 0

[HKU\S-1-5-18 | Explorer\Advanced] | Hidden : -> 0

[HKLM | policies\Explorer] | NoActiveDesktop : 1 -> 0

[HKLM | policies\Explorer] | NoActiveDesktopChanges : 1 -> 0

 

16:01:13

 

 

¤¤¤¤¤¤¤¤¤¤ | Services

 

[RPCSS] | Start : 2 : Actif

[Cmbatt] | Start : 3 : Actif

[Compbatt] | Start : 0 : Actif

[Ndisuio] | Start : 3 : Actif

[Power] | Start : 2 : Actif

[Profsvc] | Start : 2 : Actif

[PlugPlay] | Start : 2 : Actif

[PEAUTH] | Start : 2 : Actif

[nsi] | Start : 2 : Actif

[NLASvc] | Start : 2 : Actif

[MPSsvc] | Start : 2 : Actif

[MMCSS] | Start : 2 : Actif

[luafv] | Start : 2 : Actif

[lltdio] | Start : 2 : Actif

[iphlpsvc] | Start : 2 : Actif

[iKEEXT] | Start : 2 : Actif

[gpsvc] | Start : 2 : Actif

[lmhosts] | Start : 2 : Actif

[LanmanWorkstation] | Start : 2 : Actif

[LanmanServer] | Start : 2 : Actif

[agp440] | Start : 3 -> 2 : Inactif

[AudioEndpointBuilder] | Start : 2 : Actif

[Audiosrv] | Start : 2 : Actif

[bFE] | Start : 2 : Actif

[bits] | Start : 2 : Actif

[CryptSvc] | Start : 2 : Actif

[EapHost] | Start : 3 -> 2 : Actif

[Wlansvc] | Start : 2 : Actif

[sharedAccess] | Start : 4 -> 2 : Inactif

[windefend] | Start : 3 -> 2 : Inactif

[wuauserv] | Start : 2 : Actif

[WerSvc] | Start : 3 -> 2 : Inactif

[wscsvc] | Start : 2 : Actif

 

16:01:14

 

 

¤¤¤¤¤¤¤¤¤¤ | Internet Explorer

 

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Main] | Start Page : Babylon Search -> Google

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Main] | Local Page : C:\Windows\system32\blank.htm

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Main] | Search Page : Bing -> Welcome to Windows Live

 

[HKLM | Search] | SearchAssistant : -> http://www.google.com/ie

[HKLM | Main] | Start Page : Asus | MSN -> MSN Hotmail.fr, Messenger, Skype, Actualité, Sport, People, Femmes - MSN France

[HKLM | Main] | Local Page : C:\Windows\SysWOW64\blank.htm

[HKLM | Main] | Default_Search_URL : Bing

[HKLM | Main] | Default_Page_URL : MSN Hotmail.fr, Messenger, Skype, Actualité, Sport, People, Femmes - MSN France

[HKLM | Main] | Search Page : Bing

[HKLM | AboutURLs] | Tabs : -> res://ieframe.dll/tabswelcome.htm

 

¤

 

[HKU\S-1-5-19 | Internet settings] | EnableHttp1_1 : 1

[HKU\S-1-5-20 | Internet settings] | EnableHttp1_1 : 1

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Internet settings] | EnableHttp1_1 : 1

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Internet settings] | MigrateProxy : 1

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Internet settings] | WarnonZoneCrossing : 0 -> 1

[HKU\S-1-5-19 | Internet settings] | AutoConfigProxy : wininet.dll

[HKU\S-1-5-20 | Internet settings] | AutoConfigProxy : wininet.dll

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000 | Internet settings] | AutoConfigProxy : wininet.dll

 

¤

 

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}] | (Search the web (Babylon)) -> Babylon Search

 

[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] | (Bing) -> {searchTerms} - Bing

[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}] | (Google) -> {searchTerms} - Recherche Google

[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}] | (Google) -> {searchTerms} - Recherche Google

 

 

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{000209FF-0000-0000-C000-000000000046}] | (winword.exe) -> C:\Program Files (x86)\Microsoft Office\Office14

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0002df01-0000-0000-c000-000000000046}] | (iexplore.exe) -> C:\Program Files (x86)\Internet Explorer

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{003B91A6-61E3-4591-891D-01E94C8CB11E}] | (Silverlight.Configuration.exe) -> C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{03288CB3-3893-46D1-8D58-B2F8BB6FF5BF}] | (MSACCESS.EXE) -> C:\Program Files (x86)\Microsoft Office\Office14

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{054aae20-4bea-4347-8a35-64a533254a9d}] | (tabtip.exe) -> C:\Program Files (x86)\Common Files\Microsoft Shared\Ink

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a}] | (wpcer.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{08f24d68-9087-4b24-81ad-7b34af3e3ed5}] | (Acrobat Elements.exe) -> C:\Program Files (x86)\adobe\acrobat 6.0\Acrobat Elements

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0a402d70-1f10-4ae7-bec9-286a98240695}] | (winfxdocobj.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1138506a-b949-46a7-b6c0-ee26499fdeaf}] | (wuapp.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{130c40f0-1bcb-4852-8b63-291cf90a600b}] | (msdt.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{186e0934-aee9-11da-961b-0014223d2a70}] | (dfsvc.exe) -> C:\Windows\microsoft.net\framework\v2.0.50727

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ec76a37-1762-46ff-9b14-765b3e6793be}] | (agcp.exe) -> C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1F1E561D-AF17-4510-B996-351BBA0862A7}] | () ->

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2391d819-9d17-44ec-9ac1-f6aa07549469}] | (wermgr.exe) -> %systemroot%\system32

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26fe7361-bd5a-4dcb-b309-c6f42dde661c}] | (ieinstal.exe) -> C:\Program Files (x86)\Internet Explorer

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{276B262C-9510-45f8-BDD0-D9CF4BF68476}] | (CVH.EXE) ->

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28A36D69-07EA-44CE-B298-1A8B3E8B6FE1}] | (Skype.exe) -> C:\Program Files (x86)\Skype\Phone\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2BBE903C-2776-4574-9855-EC1597ABE3D6}] | (excel.exe) -> C:\Program Files (x86)\Microsoft Office\Office14

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C3FAF69-6E33-483B-8291-BD917201109A}] | (companionuser.exe) -> C:\Program Files (x86)\Windows Live\Companion\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{380689D0-AFAA-47E6-B80E-A33436FE314B}] | (wlcomm.exe) -> C:\Program Files (x86)\Windows Live\Contacts\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43ABBB95-C0E9-497B-8BB9-B5FA08861705}] | (wlmail.exe) -> C:\Program Files (x86)\Windows Live\Mail\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4becf16c-74f0-429b-8d3e-4fba507ac661}] | (acrord32.exe) -> C:\Program Files (x86)\adobe\acrobat 7.0\reader

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FBAF6E6-C64B-49DB-AB1B-F93C607EBC71}] | (onenote.exe) -> C:\Program Files (x86)\Microsoft Office\Office14\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}] | (TbHelper2.exe) -> C:\Program Files (x86)\IMinent Toolbar

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{63D8D545-9A84-44bc-B2F8-CE1A786AB67B}] | () ->

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}] | (Iminent.Messengers.exe) -> C:\Program Files (x86)\Iminent\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}] | (wmplayer.exe) -> %ProgramFiles%\Windows Media Player

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}-32] | (wmplayer.exe) -> %ProgramFiles(x86)%\Windows Media Player

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999}] | (iedw.exe) -> C:\Program Files (x86)\Internet Explorer

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78c7b664-c9bf-4ce9-8b3a-b05d442e451e}] | (CertEnrollCtrl.exe) -> C:\Windows\SysWOW64\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7aaae723-5fb5-4b2d-9327-75519f336825}] | () ->

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7BBC017F-5144-426C-85CD-20AF8F2FFAFE}] | (wlstartup.exe) -> C:\Program Files (x86)\Windows Live\Installer\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7eb01fb2-f185-445a-94e4-ec4e1ba2202c}] | (verclsid.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85fc331e-bb64-4c53-ba25-3d8a956c02fd}] | (ctfmon.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88B89B96-F7B2-469D-8F22-5F3BE33DEDDE}] | (SkypeIEPluginBroker.exe) -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8cec58ae-07a1-11d9-b15e-000d56bfe6ee}] | (helppane.exe) -> C:\Windows

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8D13E03F-8289-4c15-A84F-7A8F655C830A}] | (NAMECONTROLSERVER.EXE) -> C:\Program Files (x86)\Microsoft Office\Office14

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9019d14b-638d-4383-bb95-441b7f57eafb}] | (wlstartup.exe) -> C:\Program Files (x86)\Windows Live\Installer\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95a4104c-1c49-4c2a-9830-1be0f47e926c}] | (acrobat.exe) -> C:\Program Files (x86)\adobe\acrobat 7.0\Acrobat

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9da1d2cb-796d-4bec-bbaa-0aa9ccd80e15}] | (Acrobat Elements.exe) -> C:\Program Files (x86)\adobe\acrobat 7.0\Acrobat Elements

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a1ad1bbb-3b33-4260-a74c-5fd8bc1479fc}] | (splwow64.exe) -> C:\Windows

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5054EC7-B9CB-4ad5-9F95-D8171A6D6BFA}] | () ->

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a5a2d52a-4944-47c4-a3e0-8bd92e14d953}] | (xpsviewer.exe) -> C:\Windows\SysWOW64\xpsviewer

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A6E2003F-95C5-4591-BA9A-0093080FDB5C}] | (OberonBroker.exe) -> C:\Program Files (x86)\Common Files\Oberon Media\OberonBroker\1.0.0.63

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}] | () ->

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{aff735eb-cdf9-4894-aa69-3e3131128618}] | (cmd.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B43A0C1E-B63F-4691-B68F-CD807A45DA01}] | (TSWbPrxy.exe) -> %systemroot%\system32

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD18A03F-31CC-4CC0-B52D-9E199122923D}] | () ->

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}] | (GoogleUpdateBroker.exe) -> C:\Program Files (x86)\Google\Update\1.3.21.111

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C442AC41-9200-4770-8CC0-7CDB4F245C55}] | (GoogleUpdate.exe) -> C:\Program Files (x86)\Google\Update

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8999AEC-AECE-4E27-9BCB-5358B13F9FF9}] | (dfsvc.exe) -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8999AED-AECE-4E27-9BCB-5358B13F9FF9}] | (dfsvc.exe) -> C:\Windows\Microsoft.NET\Framework64\v4.0.30319\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D133B285-8A43-4EC7-93BE-9B909C2370F5}] | (msnmsgr.exe) -> C:\Program Files (x86)\Windows Live\Messenger\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d8a5d001-3352-40db-9d1c-ed46683193b5}] | (WindowsLiveWriter.exe) -> C:\Program Files (x86)\Windows Live\Writer\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DB9524B3-24F4-48fa-91C5-B8EEF1C0A14F}] | () ->

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dc6bf185-7ae4-444e-8c35-e447b0d2bd1e}] | (notepad.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD993BDC-06E0-4131-B889-DD3B9AEBE253}] | (IEContentService.exe) -> C:\Program Files (x86)\Microsoft Office\Office14\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e5f90a07-7db7-4dcb-bd6d-d3fecd376ca3}] | (acrord32.exe) -> C:\Program Files (x86)\adobe\acrobat 6.0\reader

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}] | (Iminent.exe) -> C:\Program Files (x86)\Iminent\

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eee261cc-4b3e-46e7-affb-61f297155bf2}] | (presentationhost.exe) -> C:\Windows\SysWOW64

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6A6CA96-B08E-4429-BA30-39232494F292}] | (MSPUB.EXE) -> C:\Program Files (x86)\Microsoft Office\Office14

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}] | (FlashUtil10k_ActiveX.exe) -> C:\Windows\SysWOW64\Macromed\Flash

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fb9e068b-c612-4fa8-bdb9-d728a716a420}] | (acrobat.exe) -> C:\Program Files (x86)\adobe\acrobat 6.0\Acrobat

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC88B53C-9B2A-1A25-5867-C8612E79DBF6}] | (POWERPNT.EXE) -> C:\Program Files (x86)\Microsoft Office\Office14

 

 

 

¤¤¤¤¤¤¤¤¤¤ | DNS

 

[HKLM\SYSTEM\CCS | Tcpip\Parameters] | DhcpNameServer : 192.168.1.254

[HKLM\SYSTEM\ControlSet001 | Interfaces\{FA160483-5464-4A4F-885F-27A7A33F96B7}] | DhcpNameServer : 192.168.1.254

[HKLM\SYSTEM\ControlSet002 | Interfaces\{FA160483-5464-4A4F-885F-27A7A33F96B7}] | DhcpNameServer : 192.168.1.254

[HKLM\SYSTEM\CurrentControlSet | Interfaces\{FA160483-5464-4A4F-885F-27A7A33F96B7}] | DhcpNameServer : 192.168.1.254

 

¤¤¤¤¤¤¤¤¤¤ | Hosts

 

# 127.0.0.1 localhost

# ::1 localhost

 

2 ligne(s)

 

 

¤¤¤¤¤¤¤¤¤¤ | Traitement Fichiers | Dossiers | Registre

 

Mise en quarantaine : C:\$Recycle.bin\S-1-5-21-589293692-2407116966-2412594055-1000\$ICSXFD8.exe

Mise en quarantaine : C:\$Recycle.bin\S-1-5-21-589293692-2407116966-2412594055-1000\$ILA7BFG.exe

Supprimée : [HKLM\Software\Mircrosoft]

 

16:02:46

 

 

16:04:03

 

Mise en quarantaine : C:\Users\july\Desktop\cacaoweb.exe

Mise en quarantaine : C:\Users\All Users\FullRemove.exe

Mise en quarantaine : C:\Windows\Temp\CR_F4832.tmp

Supprimé : C:\Windows\Temp\CR_F4832.tmp

Mise en quarantaine : C:\Windows\Temp\DMI1DDC.tmp

Mise en quarantaine : C:\Windows\Temp\DMI2AA8.tmp

Mise en quarantaine : C:\Windows\Temp\DMI2E21.tmp

Mise en quarantaine : C:\Windows\Temp\DMI38CB.tmp

Mise en quarantaine : C:\Windows\Temp\DMI4385.tmp

Mise en quarantaine : C:\Windows\Temp\DMI4401.tmp

Mise en quarantaine : C:\Windows\Temp\DMI49BC.tmp

Mise en quarantaine : C:\Windows\Temp\DMI6103.tmp

Mise en quarantaine : C:\Windows\Temp\DMI6621.tmp

Mise en quarantaine : C:\Windows\Temp\DMI710A.tmp

Mise en quarantaine : C:\Windows\Temp\DMI7FAA.tmp

Mise en quarantaine : C:\Windows\Temp\DMI80B3.tmp

Mise en quarantaine : C:\Windows\Temp\DMI9C0F.tmp

Mise en quarantaine : C:\Windows\Temp\DMI9F3B.tmp

Mise en quarantaine : C:\Windows\Temp\DMIA83F.tmp

Mise en quarantaine : C:\Windows\Temp\DMID171.tmp

Mise en quarantaine : C:\Windows\Temp\DMID42F.tmp

Mise en quarantaine : C:\Windows\Temp\SEP2722.tmp

Mise en quarantaine : C:\Windows\Temp\TS_45A7.tmp

Mise en quarantaine : C:\Windows\Temp\TS_4EEC.tmp

Mise en quarantaine : C:\Windows\Temp\TS_59D5.tmp

Mise en quarantaine : C:\Windows\Temp\TS_5C75.tmp

Mise en quarantaine : C:\Windows\Temp\TS_680A.tmp

Mise en quarantaine : C:\Windows\Temp\TS_6A2D.tmp

Mise en quarantaine : C:\Windows\Temp\TS_7E3A.tmp

Mise en quarantaine : C:\Windows\Temp\TS_84B1.tmp

Mise en quarantaine : C:\Windows\Temp\TS_9B35.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\7za.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonew2883b7.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonew33216a.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonew33ec0d.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonew3b9387.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonew4b3f25.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonew68e787.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonew99da38.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonewa4dc96.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonewb22fb9.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonewbc11df.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonewdeadf6.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\cacaonewe3ba1e.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\conduitinstaller.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\Kreapixel_addonAcPro.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\MyBabylonTB.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\push.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\Setup.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\wlsetup.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\wlsetupc.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\26A2.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\A469.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\CFG3419.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\CFG36C8.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\CFG8268.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\CFGD316.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\CFGEECF.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\DMI2FA8.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\DMI44CD.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\DMI5D7B.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\DMI648D.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\fla5EEA.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\mia492A.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\mia492A.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\nsx39D5.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\nsx39D5.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\s457D5F.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD24D1.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD24D1.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD2502.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD2502.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD2512.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD2512.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD265C.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD265C.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD269C.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD269C.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD27D6.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD27D6.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD297E.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD297E.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD2A2.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD2A2.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD2A3.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD2A3.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD2BB3.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD2BB3.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TCD2C23.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD2C23.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD30E5.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD30E5.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3329.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3329.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD33D6.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD33D6.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD353F.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD353F.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD35ED.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD35ED.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD360E.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD360E.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD369C.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD369C.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD36CD.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD36CD.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD372D.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD372D.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD377D.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD377D.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD37DC.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD37DC.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD380D.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD380D.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD388C.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD388C.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3949.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3949.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD39B8.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD39B8.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3AA4.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3AA4.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3B81.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3B81.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3C5D.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3C5D.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3D1A.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3D1A.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3DB8.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3DB8.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3DD.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3DD.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3EE3.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3EE3.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD3FAF.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD3FAF.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD40E9.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD40E9.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD41A7.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD41A7.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD4254.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD4254.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD42F2.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD42F2.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD4390.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD4390.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD43C1.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD43C1.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD5247.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD5247.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD5342.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD5342.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD546D.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD546D.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD6263.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6263.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD6C16.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6C16.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD6CF2.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6CF2.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TCD6D93.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6D93.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TCD6DA0.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6DA0.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD6E5D.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6E5D.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD6F0A.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6F0A.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD6F99.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6F99.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD6FF8.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD6FF8.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7048.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7048.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7098.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7098.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD70E8.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD70E8.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7158.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7158.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7188.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7188.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7207.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7207.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD72E4.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD72E4.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7334.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7334.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7410.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7410.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD74EC.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD74EC.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD754C.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD754C.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD75AC.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD75AC.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD760B.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD760B.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD767A.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD767A.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD76AB.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD76AB.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7769.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7769.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD776A.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD776A.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7818.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7818.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7868.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7868.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD78C8.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD78C8.tmp

Erreur de suppression : C:\Users\july\AppData\Local\Temp\TCD7908.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\TCD7908.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR102C.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR1294.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR1392.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR1436.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR15F4.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR1895.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR18F4.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR1A94.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR1B8B.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR1E01.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR1FB8.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR26F9.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR2A62.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR2D3A.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR323C.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR33FE.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR36C9.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR390D.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR3CD9.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR4D67.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR4F9.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR5298.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR55A1.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR5A31.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR5DA6.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR650B.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR6653.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR678.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR82EA.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR83C.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR8478.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR8873.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR8B0E.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR8C2E.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR8EA0.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR9054.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR9263.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR9C61.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR9CAC.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR9DDE.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR9EC1.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFR9F91.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRA3D0.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRA48E.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRA7E9.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRA90E.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRB290.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRB3FE.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRB549.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRB6E1.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRBB37.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRBB53.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRBFD5.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRC1B7.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRC900.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRCB37.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRCDBA.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRCE9A.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRCFD3.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRD1B9.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRD532.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRE2BB.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRE8E3.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFREE43.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFREF43.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRF056.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRF54B.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRF567.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRF7B9.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRFB57.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\TFRFBC2.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\tmy9021.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\VSD4F08.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\VSD4F08.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\VSDAC44.tmp

Supprimé : C:\Users\july\AppData\Local\Temp\VSDAC44.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\Web Data.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\wlsE2C.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\wlsEAA.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\~DF114A57284201B141.TMP

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\~DFA5C97E775CA58803.TMP

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\~DFABA250B7A1FA34C2.TMP

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\~DFAF97F5342F1BA900.TMP

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\~DFFBE5F2536696AB0E.TMP

Mise en quarantaine : C:\Windows\Temp\_avast_\unp89625955.tmp

Mise en quarantaine : C:\Program Files (x86)\eMule\eMule Light.tmpl

Mise en quarantaine : C:\Program Files (x86)\eMule\eMule.tmpl

Erreur de suppression : C:\Users\july\AppData\Local\Temp\F7B96057-BAB0-7891-BB23-2A7827CCEBDA\MyBabylonTB.exe

Erreur de suppression : C:\Users\july\AppData\Local\Temp\F7B96057-BAB0-7891-BB23-2A7827CCEBDA\Setup.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\SweetIMReinstall\SweetImSetup (1).exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\SweetIMReinstall\SweetImSetup.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\{0445B612-89F1-4719-AD59-5D2442C126C4}\dotnetinstaller.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\{0445B612-89F1-4719-AD59-5D2442C126C4}\ISBEW64.exe

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\04130942-00000dfc-qpneqqxxad\tmpFF74.tmp

Mise en quarantaine : C:\Users\july\AppData\Local\Temp\04142346-00000924-b9feq2t1ge\tmpD172.tmp

Erreur de Suppression : C:\ProgramData\ChangeFolderView

Erreur de Suppression : C:\Users\july\AppData\Roaming\cacaoweb

 

16:05:52

 

¤¤¤¤¤¤¤¤¤¤ | SafeBoot | Contrôle | Réparation

 

[HKLM | Safeboot] -> OK

[HKLM | Safeboot\Minimal] -> OK

[HKLM | Safeboot\Network] -> OK

 

¤

 

[HKLM | Minimal\AppMgmt] | @ : Service -> OK

[HKLM | Minimal\Base] | @ : Driver Group -> OK

[HKLM | Minimal\Boot Bus Extender] | @ : Driver Group -> OK

[HKLM | Minimal\Boot file system] | @ : Driver Group -> OK

[HKLM | Minimal\CryptSvc] | @ : Service -> OK

[HKLM | Minimal\DcomLaunch] | @ : Service -> OK

[HKLM | Minimal\dmadmin] | @ : -> Service

[HKLM | Minimal\dmboot.sys] | @ : -> Driver

[HKLM | Minimal\dmio.sys] | @ : -> Driver

[HKLM | Minimal\dmload.sys] | @ : -> Driver

[HKLM | Minimal\dmserver] | @ : -> Service

[HKLM | Minimal\EventLog] | @ : Service -> OK

[HKLM | Minimal\File system] | @ : Driver Group -> OK

[HKLM | Minimal\Filter] | @ : Driver Group -> OK

[HKLM | Minimal\HelpSvc] | @ : Service -> OK

[HKLM | Minimal\Netlogon] | @ : Service -> OK

[HKLM | Minimal\PCI Configuration] | @ : Driver Group -> OK

[HKLM | Minimal\PlugPlay] | @ : Service -> OK

[HKLM | Minimal\PNP Filter] | @ : Driver Group -> OK

[HKLM | Minimal\Primary disk] | @ : Driver Group -> OK

[HKLM | Minimal\RpcSs] | @ : Service -> OK

[HKLM | Minimal\SCSI Class] | @ : Driver Group -> OK

[HKLM | Minimal\sermouse.sys] | @ : Driver -> OK

[HKLM | Minimal\sr.sys] | @ : -> FSFilter System Recovery

[HKLM | Minimal\SRService] | @ : -> Service

[HKLM | Minimal\System Bus Extender] | @ : Driver Group -> OK

[HKLM | Minimal\vds] | @ : Service -> OK

[HKLM | Minimal\vga.sys] | @ : Driver -> OK

[HKLM | Minimal\vgasave.sys] | @ : Driver -> OK

[HKLM | Minimal\WinMgmt] | @ : Service -> OK

[HKLM | Minimal\{36FC9E60-C465-11CF-8056-444553540000}] | @ : Universal Serial Bus controllers -> OK

[HKLM | Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}] | @ : CD-ROM Drive -> OK

[HKLM | Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}] | @ : DiskDrive -> OK

[HKLM | Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}] | @ : Standard floppy disk controller -> OK

[HKLM | Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}] | @ : Hdc -> OK

[HKLM | Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}] | @ : Keyboard -> OK

[HKLM | Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}] | @ : Mouse -> OK

[HKLM | Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}] | @ : PCMCIA Adapters -> OK

[HKLM | Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}] | @ : SCSIAdapter -> OK

[HKLM | Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}] | @ : System -> OK

[HKLM | Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}] | @ : Floppy disk drive -> OK

[HKLM | Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] | @ : Volume shadow copy -> OK

[HKLM | Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}] | @ : Volume -> OK

[HKLM | Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}] | @ : Human Interface Devices -> OK

 

¤

 

[HKLM | Network\AFD] | @ : Service -> OK

[HKLM | Network\AppMgmt] | @ : Service -> OK

[HKLM | Network\Base] | @ : Driver Group -> OK

[HKLM | Network\Boot Bus Extender] | @ : Driver Group -> OK

[HKLM | Network\Boot file system] | @ : Driver Group -> OK

[HKLM | Network\Browser] | @ : Service -> OK

[HKLM | Network\CryptSvc] | @ : Service -> OK

[HKLM | Network\DcomLaunch] | @ : Service -> OK

[HKLM | Network\Dhcp] | @ : Service -> OK

[HKLM | Network\dmadmin] | @ : -> Service

[HKLM | Network\dmboot.sys] | @ : -> Driver

[HKLM | Network\dmio.sys] | @ : -> Driver

[HKLM | Network\dmload.sys] | @ : -> Driver

[HKLM | Network\dmserver] | @ : -> Service

[HKLM | Network\DnsCache] | @ : Service -> OK

[HKLM | Network\EventLog] | @ : Service -> OK

[HKLM | Network\File system] | @ : Driver Group -> OK

[HKLM | Network\Filter] | @ : Driver Group -> OK

[HKLM | Network\HelpSvc] | @ : Service -> OK

[HKLM | Network\ip6fw.sys] | @ : -> Driver

[HKLM | Network\ipnat.sys] | @ : Driver -> OK

[HKLM | Network\LanmanServer] | @ : Service -> OK

[HKLM | Network\LanmanWorkstation] | @ : Service -> OK

[HKLM | Network\LmHosts] | @ : Service -> OK

[HKLM | Network\Messenger] | @ : Service -> OK

[HKLM | Network\NDIS] | @ : Driver Group -> OK

[HKLM | Network\NDIS Wrapper] | @ : Driver Group -> OK

[HKLM | Network\Ndisuio] | @ : Service -> OK

[HKLM | Network\NetBIOS] | @ : Service -> OK

[HKLM | Network\NetBIOSGroup] | @ : Driver Group -> OK

[HKLM | Network\NetBT] | @ : Service -> OK

[HKLM | Network\NetDDEGroup] | @ : Driver Group -> OK

[HKLM | Network\Netlogon] | @ : Service -> OK

[HKLM | Network\NetMan] | @ : Service -> OK

[HKLM | Network\Network] | @ : Driver Group -> OK

[HKLM | Network\NetworkProvider] | @ : Driver Group -> OK

[HKLM | Network\NtLmSsp] | @ : -> Service

[HKLM | Network\PCI Configuration] | @ : Driver Group -> OK

[HKLM | Network\PlugPlay] | @ : Service -> OK

[HKLM | Network\PNP Filter] | @ : Driver Group -> OK

[HKLM | Network\PNP_TDI] | @ : Driver Group -> OK

[HKLM | Network\Primary disk] | @ : Driver Group -> OK

[HKLM | Network\rdpcdd.sys] | @ : -> Driver

[HKLM | Network\rdpdd.sys] | @ : -> Driver

[HKLM | Network\rdpwd.sys] | @ : -> Driver

[HKLM | Network\rdsessmgr] | @ : Service -> OK

[HKLM | Network\RpcSs] | @ : Service -> OK

[HKLM | Network\SCSI Class] | @ : Driver Group -> OK

[HKLM | Network\sermouse.sys] | @ : Driver -> OK

[HKLM | Network\sharedaccess] | @ : Service -> OK

[HKLM | Network\sr.sys] | @ : -> FSFilter System Recovery

[HKLM | Network\SRService] | @ : -> Service

[HKLM | Network\Streams Drivers] | @ : Driver Group -> OK

[HKLM | Network\SYMTDI] | @ : -> Service

[HKLM | Network\System Bus Extender] | @ : Driver Group -> OK

[HKLM | Network\Tcpip] | @ : Service -> OK

[HKLM | Network\TDI] | @ : Driver Group -> OK

[HKLM | Network\tdpipe.sys] | @ : -> Driver

[HKLM | Network\tdtcp.sys] | @ : -> Driver

[HKLM | Network\termservice] | @ : -> Service

[HKLM | Network\UploadMgr] | @ : -> Service

[HKLM | Network\vga.sys] | @ : Driver -> OK

[HKLM | Network\vgasave.sys] | @ : Driver -> OK

[HKLM | Network\WinMgmt] | @ : Service -> OK

[HKLM | Network\Wlansvc] | @ : Service -> OK

[HKLM | Network\WZCSVC] | @ : -> Service

[HKLM | Network\{36FC9E60-C465-11CF-8056-444553540000}] | @ : Universal Serial Bus controllers -> OK

[HKLM | Network\{4D36E965-E325-11CE-BFC1-08002BE10318}] | @ : CD-ROM Drive -> OK

[HKLM | Network\{4D36E967-E325-11CE-BFC1-08002BE10318}] | @ : DiskDrive -> OK

[HKLM | Network\{4D36E969-E325-11CE-BFC1-08002BE10318}] | @ : Standard floppy disk controller -> OK

[HKLM | Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}] | @ : Hdc -> OK

[HKLM | Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}] | @ : Keyboard -> OK

[HKLM | Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}] | @ : Mouse -> OK

[HKLM | Network\{4D36E972-E325-11CE-BFC1-08002BE10318}] | @ : Net -> OK

[HKLM | Network\{4D36E973-E325-11CE-BFC1-08002BE10318}] | @ : NetClient -> OK

[HKLM | Network\{4D36E974-E325-11CE-BFC1-08002BE10318}] | @ : NetService -> OK

[HKLM | Network\{4D36E975-E325-11CE-BFC1-08002BE10318}] | @ : NetTrans -> OK

[HKLM | Network\{4D36E977-E325-11CE-BFC1-08002BE10318}] | @ : PCMCIA Adapters -> OK

[HKLM | Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}] | @ : SCSIAdapter -> OK

[HKLM | Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}] | @ : System -> OK

[HKLM | Network\{4D36E980-E325-11CE-BFC1-08002BE10318}] | @ : Floppy disk drive -> OK

[HKLM | Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}] | @ : Volume -> OK

[HKLM | Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}] | @ : Human Interface Devices -> OK

 

¤¤¤¤¤¤¤¤¤¤ | Heuristique | Suspect

 

 

¤¤¤¤¤¤¤¤¤¤ | IFEO

 

 

 

16:07:49

 

¤¤¤¤¤¤¤¤¤¤ | Démarrages

 

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Nuance PDF Reader-reminder"="C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"

"ASUSPRP"="C:\Program Files (x86)\ASUS\APRP\APRP.EXE"

"ASUSWebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S

"SonicMasterTray"=C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe [10/07/2010 08:45:00]

"UpdateLBPShortCut"="C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"

"UpdateP2GoShortCut"="C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"

"avast"="C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui

"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [22/12/2011 19:58:42]

"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [24/10/2011 17:20:38]

"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [19/06/2009 10:29:42]

"Wireless Console 3"=C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [18/10/2011 18:38:26]

 

[HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"=%ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun

 

[HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"=C:\Windows\System32\mctadmin.exe [14/07/2009 01:54:49]

 

[HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"=%ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun

 

[HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"mctadmin"=C:\Windows\System32\mctadmin.exe [14/07/2009 01:54:49]

 

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

"cacaoweb"="C:\Users\july\AppData\Roaming\cacaoweb\cacaoweb.exe" -noplayer

"Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

 

¤¤¤¤¤¤¤¤¤¤ | Autres

 

[HKLM\System\CurrentControlSet\Control\SafeBoot] | AlternateShell : cmd.exe

[HKLM\System\CurrentControlSet\Control\SecurityProviders] | SecurityProviders : credssp.dll

[HKLM\System\CurrentControlSet\Control\Terminal Server] | AllowRemoteRPC : 0

[HKLM\System\CurrentControlSet\Control\Session Manager] | BootExecute : autocheck autochk *

[HKLM\System\ControlSet001\Control\Session Manager] | SetupExecute :

[HKLM\System\ControlSet001\Control] | FirmwareBootDevice : multi(0)disk(0)rdisk(0)partition(2)

[HKLM\System\ControlSet001\Control] | SystemBootDevice : multi(0)disk(0)rdisk(0)partition(2)

[HKLM\system\currentcontrolset\control\lsa] | SecureBoot : 1

[HKLM\system\currentcontrolset\control\lsa] | restrictanonymoussam : 1

 

[HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]

"WebCheck"={E6FB5E20-DE35-11CF-9C87-00AA005127ED}

 

[HKLM\Software\Microsoft\Internet Explorer\Toolbar]

"Locked"=0

"{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}"=

 

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Internet Explorer\Toolbar]

"ShowDiscussionButton"=Yes

"Locked"=0

 

 

¤¤¤¤¤¤¤¤¤¤ | BHO

 

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}] : (Complitly) -> C:\Users\july\AppData\Roaming\Complitly\Complitly.dll [21/01/2012 23:31:20]

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CA1377B-DC1D-4A52-9585-6E06050FAC53}] : (TmIEPlugInBHO Class) -> C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll [27/10/2010 05:02:53]

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] : (avast! WebRep) -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [24/03/2012 22:22:31]

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] : (Programme d'aide de l'Assistant de connexion Windows Live ID) -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [28/03/2011 21:35:06]

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}] : (Windows Live Messenger Companion Helper) -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [13/05/2011 16:21:16]

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] : (Skype Browser Helper) -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [02/03/2012 12:51:20]

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] : (Office Document Cache Handler) -> C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [21/12/2010 02:05:22]

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC}] : (TmBpIeBHO Class) -> C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll [27/10/2010 05:02:49]

 

¤¤¤¤¤¤¤¤¤¤ | ActiveX

 

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] : WMPACCESS -> Microsoft Windows Media Player

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}] : IEACCESS -> Internet Explorer

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}] : BRANDING.CAB -> Browser Customizations

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] : -> Microsoft Windows Media Player 12.0

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] : Theme Component -> Themes Setup

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{3af36230-a269-11d1-b5bf-0000f8051515}] : MobilePk -> Offline Browsing Pack

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] : MailNews -> Microsoft Windows

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}] : DirectDrawEx -> DirectDrawEx

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{45ea75a0-a269-11d1-b5bf-0000f8051515}] : HelpCont -> Internet Explorer Help

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{4f645220-306d-11d2-995d-00c04f98bbc9}] : MSVBScript -> Microsoft Windows Script 5.6

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}] : GenSetup -> Internet Explorer Setup Tools

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{630b1da0-b465-11d1-9948-00c04f98bbc9}] : ExtraPack -> Browsing Enhancements

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] : Microsoft Windows Media Player -> Microsoft Windows Media Player

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}] : MSN_Auth -> MSN Site Access

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}] : -> Address Book 7

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}] : .NETFramework -> .NET Framework

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}] : IE4_SHELLID -> Windows Desktop Update

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] : BASEIE40_W2K -> Web Platform Customizations

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] : DOTNETFRAMEWORKS ->

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{9381D8F2-0288-11D0-9501-00AA00B911A5}] : Tridata -> Dynamic HTML Data Binding

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}] : .NETFramework -> .NET Framework

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{C9E9A340-D1F1-11D0-821E-444553540600}] : Fontcore -> Internet Explorer Core Fonts

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}] : HTMLHelp -> HTML Help

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}] : ADSI -> Active Directory Service Interface

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}] : .NETFramework -> .NET Framework

 

 

 

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}] : -> 9,0,8112,16421

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}] : -> 9,0,8112,16421

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] : -> 1,1,1,9

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] : -> 6,1,7601,17514

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] : -> 12,0,7601,17514

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}] : -> 6,1,7601,17755

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] : -> 9,0,8112,16421

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] : ->

 

 

 

 

 

 

 

 

 

16:07:52

 

¤¤¤¤¤¤¤¤¤¤ | HKCR\Applications

 

[HKCR\Applications\ehshell.exe\Shell\open\command] : "C:\Windows\eHome\ehshell.exe" "%1"

[HKCR\Applications\iexplore.exe\Shell\open\command] : "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1

[HKCR\Applications\MovieMaker.exe\Shell\open\command] : "C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe" "%1"

[HKCR\Applications\notepad.exe\Shell\open\command] : %SystemRoot%\system32\NOTEPAD.EXE %1

[HKCR\Applications\ois.exe\Shell\open\command] : C:\PROGRA~2\MICROS~1\Office14\OIS.EXE /shellOpen "%1"

[HKCR\Applications\PDFReader.exe\Shell\open\command] : "C:\Program Files (x86)\Nuance\PDF Reader\bin\PDFReader.exe" "%1"

[HKCR\Applications\photoviewer.dll\Shell\open\command] : %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1

[HKCR\Applications\WLXPhotoViewer.dll\Shell\open\command] : "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe" /LaunchPhotoViewer /v "%1"

[HKCR\Applications\wmplayer.exe\Shell\open\command] : "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L"

[HKCR\Applications\wordpad.exe\Shell\open\command] : "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1"

 

¤¤¤¤¤¤¤¤¤¤ | Windows

 

[HKLM | Session Manager\SubSystems] | Windows : %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16

[HKLM | Session Manager\SubSystems] | Windows : WinSrv

 

 

[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLS"=

"LoadAppInit_DLLs"=0

 

¤¤¤¤¤¤¤¤¤¤ | Svchost - Netsvc

 

Audiov - :

Tapiv - :

Term - :

 

16:07:53

 

 

¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-19

 

[HKU\S-1-5-19\Software\AppDataLow]

[HKU\S-1-5-19\Software\Microsoft]

[HKU\S-1-5-19\Software\Policies]

[HKU\S-1-5-19\Software\Microsoft\Assistance]

[HKU\S-1-5-19\Software\Microsoft\Command Processor]

[HKU\S-1-5-19\Software\Microsoft\CTF]

[HKU\S-1-5-19\Software\Microsoft\Fax]

[HKU\S-1-5-19\Software\Microsoft\IME]

[HKU\S-1-5-19\Software\Microsoft\IMEJP]

[HKU\S-1-5-19\Software\Microsoft\Internet Connection Wizard]

[HKU\S-1-5-19\Software\Microsoft\Internet Explorer]

[HKU\S-1-5-19\Software\Microsoft\MSNMessenger]

[HKU\S-1-5-19\Software\Microsoft\Office]

[HKU\S-1-5-19\Software\Microsoft\PeerNet]

[HKU\S-1-5-19\Software\Microsoft\Remote Assistance]

[HKU\S-1-5-19\Software\Microsoft\SideShow]

[HKU\S-1-5-19\Software\Microsoft\Speech]

[HKU\S-1-5-19\Software\Microsoft\SQMClient]

[HKU\S-1-5-19\Software\Microsoft\SystemCertificates]

[HKU\S-1-5-19\Software\Microsoft\WAB]

[HKU\S-1-5-19\Software\Microsoft\wfs]

[HKU\S-1-5-19\Software\Microsoft\Windows]

[HKU\S-1-5-19\Software\Microsoft\Windows NT]

[HKU\S-1-5-19\Software\Microsoft\Windows Script]

[HKU\S-1-5-19\Software\Microsoft\Wisp]

 

 

¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-20

 

[HKU\S-1-5-20\Software\AppDataLow]

[HKU\S-1-5-20\Software\Microsoft]

[HKU\S-1-5-20\Software\Policies]

[HKU\S-1-5-20\Software\Microsoft\ActiveMovie]

[HKU\S-1-5-20\Software\Microsoft\Assistance]

[HKU\S-1-5-20\Software\Microsoft\Command Processor]

[HKU\S-1-5-20\Software\Microsoft\CTF]

[HKU\S-1-5-20\Software\Microsoft\Fax]

[HKU\S-1-5-20\Software\Microsoft\IME]

[HKU\S-1-5-20\Software\Microsoft\IMEJP]

[HKU\S-1-5-20\Software\Microsoft\Internet Connection Wizard]

[HKU\S-1-5-20\Software\Microsoft\Internet Explorer]

[HKU\S-1-5-20\Software\Microsoft\MediaPlayer]

[HKU\S-1-5-20\Software\Microsoft\MSNMessenger]

[HKU\S-1-5-20\Software\Microsoft\Office]

[HKU\S-1-5-20\Software\Microsoft\OfficeSoftwareProtectionPlatform]

[HKU\S-1-5-20\Software\Microsoft\PeerNet]

[HKU\S-1-5-20\Software\Microsoft\Remote Assistance]

[HKU\S-1-5-20\Software\Microsoft\SBE]

[HKU\S-1-5-20\Software\Microsoft\SideShow]

[HKU\S-1-5-20\Software\Microsoft\Speech]

[HKU\S-1-5-20\Software\Microsoft\SystemCertificates]

[HKU\S-1-5-20\Software\Microsoft\WAB]

[HKU\S-1-5-20\Software\Microsoft\wfs]

[HKU\S-1-5-20\Software\Microsoft\Windows]

[HKU\S-1-5-20\Software\Microsoft\Windows Media]

[HKU\S-1-5-20\Software\Microsoft\Windows NT]

[HKU\S-1-5-20\Software\Microsoft\Wisp]

 

 

¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-21-589293692-2407116966-2412594055-1000

 

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\AppDataLow]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\ASUS]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\ATI]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\ATK0100]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\AusLogics]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\AVAST Software]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\BrowserTemp]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Bugsplat]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\cacaoweb]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Clients]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Complitly]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Cr_Installer]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\CyberLink]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\ECAREME]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Elantech]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\eMule]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\g3n-h@ckm@n]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Google]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\HookNetwork]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\IM Providers]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Iminent]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Macromedia]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Malwarebytes' Anti-Malware]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Mozilla]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\MozillaPlugins]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Netscape]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\ODBC]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Policies]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Realtek]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Skype]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Softonic]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\SweetIM]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Sysinternals]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\VB and VBA Program Settings]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\WinRAR SFX]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Wow6432Node]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Classes]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Active Setup]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\ActiveMovie]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\ASF Stream Descriptor File]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Assistance]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Command Processor]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\CTF]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Direct3D]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Ease of Access]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\EventSystem]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Exchange]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Fax]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Feeds]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\FTP]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\GDIPlus]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\IAM]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\IdentityCRL]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Ieak]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\IME]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\IMEJP]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Internet Connection Wizard]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Internet Explorer]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Internet Mail and News]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Keyboard]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\MediaPlayer]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Microsoft Management Console]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\MM20]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\MobilePC]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\MPEG2Demultiplexer]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\MS Design Tools]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\MSDAIPP]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\MSF]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\MSNMessenger]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Multimedia]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Notepad]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Notification de cadeaux MSN]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Office]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\PeerNet]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Protected Storage System Provider]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\RAS AutoDial]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Remote Assistance]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Search Enhancement Pack]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Shared]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Shared Tools]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\SideShow]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\SoftGrid]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Speech]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\SQMClient]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\SystemCertificates]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Tracing]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\UCCPlatform]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\WAB]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Web Service Providers]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\wfs]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows Live]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows Mail]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows Media]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows NT]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows Script]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows Script Host]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows Search]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Windows Sidebar]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000\Software\Microsoft\Wisp]

 

 

¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-21-589293692-2407116966-2412594055-1000_Classes

 

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000_Classes\Software\Microsoft]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000_Classes\Software\Microsoft\Internet Explorer]

[HKU\S-1-5-21-589293692-2407116966-2412594055-1000_Classes\Software\Microsoft\Windows]

 

 

¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-18

 

[HKU\S-1-5-18\Software\AMD]

[HKU\S-1-5-18\Software\ATI]

[HKU\S-1-5-18\Software\Avast Software]

[HKU\S-1-5-18\Software\Classes]

[HKU\S-1-5-18\Software\Google]

[HKU\S-1-5-18\Software\Microsoft]

[HKU\S-1-5-18\Software\Policies]

[HKU\S-1-5-18\Software\Microsoft\Advanced INF Setup]

[HKU\S-1-5-18\Software\Microsoft\Command Processor]

[HKU\S-1-5-18\Software\Microsoft\Cryptography]

[HKU\S-1-5-18\Software\Microsoft\CTF]

[HKU\S-1-5-18\Software\Microsoft\Direct3D]

[HKU\S-1-5-18\Software\Microsoft\Fix it]

[HKU\S-1-5-18\Software\Microsoft\IdentityCRL]

[HKU\S-1-5-18\Software\Microsoft\Internet Explorer]

[HKU\S-1-5-18\Software\Microsoft\MediaPlayer]

[HKU\S-1-5-18\Software\Microsoft\MSNMessenger]

[HKU\S-1-5-18\Software\Microsoft\Office]

[HKU\S-1-5-18\Software\Microsoft\SBE]

[HKU\S-1-5-18\Software\Microsoft\SoftGrid]

[HKU\S-1-5-18\Software\Microsoft\SQMClient]

[HKU\S-1-5-18\Software\Microsoft\SystemCertificates]

[HKU\S-1-5-18\Software\Microsoft\Windows]

[HKU\S-1-5-18\Software\Microsoft\Windows NT]

[HKU\S-1-5-18\Software\Microsoft\Windows Script]

[HKU\S-1-5-18\Software\Microsoft\Windows Script Host]

[HKU\S-1-5-18\Software\Microsoft\Windows Sidebar]

 

 

¤¤¤¤¤¤¤¤¤¤ | HKCU\Software\M$\Windows NT\CurrentVersion

 

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Accessibility]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\DeviceDisplayObjects]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Devices]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\EFS]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\MsiCorruptedFileRecovery]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Network]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\PeerNet]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\PrinterPorts]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows Messaging Subsystem]

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]

 

¤¤¤¤¤¤¤¤¤¤ | HKLM\Software

 

[HKLM\Software\ASUS]

[HKLM\Software\AVAST Software]

[HKLM\Software\Babylon]

[HKLM\Software\CyberLink]

[HKLM\Software\ECAREME]

[HKLM\Software\Google]

[HKLM\Software\Iminent]

[HKLM\Software\InstallShield]

[HKLM\Software\Intel]

[HKLM\Software\Khronos]

[HKLM\Software\Macromedia]

[HKLM\Software\Malwarebytes' Anti-Malware]

[HKLM\Software\Microsoft]

[HKLM\Software\Mozilla]

[HKLM\Software\MozillaPlugins]

[HKLM\Software\Oberon Media]

[HKLM\Software\ODBC]

[HKLM\Software\Qualcomm Atheros WiFi Driver Installation]

[HKLM\Software\Realtek]

[HKLM\Software\Realtek Semiconductor Corp.]

[HKLM\Software\ScanSoft]

[HKLM\Software\SimplyGen]

[HKLM\Software\Skype]

[HKLM\Software\SweetIM]

[HKLM\Software\syncables]

[HKLM\Software\Zeon]

[HKLM\Software\Classes]

[HKLM\Software\Clients]

[HKLM\Software\Policies]

[HKLM\Software\RegisteredApplications]

 

¤¤¤¤¤¤¤¤¤¤ | HKLM\Software\M$\Windows NT\CurrentVersion

 

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Accessibility]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\AdaptiveDisplayBrightness]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\AeDebug]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\APITracing]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\ASR]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\BootMgr]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Compatibility32]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\DeviceDisplayObjects]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\drivers.desc]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\EFS]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Event Viewer]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Font Drivers]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\ICM]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\IniFileMapping]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\KnownFunctionTableDlls]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\KnownManagedDebuggingDlls]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\MCI Extensions]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\MCI32]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\MiniDumpAuxiliaryDlls]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\NetworkList]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\NtVdm64]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\OpenGLDrivers]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\PeerNet]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\PerHwIdStorage]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileLoader]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileNotification]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\SeCEdit]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Svchost]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\SystemRestore]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Tracing]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\WbemPerf]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winsat]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Console]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontDPI]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontLink]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontMapper]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Fonts]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontSubstitutes]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\LanguagePack]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\NetworkCards]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Perflib]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Ports]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Print]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList]

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Time Zones]

 

¤¤¤¤¤¤¤¤¤¤ | Derniers créés/modifiés

 

[17/06/2012 21:15:09] -- |D| -- C:\Program Files (x86)\Auslogics

[17/06/2012 15:09:07] -- |D| -- C:\Program Files (x86)\Malwarebytes' Anti-Malware

[17/06/2012 19:52:34] -- |D| -- C:\Program Files (x86)\RegCleaner

[13/06/2012 19:42:14] -- |A| -- C:\Windows\system32\crypt32.dll

[13/06/2012 19:42:13] -- |A| -- C:\Windows\system32\cryptnet.dll

[13/06/2012 19:42:13] -- |A| -- C:\Windows\system32\cryptsvc.dll

[15/06/2012 00:04:36] -- |A| -- C:\Windows\system32\ieframe.dll

[15/06/2012 00:04:49] -- |A| -- C:\Windows\system32\iertutil.dll

[15/06/2012 00:04:48] -- |A| -- C:\Windows\system32\ieui.dll

[15/06/2012 00:04:47] -- |A| -- C:\Windows\system32\ieUnatt.exe

[15/06/2012 00:04:45] -- |A| -- C:\Windows\system32\inetcpl.cpl

[15/06/2012 00:04:42] -- |A| -- C:\Windows\system32\jscript.dll

[15/06/2012 00:04:44] -- |A| -- C:\Windows\system32\jscript9.dll

[15/06/2012 00:04:45] -- |A| -- C:\Windows\system32\jsproxy.dll

[15/06/2012 00:04:38] -- |A| -- C:\Windows\system32\mshtml.dll

[15/06/2012 00:04:52] -- |A| -- C:\Windows\system32\mshtml.tlb

[15/06/2012 00:04:51] -- |A| -- C:\Windows\system32\mshtmled.dll

[13/06/2012 19:42:29] -- |A| -- C:\Windows\system32\msi.dll

[13/06/2012 19:42:38] -- |A| -- C:\Windows\system32\ntoskrnl.exe

[13/06/2012 19:42:40] -- |A| -- C:\Windows\system32\profsvc.dll

[13/06/2012 19:42:46] -- |A| -- C:\Windows\system32\rdpcorekmts.dll

[13/06/2012 19:42:45] -- |A| -- C:\Windows\system32\rdpwsx.dll

[13/06/2012 19:42:45] -- |A| -- C:\Windows\system32\rdrmemptylst.exe

[15/06/2012 00:04:50] -- |A| -- C:\Windows\system32\url.dll

[15/06/2012 00:04:50] -- |A| -- C:\Windows\system32\urlmon.dll

[13/06/2012 19:42:31] -- |A| -- C:\Windows\system32\win32k.sys

[15/06/2012 00:04:46] -- |A| -- C:\Windows\system32\wininet.dll

[17/06/2012 15:09:07] -- |A| -- C:\Windows\system32\Drivers\mbam.sys

[13/06/2012 19:42:30] -- |A| -- C:\Windows\system32\Drivers\rdpwd.sys

 

¤¤¤¤¤¤¤¤¤¤ | Drives

 

 

¤¤¤¤¤¤¤¤¤¤ | Homedrive

 

[14/07/2009 05:18:56] -- |SHD| -- C:\$Recycle.Bin

[13/01/2012 19:23:24] -- |HD| -- C:\ASUS.DAT

[13/04/2011 04:49:40] -- |D| -- C:\AsusVibeData

[29/07/2009 08:03:34] -- |SHD| -- C:\Boot

[29/07/2009 08:03:34] -- |RASH| -- C:\bootmgr

[29/07/2009 08:03:37] -- |RASH| -- C:\BOOTSECT.BAK

[15/11/2011 07:30:25] -- |A| -- C:\devlist.txt

[14/07/2009 07:08:56] -- |SHD| -- C:\Documents and Settings

[15/11/2011 08:01:49] -- |D| -- C:\eSupport

[15/11/2011 07:30:25] -- |A| -- C:\Finish.log

[15/11/2011 07:02:43] -- |ASH| -- C:\hiberfil.sys

[15/11/2011 07:09:56] -- |D| -- C:\Intel

[13/10/2011 06:50:42] -- |AH| -- C:\K54HR.BIN

[13/10/2011 06:50:42] -- |N| -- C:\K54HR_WIN7.20

[13/01/2012 19:30:01] -- |RHD| -- C:\MSOCache

[15/11/2011 07:02:45] -- |ASH| -- C:\pagefile.sys

[15/11/2011 07:31:43] -- |A| -- C:\Pass.txt

[14/07/2009 05:20:08] -- |D| -- C:\PerfLogs

[18/06/2012 15:59:36] -- |D| -- C:\Pre_Scan

[18/06/2012 15:59:45] -- |A| -- C:\Pre_Scan.txt

[14/07/2009 05:20:08] -- |RD| -- C:\Program Files

[14/07/2009 05:20:08] -- |RD| -- C:\Program Files (x86)

[14/07/2009 05:20:08] -- |HD| -- C:\ProgramData

[29/07/2009 07:10:16] -- |SHD| -- C:\Recovery

[13/10/2011 06:50:42] -- |N| -- C:\RECOVERY.DAT

[15/11/2011 07:16:34] -- |A| -- C:\RHDSetup.log

[15/11/2011 07:17:12] -- |A| -- C:\setup.iss

[15/11/2011 07:02:43] -- |SHD| -- C:\System Volume Information

[21/01/2012 23:31:42] -- |A| -- C:\user.js

[14/07/2009 05:20:08] -- |RD| -- C:\Users

[14/07/2009 05:20:08] -- |D| -- C:\Windows

 

¤¤¤¤¤¤¤¤¤¤ | Systemroot

 

[13/04/2011 04:48:48] -- |A| -- C:\Windows\0

[29/07/2009 07:20:19] -- |D| -- C:\Windows\ABLKSR

[14/07/2009 07:32:38] -- |D| -- C:\Windows\addins

[14/07/2009 05:20:08] -- |D| -- C:\Windows\AppCompat

[14/07/2009 05:20:08] -- |D| -- C:\Windows\AppPatch

[14/01/2012 11:02:22] -- |D| -- C:\Windows\ar

[18/02/2011 22:12:42] -- |A| -- C:\Windows\AsCDProc.log

[15/11/2011 07:21:33] -- |A| -- C:\Windows\AsChkDev.txt

[13/10/2011 06:50:41] -- |N| -- C:\Windows\AsDCDVer.txt

[13/04/2011 04:02:26] -- |A| -- C:\Windows\AsDebug.log

[13/04/2011 03:38:16] -- |A| -- C:\Windows\AsFac.log

[13/04/2011 03:29:54] -- |A| -- C:\Windows\AsHDIVer.txt

[13/04/2011 03:38:52] -- |A| -- C:\Windows\AsRecoveryHD.log

[15/11/2011 07:18:46] -- |A| -- C:\Windows\AsScrPro.exe

[14/07/2009 05:20:08] -- |RSD| -- C:\Windows\assembly

[15/11/2011 08:00:49] -- |A| -- C:\Windows\AsToolCDVer.txt

[29/07/2009 07:20:19] -- |D| -- C:\Windows\ASUS

[15/11/2011 07:10:59] -- |A| -- C:\Windows\atiogl.xml

[15/11/2011 07:12:59] -- |A| -- C:\Windows\ativpsrm.bin

[13/01/2012 19:36:52] -- |A| -- C:\Windows\avastSS.scr

[18/02/2011 21:49:45] -- |A| -- C:\Windows\bfsvc.exe

[14/07/2009 05:20:09] -- |D| -- C:\Windows\Boot

[14/07/2009 07:38:36] -- |AS| -- C:\Windows\bootstat.dat

[14/07/2009 05:20:09] -- |D| -- C:\Windows\Branding

[13/04/2011 04:53:04] -- |A| -- C:\Windows\csup.txt

[14/07/2009 05:20:09] -- |D| -- C:\Windows\Cursors

[14/01/2012 11:02:36] -- |D| -- C:\Windows\de

[19/02/2011 06:24:05] -- |D| -- C:\Windows\de-DE

[14/07/2009 06:45:54] -- |D| -- C:\Windows\debug

[14/07/2009 07:32:38] -- |D| -- C:\Windows\diagnostics

[14/07/2009 07:37:46] -- |D| -- C:\Windows\DigitalLocker

[13/04/2011 04:35:24] -- |A| -- C:\Windows\DirectX.log

[14/07/2009 07:32:38] -- |D| -- C:\Windows\Downloaded Program Files

[15/11/2011 07:14:43] -- |A| -- C:\Windows\DPINST.LOG

[14/07/2009 06:46:06] -- |A| -- C:\Windows\DtcInstall.log

[14/07/2009 09:45:02] -- |D| -- C:\Windows\ehome

[14/01/2012 11:03:19] -- |D| -- C:\Windows\el

[14/01/2012 11:03:38] -- |D| -- C:\Windows\en

[14/01/2012 11:03:11] -- |D| -- C:\Windows\es

[19/02/2011 06:18:50] -- |D| -- C:\Windows\es-ES

[14/01/2012 11:22:15] -- |A| -- C:\Windows\explorer.exe

[26/02/2009 08:50:32] -- |A| -- C:\Windows\explorer.exe.config

[13/01/2012 19:23:26] -- |A| -- C:\Windows\FixPatch.log

[14/07/2009 05:20:09] -- |RSD| -- C:\Windows\Fonts

[14/01/2012 11:10:35] -- |D| -- C:\Windows\fr

[19/02/2011 06:29:22] -- |D| -- C:\Windows\fr-FR

[29/07/2009 07:20:26] -- |A| -- C:\Windows\FullScreen.wmv

[14/07/2009 01:22:13] -- |A| -- C:\Windows\fveupdate.exe

[14/07/2009 05:20:09] -- |D| -- C:\Windows\Globalization

[14/01/2012 11:03:05] -- |D| -- C:\Windows\he

[14/07/2009 05:20:09] -- |D| -- C:\Windows\Help

[14/07/2009 02:29:53] -- |A| -- C:\Windows\HelpPane.exe

[14/07/2009 02:29:03] -- |A| -- C:\Windows\hh.exe

[14/07/2009 09:47:54] -- |A| -- C:\Windows\HomePremium.xml

[14/07/2009 05:20:09] -- |D| -- C:\Windows\IME

[14/07/2009 05:20:10] -- |D| -- C:\Windows\inf

[13/04/2011 04:03:16] -- |SHD| -- C:\Windows\Installer

[14/01/2012 11:02:58] -- |D| -- C:\Windows\it

[19/02/2011 06:34:52] -- |D| -- C:\Windows\it-IT

[14/07/2009 05:20:10] -- |D| -- C:\Windows\L2Schemas

[14/07/2009 05:20:10] -- |D| -- C:\Windows\LiveKernelReports

[29/07/2009 07:20:19] -- |D| -- C:\Windows\Log

[14/07/2009 05:20:10] -- |D| -- C:\Windows\Logs

[14/07/2009 05:20:10] -- |RSD| -- C:\Windows\Media

[14/07/2009 02:10:29] -- |A| -- C:\Windows\mib.bin

[14/07/2009 05:20:10] -- |D| -- C:\Windows\Microsoft.NET

[14/07/2009 05:20:10] -- |D| -- C:\Windows\ModemLogs

[14/07/2009 04:35:42] -- |A| -- C:\Windows\msdfmap.ini

[17/01/2012 18:43:20] -- |A| -- C:\Windows\msvcr71.dll

[17/01/2012 18:43:14] -- |A| -- C:\Windows\MSVCRTD.DLL

[14/01/2012 11:02:51] -- |D| -- C:\Windows\nl

[19/02/2011 06:40:21] -- |D| -- C:\Windows\nl-NL

[14/07/2009 01:56:36] -- |A| -- C:\Windows\notepad.exe

[14/07/2009 07:32:38] -- |D| -- C:\Windows\Offline Web Pages

[29/07/2009 08:03:49] -- |D| -- C:\Windows\Panther

[13/04/2011 04:36:45] -- |D| -- C:\Windows\PCHEALTH

[14/07/2009 07:32:38] -- |D| -- C:\Windows\Performance

[13/04/2011 03:39:21] -- |A| -- C:\Windows\PFRO.log

[14/07/2009 05:20:10] -- |D| -- C:\Windows\PLA

[14/07/2009 05:20:10] -- |D| -- C:\Windows\PolicyDefinitions

[13/04/2011 04:02:24] -- |A| -- C:\Windows\PQArecord.log

[29/07/2009 07:05:24] -- |D| -- C:\Windows\Prefetch

[19/02/2011 06:45:29] -- |D| -- C:\Windows\pt-PT

[14/07/2009 01:27:10] -- |A| -- C:\Windows\regedit.exe

[14/07/2009 05:20:10] -- |D| -- C:\Windows\Registration

[14/07/2009 05:20:10] -- |D| -- C:\Windows\rescache

[14/07/2009 05:20:10] -- |D| -- C:\Windows\Resources

[15/11/2011 07:16:34] -- |N| -- C:\Windows\RtlExUpd.dll

[14/01/2012 11:02:29] -- |D| -- C:\Windows\ru

[14/07/2009 05:20:10] -- |D| -- C:\Windows\SchCache

[14/07/2009 05:20:10] -- |D| -- C:\Windows\schemas

[14/07/2009 05:20:10] -- |D| -- C:\Windows\security

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles

[14/07/2009 05:20:10] -- |D| -- C:\Windows\servicing

[14/07/2009 06:45:50] -- |D| -- C:\Windows\Setup

[14/07/2009 06:51:00] -- |A| -- C:\Windows\setupact.log

[14/07/2009 06:51:00] -- |A| -- C:\Windows\setuperr.log

[14/07/2009 09:45:02] -- |D| -- C:\Windows\ShellNew

[15/11/2011 07:07:52] -- |D| -- C:\Windows\SoftwareDistribution

[14/07/2009 05:20:10] -- |D| -- C:\Windows\Speech

[18/02/2011 21:49:48] -- |A| -- C:\Windows\splwow64.exe

[14/07/2009 07:28:38] -- |A| -- C:\Windows\Starter.xml

[14/07/2009 05:20:10] -- |D| -- C:\Windows\system

[14/07/2009 04:34:57] -- |A| -- C:\Windows\system.ini

[14/07/2009 05:20:10] -- |D| -- C:\Windows\System32

[14/07/2009 05:20:14] -- |D| -- C:\Windows\SysWOW64

[14/07/2009 05:20:14] -- |D| -- C:\Windows\TAPI

[14/07/2009 05:20:14] -- |D| -- C:\Windows\Tasks

[14/07/2009 05:20:14] -- |D| -- C:\Windows\Temp

[14/07/2009 05:20:14] -- |D| -- C:\Windows\tracing

[29/07/2009 07:07:24] -- |A| -- C:\Windows\TSSysprep.log

[10/06/2009 23:41:17] -- |A| -- C:\Windows\twain.dll

[14/07/2009 07:32:38] -- |D| -- C:\Windows\twain_32

[18/02/2011 21:49:55] -- |A| -- C:\Windows\twain_32.dll

[14/07/2009 00:47:26] -- |A| -- C:\Windows\twunk_16.exe

[14/07/2009 02:14:40] -- |A| -- C:\Windows\twunk_32.exe

[14/07/2009 05:20:14] -- |D| -- C:\Windows\Vss

[14/07/2009 05:20:14] -- |D| -- C:\Windows\Web

[14/07/2009 04:34:57] -- |A| -- C:\Windows\win.ini

[14/07/2009 06:54:24] -- |RAH| -- C:\Windows\WindowsShell.Manifest

[15/11/2011 07:07:50] -- |A| -- C:\Windows\WindowsUpdate.log

[14/07/2009 02:12:29] -- |A| -- C:\Windows\winhlp32.exe

[14/07/2009 05:20:14] -- |D| -- C:\Windows\winsxs

[13/05/2011 16:42:24] -- |A| -- C:\Windows\WLXPGSS.SCR

[10/06/2009 22:52:44] -- |A| -- C:\Windows\WMSysPr9.prx

[14/07/2009 01:56:28] -- |A| -- C:\Windows\write.exe

[13/04/2011 04:42:56] -- |A| -- C:\Windows\Xú—

[19/02/2011 06:51:02] -- |D| -- C:\Windows\zh-TW

 

¤¤¤¤¤¤¤¤¤¤ | signature des fichiers à la racine du dossier Windows

 

[MD5.37DEB76A2CF005841C4E45DE2B94D84F] - [15/11/2011 07:18:46] - (.Copyright © 2009 - AsScrPro.) - [2986.63 Ko] - (1.0.0.9) - C:\Windows\AsScrPro.exe

[MD5.317CD1CE327B6520BF4EE007BCD39E61] - [18/02/2011 21:49:45] - (.© Microsoft Corporation. - Utilitaire de service de fichier de démarrage.) - [69.5 Ko] - (6.1.7601.17514) - C:\Windows\bfsvc.exe

[MD5.332FEAB1435662FC6C672E25BEB37BE3] - [14/01/2012 11:22:15] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\explorer.exe

[MD5.92BB2E9AA28542C685C59EFCBAC2490B] - [14/07/2009 01:22:13] - (.© Microsoft Corporation. - Utilitaire de service de chiffrement de lecteur BitLocker.) - [15 Ko] - (6.1.7600.16385) - C:\Windows\fveupdate.exe

[MD5.CD47548A52B02D254BF6D7F7A5F2BFD3] - [14/07/2009 02:29:53] - (.© Microsoft Corporation. - Aide et support Microsoft.) - [716.5 Ko] - (6.1.7600.16385) - C:\Windows\HelpPane.exe

[MD5.3D0B9EA79BF1F828324447D84AA9DCE2] - [14/07/2009 02:29:03] - (.© Microsoft Corporation. - Exécutable de l’aide HTML Microsoft®.) - [16.5 Ko] - (6.1.7600.16385) - C:\Windows\hh.exe

[MD5.F2C7BB8ACC97F92E987A2D4087D021B1] - [14/07/2009 01:56:36] - (.© Microsoft Corporation. - Bloc-notes.) - [189 Ko] - (6.1.7600.16385) - C:\Windows\notepad.exe

[MD5.2E2C937846A0B8789E5E91739284D17A] - [14/07/2009 01:27:10] - (.© Microsoft Corporation. - Éditeur du Registre.) - [417 Ko] - (6.1.7600.16385) - C:\Windows\regedit.exe

[MD5.D01628AF9F7FB3F415B357D446FBE6D9] - [18/02/2011 21:49:48] - (.© Microsoft Corporation. - Print driver host for 32bit applications.) - [65.5 Ko] - (6.1.7601.17514) - C:\Windows\splwow64.exe

[MD5.F36A271706EDD23C94956AFB56981184] - [14/07/2009 00:47:26] - (. - Twain_32.dll Client's 16-Bit Thunking Server.) - [48.52 Ko] - (1.7.0.0) - C:\Windows\twunk_16.exe

[MD5.0BD6E68F3EA0DD62CD86283D86895381] - [14/07/2009 02:14:40] - (. - Twain.dll Client's 32-Bit Thunking Server.) - [30.5 Ko] - (1.7.1.0) - C:\Windows\twunk_32.exe

[MD5.1D420D66250BCAAAED05724FB34008CF] - [14/07/2009 02:12:29] - (.© Microsoft Corporation. - Relais Windows Winhlp32.) - [9.5 Ko] - (6.1.7600.16385) - C:\Windows\winhlp32.exe

[MD5.F8ED3B4B209E2CB49028E36CF06CA851] - [14/07/2009 01:56:28] - (.© Microsoft Corporation. - Windows Write.) - [10 Ko] - (6.1.7600.16385) - C:\Windows\write.exe

 

¤¤¤¤¤¤¤¤¤¤ | Systemroot\System

 

 

¤¤¤¤¤¤¤¤¤¤ | %System%\*.ini

 

[15/11/2011 07:19:50] -- |A| -- C:\Windows\System32\AutoRunFilter.ini

[15/11/2011 07:19:50] -- |A| -- C:\Windows\System32\BootTime.ini

[15/11/2011 07:19:50] -- |A| -- C:\Windows\System32\Defrag.ini

[14/07/2009 06:57:09] -- |ASH| -- C:\Windows\System32\desktop.ini

[15/11/2011 07:19:50] -- |A| -- C:\Windows\System32\FastBoot.ini

[14/07/2009 07:13:15] -- |A| -- C:\Windows\System32\PerfStringBackup.INI

[15/11/2011 07:19:50] -- |A| -- C:\Windows\System32\RemoveFont.ini

[15/11/2011 07:19:50] -- |A| -- C:\Windows\System32\ServiceFilter.ini

[10/06/2009 23:01:25] -- |A| -- C:\Windows\System32\tcpmon.ini

 

¤¤¤¤¤¤¤¤¤¤ | Profiles

 

[14/07/2009 05:20:10] -- |SD| -- C:\Windows\system32\config\systemprofile\AppData

[14/07/2009 07:38:14] -- |A| -- C:\Windows\system32\config\systemprofile\ntuser.dat

[14/07/2009 09:12:21] -- |AH| -- C:\Windows\system32\config\systemprofile\ntuser.dat.LOG

[14/07/2009 07:38:14] -- |ASH| -- C:\Windows\system32\config\systemprofile\ntuser.dat.LOG1

[14/07/2009 07:38:14] -- |ASH| -- C:\Windows\system32\config\systemprofile\ntuser.dat.LOG2

[29/07/2009 07:04:39] -- |ASH| -- C:\Windows\system32\config\systemprofile\ntuser.dat{4abc82a6-7bfd-11de-894b-806e6f6e6963}.TM.blf

[29/07/2009 07:04:39] -- |ASH| -- C:\Windows\system32\config\systemprofile\ntuser.dat{4abc82a6-7bfd-11de-894b-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms

[29/07/2009 07:04:39] -- |ASH| -- C:\Windows\system32\config\systemprofile\ntuser.dat{4abc82a6-7bfd-11de-894b-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms

[14/07/2009 06:45:47] -- |HD| -- C:\Windows\ServiceProfiles\LocalService\AppData

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\LocalService\Desktop

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\LocalService\Documents

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\LocalService\Downloads

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\LocalService\Favorites

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\LocalService\Links

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\LocalService\Music

[14/07/2009 06:45:47] -- |A| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT

[14/07/2009 09:12:21] -- |AH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG

[14/07/2009 06:45:47] -- |AH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG1

[14/07/2009 06:45:47] -- |AH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG2

[14/07/2009 06:45:48] -- |ASH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf

[14/07/2009 06:45:48] -- |ASH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms

[14/07/2009 06:45:48] -- |ASH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms

[17/06/2012 21:17:35] -- |ASH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{e3ee07f1-b8b0-11e1-ae4e-806e6f6e6963}.TM.blf

[17/06/2012 21:17:35] -- |ASH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{e3ee07f1-b8b0-11e1-ae4e-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms

[17/06/2012 21:17:35] -- |ASH| -- C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{e3ee07f1-b8b0-11e1-ae4e-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\LocalService\Pictures

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\LocalService\Saved Games

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\LocalService\Videos

[14/07/2009 06:45:47] -- |HD| -- C:\Windows\ServiceProfiles\NetworkService\AppData

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\NetworkService\Desktop

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\NetworkService\Documents

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\NetworkService\Downloads

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\NetworkService\Favorites

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\NetworkService\Links

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\NetworkService\Music

[14/07/2009 06:45:47] -- |A| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT

[14/07/2009 09:12:21] -- |AH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG

[14/07/2009 06:45:47] -- |AH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG1

[14/07/2009 06:45:47] -- |AH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG2

[14/07/2009 06:45:47] -- |ASH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf

[14/07/2009 06:45:47] -- |ASH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms

[14/07/2009 06:45:47] -- |ASH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms

[17/06/2012 21:17:35] -- |ASH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{e3ee07ec-b8b0-11e1-ae4e-806e6f6e6963}.TM.blf

[17/06/2012 21:17:35] -- |ASH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{e3ee07ec-b8b0-11e1-ae4e-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms

[17/06/2012 21:17:35] -- |ASH| -- C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{e3ee07ec-b8b0-11e1-ae4e-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\NetworkService\Pictures

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\NetworkService\Saved Games

[14/07/2009 06:45:47] -- |RD| -- C:\Windows\ServiceProfiles\NetworkService\Videos

[13/01/2012 19:22:42] -- |HD| -- C:\Users\july\AppData

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Application Data

[13/01/2012 19:23:47] -- |RD| -- C:\Users\july\Contacts

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Cookies

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Desktop

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Documents

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Downloads

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Favorites

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Links

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Local Settings

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Menu Démarrer

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Mes documents

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Modèles

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Music

[13/01/2012 19:22:42] -- |A| -- C:\Users\july\NTUSER.DAT

[13/01/2012 19:22:42] -- |ASH| -- C:\Users\july\ntuser.dat.LOG1

[13/01/2012 19:22:42] -- |ASH| -- C:\Users\july\ntuser.dat.LOG2

[13/01/2012 19:22:42] -- |ASH| -- C:\Users\july\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf

[13/01/2012 19:22:42] -- |ASH| -- C:\Users\july\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms

[13/01/2012 19:22:42] -- |ASH| -- C:\Users\july\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms

[17/06/2012 21:19:06] -- |ASH| -- C:\Users\july\NTUSER.DAT{e3ee07f6-b8b0-11e1-ae4e-806e6f6e6963}.TM.blf

[17/06/2012 21:19:06] -- |ASH| -- C:\Users\july\NTUSER.DAT{e3ee07f6-b8b0-11e1-ae4e-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms

[17/06/2012 21:19:06] -- |ASH| -- C:\Users\july\NTUSER.DAT{e3ee07f6-b8b0-11e1-ae4e-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms

[13/01/2012 19:22:43] -- |SH| -- C:\Users\july\ntuser.ini

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Pictures

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Recent

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Saved Games

[13/01/2012 19:23:58] -- |RD| -- C:\Users\july\Searches

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\SendTo

[14/01/2012 19:24:52] -- |D| -- C:\Users\july\Tracing

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\Videos

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Voisinage d'impression

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\Voisinage réseau

[14/07/2009 05:20:08] -- |HD| -- C:\Users\Default\AppData

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\Application Data

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\Cookies

[14/07/2009 05:20:08] -- |RD| -- C:\Users\Default\Desktop

[14/07/2009 05:20:08] -- |RD| -- C:\Users\Default\Documents

[14/07/2009 05:20:08] -- |RD| -- C:\Users\Default\Downloads

[14/07/2009 05:20:08] -- |RD| -- C:\Users\Default\Favorites

[14/07/2009 05:20:08] -- |RD| -- C:\Users\Default\Links

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\Local Settings

[14/07/2009 05:20:08] -- |RD| -- C:\Users\Default\Music

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\My Documents

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\NetHood

[14/07/2009 04:34:08] -- |ASH| -- C:\Users\Default\NTUSER.DAT

[14/07/2009 09:12:14] -- |AH| -- C:\Users\Default\NTUSER.DAT.LOG

[14/07/2009 04:34:08] -- |AH| -- C:\Users\Default\NTUSER.DAT.LOG1

[14/07/2009 04:34:08] -- |AH| -- C:\Users\Default\NTUSER.DAT.LOG2

[14/07/2009 06:45:54] -- |ASH| -- C:\Users\Default\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf

[14/07/2009 06:45:54] -- |ASH| -- C:\Users\Default\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms

[14/07/2009 06:45:54] -- |ASH| -- C:\Users\Default\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms

[14/07/2009 05:20:08] -- |RD| -- C:\Users\Default\Pictures

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\PrintHood

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\Recent

[14/07/2009 05:20:08] -- |D| -- C:\Users\Default\Saved Games

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\SendTo

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\Start Menu

[14/07/2009 07:08:56] -- |SHD| -- C:\Users\Default\Templates

[14/07/2009 05:20:08] -- |RD| -- C:\Users\Default\Videos

 

¤¤¤¤¤¤¤¤¤¤ | Desktop

 

[17/06/2012 21:15:11] -- |A| -- C:\Users\july\Desktop\AusLogics Registry Defrag.lnk

[13/01/2012 19:23:58] -- |ASH| -- C:\Users\july\Desktop\desktop.ini

[17/06/2012 17:58:31] -- |A| -- C:\Users\july\Desktop\log.txt

[17/06/2012 19:52:37] -- |A| -- C:\Users\july\Desktop\RegCleaner.lnk

[24/04/2012 20:02:18] -- |A| -- C:\Users\july\Desktop\SetupWebV2.msi

[18/06/2012 15:57:05] -- |A| -- C:\Users\july\Desktop\winlogon (1).exe

[01/04/2012 10:59:11] -- |A| -- C:\Users\Public\Desktop\AI Recovery Burner.lnk

[13/04/2011 04:49:43] -- |A| -- C:\Users\Public\Desktop\ASUS Vibe Fun Center.lnk

[15/11/2011 07:17:07] -- |A| -- C:\Users\Public\Desktop\ASUS Sonic Focus.lnk

[13/01/2012 19:23:25] -- |RSD| -- C:\Users\Public\Desktop\AsusTools

[13/01/2012 19:37:01] -- |A| -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk

[14/07/2009 06:54:23] -- |SH| -- C:\Users\Public\Desktop\desktop.ini

[15/11/2011 07:18:27] -- |A| -- C:\Users\Public\Desktop\eManual.Lnk

[21/01/2012 23:48:53] -- |A| -- C:\Users\Public\Desktop\eMule.lnk

[13/01/2012 19:38:50] -- |A| -- C:\Users\Public\Desktop\Google Chrome.lnk

[01/04/2012 11:01:27] -- |A| -- C:\Users\Public\Desktop\LifeFrame.lnk

[17/06/2012 15:09:11] -- |A| -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk

[12/03/2012 22:46:07] -- |A| -- C:\Users\Public\Desktop\Skype.lnk

 

¤¤¤¤¤¤¤¤¤¤ | Downloads

 

[01/04/2012 15:43:47] -- |A| -- C:\Users\july\Downloads\10150-intisse-flutterby-uni-coloris-noir-prod_photo_rama_image.jpg

[09/04/2012 17:06:52] -- |A| -- C:\Users\july\Downloads\539181_2914017856319_1436877090_32047384_2012668684_n.jpg

[30/03/2012 16:41:03] -- |A| -- C:\Users\july\Downloads\afriqu11.jpg

[18/01/2012 22:18:14] -- |A| -- C:\Users\july\Downloads\cacaoweb (1).xpi

[18/01/2012 22:20:11] -- |A| -- C:\Users\july\Downloads\cacaoweb (2).xpi

[18/01/2012 22:23:16] -- |A| -- C:\Users\july\Downloads\cacaoweb (3).xpi

[20/02/2012 23:47:58] -- |A| -- C:\Users\july\Downloads\cacaoweb (4).xpi

[20/02/2012 23:48:17] -- |A| -- C:\Users\july\Downloads\cacaoweb (5).xpi

[18/01/2012 22:11:44] -- |A| -- C:\Users\july\Downloads\cacaoweb.exe

[18/01/2012 22:10:57] -- |A| -- C:\Users\july\Downloads\cacaoweb.xpi

[30/03/2012 16:45:04] -- |A| -- C:\Users\july\Downloads\carrelage-salle-de-bain.jpg

[20/04/2012 20:12:57] -- |A| -- C:\Users\july\Downloads\Chaise-Lounge.jpg

[01/02/2012 21:57:39] -- |A| -- C:\Users\july\Downloads\chrome_installer.exe

[30/03/2012 16:43:48] -- |A| -- C:\Users\july\Downloads\delpha-influences-Ambiance-bois-2.jpg

[13/01/2012 19:23:58] -- |ASH| -- C:\Users\july\Downloads\desktop.ini

[17/03/2012 22:52:48] -- |A| -- C:\Users\july\Downloads\DSCF1027 (1).JPG

[17/03/2012 22:52:46] -- |A| -- C:\Users\july\Downloads\DSCF1027.JPG

[21/01/2012 23:49:03] -- |D| -- C:\Users\july\Downloads\eMule

[21/01/2012 23:47:24] -- |A| -- C:\Users\july\Downloads\eMule0.50a-Installer.exe

[15/01/2012 15:08:29] -- |A| -- C:\Users\july\Downloads\etypesetup.exe

[21/04/2012 23:47:05] -- |A| -- C:\Users\july\Downloads\iLividSetupV1.exe

[18/01/2012 22:21:15] -- |A| -- C:\Users\july\Downloads\IminentSetup{2.UmRyILVP.1}.exe

[14/01/2012 10:46:37] -- |A| -- C:\Users\july\Downloads\Installation_Messenger.exe

[09/04/2012 20:58:22] -- |A| -- C:\Users\july\Downloads\M&M 3350 (1).jpg

[09/04/2012 20:57:43] -- |A| -- C:\Users\july\Downloads\M&M 3350.jpg

[18/01/2012 22:22:30] -- |A| -- C:\Users\july\Downloads\registrybooster.exe

[30/03/2012 16:43:24] -- |A| -- C:\Users\july\Downloads\salle-de-bain-design-zen-1270114348.jpg

[30/03/2012 16:41:30] -- |A| -- C:\Users\july\Downloads\salle-de-bain-zen-aubade-1269006169.jpg

[24/04/2012 19:59:21] -- |A| -- C:\Users\july\Downloads\Setup_V17FR.exe

[09/04/2012 18:26:33] -- |A| -- C:\Users\july\Downloads\SketchUp.exe

[12/03/2012 22:45:22] -- |A| -- C:\Users\july\Downloads\SkypeSetup (1).exe

[12/03/2012 22:44:43] -- |A| -- C:\Users\july\Downloads\SkypeSetup.exe

[01/02/2012 21:40:53] -- |A| -- C:\Users\july\Downloads\SweetImSetup (1).exe

[01/02/2012 21:38:48] -- |A| -- C:\Users\july\Downloads\SweetImSetup.exe

[03/04/2012 21:23:29] -- |A| -- C:\Users\july\Downloads\Volkswagen_Golf-Cabrio.jpg

[21/01/2012 23:30:11] -- |A| -- C:\Users\july\Downloads\WebPlayer.exe

[18/01/2012 13:38:43] -- |A| -- C:\Users\july\Downloads\X16-42928_BB3G8-V497X-X7TP8-QR74J-GX49V (1).exe

[18/01/2012 13:36:26] -- |A| -- C:\Users\july\Downloads\X16-42928_BB3G8-V497X-X7TP8-QR74J-GX49V.exe

 

¤¤¤¤¤¤¤¤¤¤ | StartMenu

 

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs

[13/01/2012 19:23:58] -- |SH| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs

[14/07/2009 07:01:14] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk

[14/07/2009 06:49:40] -- |ASH| -- C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini

[14/07/2009 05:20:08] -- |RD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs

[13/04/2011 04:33:05] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk

[14/07/2009 06:49:40] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk

 

¤¤¤¤¤¤¤¤¤¤ | StartMenu\Programs

 

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

[13/01/2012 19:23:58] -- |RD| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools

[13/01/2012 19:22:42] -- |D| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite

[13/01/2012 19:23:58] -- |SH| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini

[13/01/2012 19:24:06] -- |A| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk

[13/01/2012 19:24:00] -- |A| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk

[13/01/2012 19:22:42] -- |RD| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

[13/01/2012 19:23:58] -- |RD| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

[13/01/2012 19:24:56] -- |D| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Internet Security

[14/07/2009 05:20:08] -- |RD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories

[14/07/2009 07:32:38] -- |RD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools

[13/04/2011 04:47:55] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS

[15/11/2011 07:07:32] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility

[17/06/2012 21:15:11] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics

[13/01/2012 19:37:00] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus

[15/11/2011 07:12:15] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center

[14/07/2009 06:54:23] -- |SH| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini

[21/01/2012 23:48:30] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule

[14/07/2009 07:32:38] -- |RD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games

[13/01/2012 19:38:50] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome

[15/11/2011 07:10:45] -- |RD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel

[14/07/2009 05:20:08] -- |RD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance

[17/06/2012 15:09:11] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware

[29/07/2009 07:08:11] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk

[13/01/2012 19:33:45] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office

[18/01/2012 13:39:19] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Home and Student (Français)

[13/04/2011 04:35:00] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

[13/04/2011 04:33:05] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance

[14/07/2009 06:57:08] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk

[12/03/2012 22:46:07] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype

[14/07/2009 05:20:08] -- |RD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup

[13/04/2011 04:49:31] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\syncables

[14/07/2009 09:44:38] -- |RHD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC

[15/11/2011 07:17:07] -- |D| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virage Logic, Corp

[14/07/2009 06:57:09] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk

[29/07/2009 07:08:05] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk

[14/07/2009 06:54:59] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk

[13/04/2011 04:38:27] -- |RD| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live

[13/04/2011 04:41:29] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk

[13/04/2011 04:39:04] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk

[13/04/2011 04:43:08] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk

[13/04/2011 04:43:00] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk

[14/07/2009 06:57:06] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk

[14/07/2009 06:57:08] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk

 

¤¤¤¤¤¤¤¤¤¤ | StartMenu\Programs\Startup

 

[13/01/2012 19:23:58] -- |SH| -- C:\Users\july\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini

[13/04/2011 04:49:43] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AsusVibeLauncher.lnk

[14/07/2009 06:54:23] -- |ASH| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini

[15/11/2011 07:19:49] -- |A| -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk

 

¤¤¤¤¤¤¤¤¤¤ | AppData

 

[14/07/2009 06:48:33] -- |SD| -- C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft

[18/01/2012 13:39:43] -- |D| -- C:\Windows\system32\config\systemprofile\AppData\Roaming\SoftGrid Client

[13/04/2011 04:52:06] -- |D| -- C:\Windows\system32\config\systemprofile\AppData\Roaming\Trend Micro

[14/07/2009 06:45:47] -- |SD| -- C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft

[13/01/2012 19:21:16] -- |D| -- C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\PeerNetworking

[14/07/2009 06:45:47] -- |SD| -- C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft

[13/01/2012 19:32:55] -- |D| -- C:\Users\july\AppData\Roaming\Adobe

[14/01/2012 13:06:52] -- |D| -- C:\Users\july\AppData\Roaming\ASUS WebStorage

[13/03/2012 17:47:57] -- |D| -- C:\Users\july\AppData\Roaming\ATI

[17/06/2012 21:15:36] -- |D| -- C:\Users\july\AppData\Roaming\Auslogics

[21/01/2012 23:31:27] -- |D| -- C:\Users\july\AppData\Roaming\Babylon

[18/01/2012 22:13:39] -- |D| -- C:\Users\july\AppData\Roaming\cacaoweb

[21/01/2012 23:31:20] -- |D| -- C:\Users\july\AppData\Roaming\Complitly

[13/01/2012 19:23:35] -- |D| -- C:\Users\july\AppData\Roaming\Google

[13/01/2012 19:23:49] -- |D| -- C:\Users\july\AppData\Roaming\Identities

[13/01/2012 19:32:58] -- |D| -- C:\Users\july\AppData\Roaming\Macromedia

[17/06/2012 15:09:20] -- |D| -- C:\Users\july\AppData\Roaming\Malwarebytes

[13/01/2012 19:22:42] -- |D| -- C:\Users\july\AppData\Roaming\Media Center Programs

[13/01/2012 19:22:42] -- |SD| -- C:\Users\july\AppData\Roaming\Microsoft

[12/03/2012 22:46:25] -- |D| -- C:\Users\july\AppData\Roaming\Skype

[18/01/2012 13:39:25] -- |D| -- C:\Users\july\AppData\Roaming\SoftGrid Client

[18/01/2012 13:37:01] -- |D| -- C:\Users\july\AppData\Roaming\TP

 

¤¤¤¤¤¤¤¤¤¤ | CommonAppData

 

[15/11/2011 07:15:11] -- |D| -- C:\ProgramData\AmUStor

[14/07/2009 07:08:56] -- |SHD| -- C:\ProgramData\Application Data

[15/11/2011 07:13:37] -- |D| -- C:\ProgramData\ATI

[13/01/2012 19:36:41] -- |D| -- C:\ProgramData\AVAST Software

[21/01/2012 23:31:27] -- |D| -- C:\ProgramData\Babylon

[13/04/2011 04:49:34] -- |D| -- C:\ProgramData\ChangeFolderView

[15/11/2011 07:21:44] -- |D| -- C:\ProgramData\CyberLink

[14/07/2009 07:08:56] -- |SHD| -- C:\ProgramData\Desktop

[14/07/2009 07:08:56] -- |SHD| -- C:\ProgramData\Documents

[13/04/2011 04:33:02] -- |D| -- C:\ProgramData\Downloaded Installations

[21/01/2012 23:49:03] -- |D| -- C:\ProgramData\eMule

[14/07/2009 07:08:56] -- |SHD| -- C:\ProgramData\Favorites

[13/04/2011 04:33:04] -- |D| -- C:\ProgramData\FLEXnet

[13/01/2012 19:23:25] -- |D| -- C:\ProgramData\FolderView

[09/04/2012 18:32:16] -- |D| -- C:\ProgramData\Google

[17/06/2012 15:09:10] -- |D| -- C:\ProgramData\Malwarebytes

[14/07/2009 05:20:08] -- |SD| -- C:\ProgramData\Microsoft

[13/01/2012 19:30:12] -- |D| -- C:\ProgramData\Microsoft Help

[13/04/2011 04:33:06] -- |D| -- C:\ProgramData\Nuance

[13/04/2011 04:48:44] -- |D| -- C:\ProgramData\OberonGameConsole

[01/04/2012 11:01:52] -- |D| -- C:\ProgramData\P4G

[13/04/2011 04:33:31] -- |D| -- C:\ProgramData\Partner

[15/11/2011 07:17:13] -- |D| -- C:\ProgramData\Qualcomm Atheros

[13/04/2011 04:33:05] -- |D| -- C:\ProgramData\ScanSoft

[12/03/2012 22:45:55] -- |D| -- C:\ProgramData\Skype

[15/11/2011 07:16:56] -- |D| -- C:\ProgramData\SonicFocus

[14/07/2009 07:08:56] -- |SHD| -- C:\ProgramData\Start Menu

[15/11/2011 07:21:44] -- |D| -- C:\ProgramData\Temp

[14/07/2009 07:08:56] -- |SHD| -- C:\ProgramData\Templates

[13/04/2011 04:51:34] -- |D| -- C:\ProgramData\Trend Micro

[18/01/2012 22:15:10] -- |D| -- C:\ProgramData\VirtualizedApplications

[15/11/2011 07:22:10] -- |A| -- C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log

[15/11/2011 07:21:49] -- |A| -- C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log

 

¤¤¤¤¤¤¤¤¤¤ | LocalAppData

 

[14/07/2009 06:49:37] -- |D| -- C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft

[18/01/2012 13:39:43] -- |D| -- C:\Windows\system32\config\systemprofile\AppData\Local\SoftGrid Client

[13/04/2011 04:51:43] -- |D| -- C:\Windows\system32\config\systemprofile\AppData\Local\Trend Micro

[21/01/2012 23:37:42] -- |A| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-589293692-2407116966-2412594055-1000-12288.dat

[13/01/2012 19:43:46] -- |A| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-589293692-2407116966-2412594055-1000-4096.dat

[13/01/2012 19:43:45] -- |A| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-589293692-2407116966-2412594055-1000-8192.dat

[15/11/2011 07:19:58] -- |A| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-589293692-2407116966-2412594055-500-12288.dat

[14/07/2009 07:01:48] -- |A| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

[15/11/2011 07:15:26] -- |A| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat

[18/06/2012 14:16:49] -- |ASH| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

[18/06/2012 14:16:49] -- |ASH| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft

[13/01/2012 19:21:33] -- |D| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\PnrpSqm

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft

[14/07/2009 06:45:47] -- |D| -- C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\AppData\Local\Application Data

[13/01/2012 19:22:44] -- |D| -- C:\Users\july\AppData\Local\ASUS

[13/03/2012 17:47:57] -- |D| -- C:\Users\july\AppData\Local\ATI

[21/01/2012 23:31:29] -- |D| -- C:\Users\july\AppData\Local\Babylon

[21/01/2012 23:48:30] -- |D| -- C:\Users\july\AppData\Local\eMule

[13/01/2012 19:22:50] -- |A| -- C:\Users\july\AppData\Local\GDIPFONTCACHEV1.DAT

[13/01/2012 19:37:02] -- |D| -- C:\Users\july\AppData\Local\Google

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\AppData\Local\Historique

[13/01/2012 19:43:42] -- |AH| -- C:\Users\july\AppData\Local\IconCache.db

[13/01/2012 19:22:42] -- |D| -- C:\Users\july\AppData\Local\Microsoft

[13/01/2012 19:30:16] -- |D| -- C:\Users\july\AppData\Local\Microsoft Help

[18/01/2012 22:22:51] -- |D| -- C:\Users\july\AppData\Local\PackageAware

[13/01/2012 19:45:50] -- |D| -- C:\Users\july\AppData\Local\Power2Go

[18/01/2012 13:40:00] -- |D| -- C:\Users\july\AppData\Local\SoftGrid Client

[13/01/2012 19:22:42] -- |D| -- C:\Users\july\AppData\Local\Temp

[13/01/2012 19:22:43] -- |SHD| -- C:\Users\july\AppData\Local\Temporary Internet Files

[13/01/2012 19:22:54] -- |D| -- C:\Users\july\AppData\Local\VirtualStore

[14/01/2012 10:50:32] -- |D| -- C:\Users\july\AppData\Local\Windows Live

[05/04/2012 09:24:52] -- |D| -- C:\Users\july\AppData\Local\{0125F6DF-C31D-4CBE-A85D-FA2DD4F5B264}

[08/02/2012 12:10:52] -- |D| -- C:\Users\july\AppData\Local\{02BD61DD-4F35-4F48-83C7-BFDDC2BD5CE7}

[31/05/2012 19:37:33] -- |D| -- C:\Users\july\AppData\Local\{0382DA43-0B1A-4E4A-B9A9-781EE445C5E0}

[07/05/2012 22:24:01] -- |D| -- C:\Users\july\AppData\Local\{0534EEB4-311D-4D9D-8486-5233E6B1C5EC}

[19/02/2012 02:04:49] -- |D| -- C:\Users\july\AppData\Local\{077DDD6D-5B62-4237-8F7A-1A078F870869}

[04/05/2012 23:01:01] -- |D| -- C:\Users\july\AppData\Local\{07B34BEB-28B1-473C-AB7F-00AB8FD22F9F}

[19/02/2012 14:07:43] -- |D| -- C:\Users\july\AppData\Local\{09290853-D5B3-4380-8470-6C86D5FA8462}

[21/01/2012 02:06:58] -- |D| -- C:\Users\july\AppData\Local\{0A5F0B4B-8722-4F75-A558-78B9D0ABAA5B}

[01/05/2012 12:07:08] -- |D| -- C:\Users\july\AppData\Local\{0A6E3493-6878-417B-A0D0-AC7A2DD6952D}

[30/04/2012 20:04:21] -- |D| -- C:\Users\july\AppData\Local\{0C043112-5F62-4FF6-A7EC-08EE337E2BEB}

[18/01/2012 13:11:56] -- |D| -- C:\Users\july\AppData\Local\{0C1EFD92-12E0-427E-B2BF-E9820AF0E2C1}

[26/04/2012 11:08:18] -- |D| -- C:\Users\july\AppData\Local\{0CAF99AD-43DF-45A8-A677-AC30CFFB53FE}

[31/05/2012 19:37:22] -- |D| -- C:\Users\july\AppData\Local\{0F44E7E5-D21A-4D1F-880B-A52C706FF8AC}

[13/04/2012 09:38:40] -- |D| -- C:\Users\july\AppData\Local\{0FBCE44B-DA19-4F77-BFF8-4AB9B1833872}

[20/01/2012 00:18:05] -- |D| -- C:\Users\july\AppData\Local\{12EFDB10-263F-4293-8895-D9D0AA93DEB4}

[06/05/2012 15:26:47] -- |D| -- C:\Users\july\AppData\Local\{156A96E7-0950-4149-AC33-83C0B9455F24}

[08/02/2012 12:10:39] -- |D| -- C:\Users\july\AppData\Local\{157C0928-38F8-4367-A05B-4CB9AC99D2C1}

[16/02/2012 21:00:54] -- |D| -- C:\Users\july\AppData\Local\{174D9AB1-B235-474B-B585-10E15DF609B3}

[11/03/2012 03:30:25] -- |D| -- C:\Users\july\AppData\Local\{175EADEA-9BD5-4399-A64E-A62C6618B94C}

[01/05/2012 12:07:18] -- |D| -- C:\Users\july\AppData\Local\{1AB45D48-0CA9-4506-B044-52A71D4BD102}

[11/05/2012 00:05:22] -- |D| -- C:\Users\july\AppData\Local\{1B419211-DCED-4E8E-A35D-81AB8E1B2D2B}

[23/04/2012 19:43:51] -- |D| -- C:\Users\july\AppData\Local\{1D348DAE-9316-47D1-ADB6-FC27ADAED927}

[03/05/2012 19:48:16] -- |D| -- C:\Users\july\AppData\Local\{1D9B0B4E-E720-4DE5-9E06-092F3D8A2FE6}

[14/01/2012 12:20:13] -- |D| -- C:\Users\july\AppData\Local\{1D9FD6A7-02CE-426B-A0F0-50185F46FF79}

[27/03/2012 20:57:15] -- |D| -- C:\Users\july\AppData\Local\{1DAE0030-26D2-4BA3-9A3A-CF12A24E15D2}

[06/06/2012 21:59:15] -- |D| -- C:\Users\july\AppData\Local\{1EBBAE9A-56DC-45EA-AA01-68031C0B3E84}

[13/04/2012 09:41:11] -- |D| -- C:\Users\july\AppData\Local\{219E73FD-991A-44C4-BC7E-117172A1CCEB}

[20/05/2012 00:18:45] -- |D| -- C:\Users\july\AppData\Local\{22238794-CD84-4664-9011-B2A2A477586D}

[15/06/2012 18:54:57] -- |D| -- C:\Users\july\AppData\Local\{22519157-763B-4FB5-8A5D-F699ED54FF90}

[24/03/2012 22:20:44] -- |D| -- C:\Users\july\AppData\Local\{233E2F9F-4A00-4FDE-89F1-304C628E0A68}

[31/03/2012 10:53:02] -- |D| -- C:\Users\july\AppData\Local\{23B564EA-E88D-43EB-967F-78246E731B94}

[05/06/2012 09:02:01] -- |D| -- C:\Users\july\AppData\Local\{24B3E924-EBF9-4751-98EB-7774D55889AB}

[03/06/2012 00:13:48] -- |D| -- C:\Users\july\AppData\Local\{258B9C82-4432-4FF1-AD89-4B4E48AE4D34}

[03/02/2012 13:38:03] -- |D| -- C:\Users\july\AppData\Local\{274A6F76-B4F0-4510-9246-1861DE795EE8}

[10/02/2012 12:09:31] -- |D| -- C:\Users\july\AppData\Local\{286131E3-85BD-4B2E-B23E-056900C30295}

[13/06/2012 19:34:07] -- |D| -- C:\Users\july\AppData\Local\{295F8D63-E004-47D7-868D-D98DA137B7D6}

[30/05/2012 23:42:27] -- |D| -- C:\Users\july\AppData\Local\{2AA1083B-A726-4EAA-89F1-6F4A241A0347}

[21/01/2012 02:07:19] -- |D| -- C:\Users\july\AppData\Local\{2B1ECFE1-8464-49B4-B3C6-F00C4DCE8C4E}

[20/05/2012 14:06:31] -- |D| -- C:\Users\july\AppData\Local\{2BCA194D-CCD0-4519-ABEF-F35AB7BB809C}

[01/02/2012 09:34:08] -- |D| -- C:\Users\july\AppData\Local\{2C9B42D6-92D0-4DCC-AF1C-59FAA51CB2F9}

[15/03/2012 12:20:51] -- |D| -- C:\Users\july\AppData\Local\{2CDC159C-0C63-4787-8594-51670781187D}

[29/02/2012 13:34:17] -- |D| -- C:\Users\july\AppData\Local\{2D39A2AA-2BAC-494D-8C44-3C5D1558BA01}

[17/01/2012 22:20:55] -- |D| -- C:\Users\july\AppData\Local\{306A3E94-3D38-42AD-A156-519D9D9ACFCA}

[27/05/2012 22:35:06] -- |D| -- C:\Users\july\AppData\Local\{30E354CC-114F-4E91-B038-B807CE560536}

[13/03/2012 22:27:33] -- |D| -- C:\Users\july\AppData\Local\{3133FC57-435C-4A84-9AA2-3DFF41B68732}

[09/05/2012 20:58:04] -- |D| -- C:\Users\july\AppData\Local\{31DAB261-004A-416B-BE46-8538BA0AC493}

[23/03/2012 19:46:08] -- |D| -- C:\Users\july\AppData\Local\{3203E2D1-16E3-43E3-A573-B8DBDEF094F8}

[06/05/2012 01:04:27] -- |D| -- C:\Users\july\AppData\Local\{3225E6C2-3BCC-47BC-8A60-2D78C12746BF}

[10/06/2012 22:02:27] -- |D| -- C:\Users\july\AppData\Local\{3254809C-39FC-445C-A261-BFFD706F11D2}

[11/06/2012 23:14:32] -- |D| -- C:\Users\july\AppData\Local\{32743DE6-1D54-4AF4-9E25-C64E401D5C98}

[13/03/2012 10:25:45] -- |D| -- C:\Users\july\AppData\Local\{337546D1-A975-4A08-883F-4F37A5445FB1}

[16/05/2012 23:34:52] -- |D| -- C:\Users\july\AppData\Local\{3411BF65-425B-4EE3-9F55-B0AD7E14F833}

[09/04/2012 15:53:25] -- |D| -- C:\Users\july\AppData\Local\{394E7E5F-DE0C-413A-816C-8F2DA208A8CD}

[28/01/2012 00:30:24] -- |D| -- C:\Users\july\AppData\Local\{3B944F0D-8DC5-457E-BD36-944807BABF5B}

[23/03/2012 19:45:34] -- |D| -- C:\Users\july\AppData\Local\{3BE977C7-820D-4A89-9250-437FCC165A9A}

[13/04/2012 22:20:56] -- |D| -- C:\Users\july\AppData\Local\{3C3B77D8-8311-42B8-9DC3-BC3D1065D452}

[12/03/2012 22:22:10] -- |D| -- C:\Users\july\AppData\Local\{3E99393D-B651-4446-B4B5-C73C4B42CD4D}

[16/01/2012 23:11:27] -- |D| -- C:\Users\july\AppData\Local\{41FC6769-8ABC-4DB4-BAF1-2054B13AE116}

[06/06/2012 12:45:34] -- |D| -- C:\Users\july\AppData\Local\{423F12F8-7DC8-4241-96FE-BAB4DA41AA30}

[21/02/2012 10:06:38] -- |D| -- C:\Users\july\AppData\Local\{431063D4-9711-4F70-ACFF-38A5755194D7}

[26/04/2012 19:31:27] -- |D| -- C:\Users\july\AppData\Local\{49015A8F-A777-4C7C-A315-4859A422FD52}

[20/02/2012 21:04:15] -- |D| -- C:\Users\july\AppData\Local\{492A448E-9F83-4676-A434-E4DE5D9C7782}

[26/01/2012 09:40:36] -- |D| -- C:\Users\july\AppData\Local\{4A9C0B37-857D-4D32-AA22-965701CAACBA}

[21/04/2012 13:11:53] -- |D| -- C:\Users\july\AppData\Local\{4ABB69DA-B729-4313-B456-7B1BDBEBF652}

[23/02/2012 11:07:52] -- |D| -- C:\Users\july\AppData\Local\{4AEAD9BB-0772-490C-9F52-9ADB3AA2D892}

[20/03/2012 23:27:02] -- |D| -- C:\Users\july\AppData\Local\{4B7A9071-EC5A-4C28-AE9A-079C613BA999}

[20/05/2012 14:07:02] -- |D| -- C:\Users\july\AppData\Local\{4DA23058-84CB-4C4E-8214-D323B78A6FB6}

[06/05/2012 10:03:27] -- |D| -- C:\Users\july\AppData\Local\{504D82E5-1836-4515-98CE-0CC3556EB3BC}

[29/01/2012 21:04:25] -- |D| -- C:\Users\july\AppData\Local\{522608DB-6272-4912-A585-81DA5A0B431B}

[10/02/2012 12:10:06] -- |D| -- C:\Users\july\AppData\Local\{547884C0-3E07-4953-A61C-0D82908C73F5}

[25/05/2012 23:41:51] -- |D| -- C:\Users\july\AppData\Local\{5677C2D6-8174-413C-9D44-8404EB4F1835}

[24/04/2012 16:20:17] -- |D| -- C:\Users\july\AppData\Local\{5727EFF5-A806-45D8-B6F8-33EDCEA50001}

[29/04/2012 11:40:33] -- |D| -- C:\Users\july\AppData\Local\{572B5756-66E2-4476-9043-09160AD7D0B8}

[11/06/2012 23:14:55] -- |D| -- C:\Users\july\AppData\Local\{590980B6-1B69-4A66-A474-42B2F8A81A98}

[13/05/2012 22:10:34] -- |D| -- C:\Users\july\AppData\Local\{5B195DA1-82E2-4FBE-A34E-8B0BF514B410}

[07/03/2012 20:58:05] -- |D| -- C:\Users\july\AppData\Local\{5CD538BB-4F2A-4AAA-9EA1-DA025889D5AA}

[07/06/2012 01:24:14] -- |D| -- C:\Users\july\AppData\Local\{5D62C236-B06F-4446-9129-743E5D077A7C}

[12/04/2012 20:00:54] -- |D| -- C:\Users\july\AppData\Local\{5F3DBE66-4CA1-4B9C-8D2F-0F0E8B8A0EC4}

[23/02/2012 11:08:36] -- |D| -- C:\Users\july\AppData\Local\{6235FDF5-65C8-442A-B0DD-AD9F8E8F2E48}

[21/02/2012 10:05:53] -- |D| -- C:\Users\july\AppData\Local\{638E94B9-910D-4D6E-9424-12C83A548184}

[12/05/2012 01:44:51] -- |D| -- C:\Users\july\AppData\Local\{63B8CF64-81E4-401C-B823-449D7FECDFFF}

[21/04/2012 13:11:19] -- |D| -- C:\Users\july\AppData\Local\{6459D214-0B11-4C72-B631-6E625B7C1DEB}

[15/04/2012 16:42:41] -- |D| -- C:\Users\july\AppData\Local\{652FBAA6-B164-4F80-B701-C2DC74AB9653}

[20/03/2012 23:26:33] -- |D| -- C:\Users\july\AppData\Local\{66034F7A-9A5A-4AC4-8F59-931C7C039476}

[11/04/2012 11:05:10] -- |D| -- C:\Users\july\AppData\Local\{663B5381-6D77-49F5-BEE2-BA6249748495}

[03/04/2012 18:05:19] -- |D| -- C:\Users\july\AppData\Local\{666E1CB5-92C8-4CEB-A1E6-A90392CC60C9}

[10/04/2012 22:53:00] -- |D| -- C:\Users\july\AppData\Local\{6930AFF0-678D-4762-93BE-F26D1B1830BC}

[05/02/2012 14:13:58] -- |D| -- C:\Users\july\AppData\Local\{696B3B27-461A-4EE3-92F2-EA2EAAF21D14}

[18/05/2012 20:47:11] -- |D| -- C:\Users\july\AppData\Local\{6A045DC1-B537-4F63-87F9-60880CAEB0CA}

[16/04/2012 21:00:43] -- |D| -- C:\Users\july\AppData\Local\{6A7CB860-1D26-4A61-B584-D48CC60F72D9}

[26/05/2012 21:40:45] -- |D| -- C:\Users\july\AppData\Local\{6C477123-2FDB-4924-A93C-FBE54255F227}

[15/03/2012 12:20:23] -- |D| -- C:\Users\july\AppData\Local\{6CC18841-FFC9-40BE-AE60-7154BEE808C8}

[02/05/2012 12:49:19] -- |D| -- C:\Users\july\AppData\Local\{6E2D506A-66FB-4919-AF63-015D3670E296}

[01/06/2012 23:06:54] -- |D| -- C:\Users\july\AppData\Local\{6E76E382-364F-4583-B42C-C3BAA7A532BF}

[04/02/2012 23:49:13] -- |D| -- C:\Users\july\AppData\Local\{71B5DE4E-8FA4-4A7E-8697-6315D4BFADE5}

[23/04/2012 19:43:24] -- |D| -- C:\Users\july\AppData\Local\{72026B64-C98B-4E73-AFD4-AB053ADFD218}

[02/02/2012 20:46:39] -- |D| -- C:\Users\july\AppData\Local\{72A9A4A7-EDE3-4214-AFA1-25FE0A0C3092}

[04/05/2012 23:01:23] -- |D| -- C:\Users\july\AppData\Local\{74140097-D891-4597-8C0A-E337DBDABEFC}

[30/04/2012 20:07:38] -- |D| -- C:\Users\july\AppData\Local\{748D6A72-23FA-4A3F-A530-F8256486F0A1}

[13/03/2012 22:27:55] -- |D| -- C:\Users\july\AppData\Local\{74961A08-0E38-413C-B43C-F44825C6F229}

[17/06/2012 00:12:10] -- |D| -- C:\Users\july\AppData\Local\{752EFA17-4315-4C55-A2DA-77833C1DA813}

[21/05/2012 23:03:37] -- |D| -- C:\Users\july\AppData\Local\{7740CBC7-11C9-4314-B5DC-75B0022C5743}

[25/05/2012 23:42:41] -- |D| -- C:\Users\july\AppData\Local\{7A352B81-8000-4DA4-87B5-7FD0D580CC7C}

[20/05/2012 00:18:14] -- |D| -- C:\Users\july\AppData\Local\{7E7EDD7D-8426-457E-B190-CCFD91821C54}

[04/06/2012 23:12:08] -- |D| -- C:\Users\july\AppData\Local\{7F44949B-E587-4250-914D-B89E0AFC8148}

[30/05/2012 23:42:16] -- |D| -- C:\Users\july\AppData\Local\{7F6D2415-D27B-47FB-9728-F6A07791526F}

[10/03/2012 15:29:15] -- |D| -- C:\Users\july\AppData\Local\{805E41F0-E739-4370-AF89-C8E4FB6A7803}

[02/05/2012 12:49:41] -- |D| -- C:\Users\july\AppData\Local\{819CDEB9-B050-4A1A-AB38-A30847405041}

[11/03/2012 15:33:15] -- |D| -- C:\Users\july\AppData\Local\{83617E31-4E7F-4AA9-B70D-7914868B33BB}

[10/06/2012 22:02:05] -- |D| -- C:\Users\july\AppData\Local\{83EC5EC2-6BED-43B4-A54A-F5B96CFD4617}

[02/05/2012 19:41:07] -- |D| -- C:\Users\july\AppData\Local\{840A0A29-F528-4B1F-B12F-E9DF968B8138}

[11/05/2012 00:04:40] -- |D| -- C:\Users\july\AppData\Local\{84C9E820-565F-4DD7-8638-9071C0F0D80B}

[07/06/2012 10:42:53] -- |D| -- C:\Users\july\AppData\Local\{8909CBF1-7083-4239-9E3E-BAF2FA955F03}

[13/06/2012 19:34:18] -- |D| -- C:\Users\july\AppData\Local\{8A75C2AF-860F-4F42-A96B-6FB6DC8AFA63}

[22/05/2012 20:58:27] -- |D| -- C:\Users\july\AppData\Local\{8E37B0D9-BD92-40E3-8CC2-7168A519C7B9}

[18/05/2012 20:47:42] -- |D| -- C:\Users\july\AppData\Local\{8E5741AA-02FE-490B-9000-23D8319A8593}

[12/03/2012 22:23:46] -- |D| -- C:\Users\july\AppData\Local\{8EC6A716-D36B-44B1-A193-0849783BF013}

[26/01/2012 09:40:20] -- |D| -- C:\Users\july\AppData\Local\{8FDD8521-2C5B-4026-85C8-30ACD1F3DB16}

[03/06/2012 22:56:14] -- |D| -- C:\Users\july\AppData\Local\{90180C5A-D2F9-40E7-AD0D-5D5AA68971A6}

[15/01/2012 15:03:12] -- |D| -- C:\Users\july\AppData\Local\{913ADBFF-128F-473B-8A13-054950990F4E}

[05/02/2012 14:14:42] -- |D| -- C:\Users\july\AppData\Local\{92C36959-CE6B-4E99-81A7-137FF8581AB3}

[11/03/2012 15:32:35] -- |D| -- C:\Users\july\AppData\Local\{962329B2-4159-4A39-9BAB-1CFD5E278E20}

[10/03/2012 15:28:28] -- |D| -- C:\Users\july\AppData\Local\{96524C9F-7322-44A5-99A1-2552A8050100}

[07/03/2012 20:58:42] -- |D| -- C:\Users\july\AppData\Local\{97B5D69F-1D41-460D-817A-A4FD3ABC704C}

[18/02/2012 14:03:03] -- |D| -- C:\Users\july\AppData\Local\{9A0AF250-9024-42FB-94C0-87B766896020}

[13/04/2012 20:55:51] -- |D| -- C:\Users\july\AppData\Local\{9B48C482-1F66-46B6-AA10-7790397DF1BB}

[22/04/2012 14:05:25] -- |D| -- C:\Users\july\AppData\Local\{9BD3A0BC-D175-4CFF-8FFD-7BA5366D374A}

[07/06/2012 10:43:14] -- |D| -- C:\Users\july\AppData\Local\{9CD7E9CC-F846-4878-B411-44A4B78E0E38}

[26/01/2012 21:41:39] -- |D| -- C:\Users\july\AppData\Local\{9F1256D4-100D-48F7-97E8-ABD7A76C03CE}

[31/01/2012 13:15:12] -- |D| -- C:\Users\july\AppData\Local\{9FB6E304-C9EB-4578-95C4-A228EC85695C}

[15/04/2012 16:43:01] -- |D| -- C:\Users\july\AppData\Local\{9FFFBCD0-8FD5-40FC-8323-670911789034}

[19/02/2012 14:07:21] -- |D| -- C:\Users\july\AppData\Local\{A0E90078-B7E8-420A-8572-BC0300C679DF}

[11/03/2012 03:31:17] -- |D| -- C:\Users\july\AppData\Local\{A1506C70-FFF0-41F1-B4BB-AC27DB385CF6}

[29/05/2012 09:36:25] -- |D| -- C:\Users\july\AppData\Local\{A899EE94-4B86-4901-86C5-541DE4D76A97}

[27/05/2012 22:34:57] -- |D| -- C:\Users\july\AppData\Local\{AB93603F-85F3-483D-BB83-B09670EE1AC5}

[12/06/2012 23:22:46] -- |D| -- C:\Users\july\AppData\Local\{ABD7FA49-18E2-44B4-AD95-28B447C764C9}

[20/01/2012 14:05:54] -- |D| -- C:\Users\july\AppData\Local\{AC4389BA-3916-48C3-A649-5BC4BF890A10}

[18/04/2012 22:20:31] -- |D| -- C:\Users\july\AppData\Local\{AEB61CC0-FF55-4AED-9646-81B0F40AAF7C}

[20/04/2012 23:23:32] -- |D| -- C:\Users\july\AppData\Local\{AF47ABF4-7196-4E73-9FE5-53D970D21160}

[13/04/2012 14:49:35] -- |D| -- C:\Users\july\AppData\Local\{AFF1A56C-B97F-404F-81FA-B2577EC904B4}

[02/05/2012 19:41:17] -- |D| -- C:\Users\july\AppData\Local\{B335CA79-22B2-4A02-AB93-76128A59BA71}

[16/05/2012 23:34:18] -- |D| -- C:\Users\july\AppData\Local\{B3779AC8-7AC8-40AB-8BBD-6733DBC641B5}

[16/03/2012 22:25:07] -- |D| -- C:\Users\july\AppData\Local\{B4C7368F-E5C2-409C-B954-500B24ABA87B}

[20/01/2012 14:05:44] -- |D| -- C:\Users\july\AppData\Local\{B4F9274A-A6EE-40EA-A7BA-A43075F4E519}

[08/04/2012 14:51:52] -- |D| -- C:\Users\july\AppData\Local\{B54B1885-18E0-43E3-A007-BF36CA2FD006}

[21/01/2012 22:59:58] -- |D| -- C:\Users\july\AppData\Local\{B5CBA071-CF47-4012-9F86-0049DBDD234A}

[26/04/2012 11:08:33] -- |D| -- C:\Users\july\AppData\Local\{B68B3A4A-66D8-4766-9FF0-C3553FE74DDD}

[18/04/2012 22:19:54] -- |D| -- C:\Users\july\AppData\Local\{B8947493-DB4C-4159-BF4A-E5428657D8B6}

[03/02/2012 13:37:52] -- |D| -- C:\Users\july\AppData\Local\{B99B6C6D-FC25-4721-9CE6-6676453DBC66}

[01/02/2012 21:37:42] -- |D| -- C:\Users\july\AppData\Local\{BACD6AD4-6216-4220-8B0C-CF63C0B223DE}

[15/05/2012 18:49:33] -- |D| -- C:\Users\july\AppData\Local\{BC74CA91-579E-4E93-993F-7ACF94D2F3C8}

[01/02/2012 09:33:58] -- |D| -- C:\Users\july\AppData\Local\{BC84E10B-EC27-42C4-9A18-4FDEEB22D686}

[17/01/2012 22:20:44] -- |D| -- C:\Users\july\AppData\Local\{BCE1F5F9-C188-40EF-B5D1-137E2B0ACA5F}

[04/05/2012 09:39:16] -- |D| -- C:\Users\july\AppData\Local\{BDD66136-63ED-4347-8E4E-A428AEB9C352}

[04/06/2012 23:11:57] -- |D| -- C:\Users\july\AppData\Local\{BE94B905-E1F2-406E-941D-A9F231537696}

[09/05/2012 20:57:40] -- |D| -- C:\Users\july\AppData\Local\{C014D43C-E0C3-49CE-BE20-0D9F1F1A84FA}

[13/05/2012 00:15:48] -- |D| -- C:\Users\july\AppData\Local\{C07E79DD-471E-42D5-BE48-2C0E93B8FAE9}

[14/01/2012 19:25:06] -- |D| -- C:\Users\july\AppData\Local\{C1681053-B038-4A1F-99E2-C22D384B4EE6}

[28/05/2012 16:24:00] -- |D| -- C:\Users\july\AppData\Local\{C1E303ED-0DBA-4009-AB8F-7F5D43B91A97}

[06/05/2012 01:03:54] -- |D| -- C:\Users\july\AppData\Local\{C23AD14D-CA6D-409A-ACA1-807C63D33C48}

[21/01/2012 22:59:25] -- |D| -- C:\Users\july\AppData\Local\{C275D502-CB5F-4129-8864-D3609310631F}

[16/03/2012 22:25:20] -- |D| -- C:\Users\july\AppData\Local\{C2CA5463-0194-4A45-8DAF-680A8C734C30}

[02/02/2012 12:51:52] -- |D| -- C:\Users\july\AppData\Local\{C56D6294-2E49-45AC-88BE-284DCB1BB8FD}

[17/03/2012 22:49:53] -- |D| -- C:\Users\july\AppData\Local\{C5CC3A71-C67E-46E1-890D-D4C1CD775280}

[29/02/2012 13:35:03] -- |D| -- C:\Users\july\AppData\Local\{C617502F-87C0-4D29-9541-5E75AC58EDED}

[06/04/2012 22:23:43] -- |D| -- C:\Users\july\AppData\Local\{C6F82217-802E-492F-95FB-F19FE4F78020}

[21/05/2012 23:04:10] -- |D| -- C:\Users\july\AppData\Local\{C94FC493-9DA6-4CF7-834D-2F849029100B}

[13/03/2012 10:25:22] -- |D| -- C:\Users\july\AppData\Local\{CA8736C2-8A15-4CFD-B4A2-8C9227B96A54}

[21/01/2012 02:06:58] -- |D| -- C:\Users\july\AppData\Local\{CB30189D-5480-4916-BAD3-0D14E953DF71}

[08/04/2012 00:55:56] -- |D| -- C:\Users\july\AppData\Local\{CB6F7800-0DF5-42C9-B564-C260BAF660FF}

[13/04/2012 09:41:50] -- |D| -- C:\Users\july\AppData\Local\{CCF33FB2-1847-4C5B-8ECE-70445BC6443F}

[16/02/2012 21:01:17] -- |D| -- C:\Users\july\AppData\Local\{CD2C1194-E796-4943-91BB-E08B9E724407}

[03/06/2012 00:14:04] -- |D| -- C:\Users\july\AppData\Local\{CF297A98-CE22-4758-B7F1-36BF7A582CDF}

[20/01/2012 00:18:26] -- |D| -- C:\Users\july\AppData\Local\{CFC6DBBD-4D0C-4192-8A5D-338E46EA98D0}

[04/05/2012 00:43:31] -- |D| -- C:\Users\july\AppData\Local\{D0734DE3-B32F-413A-BD97-F32C0AB0D569}

[06/02/2012 22:27:52] -- |D| -- C:\Users\july\AppData\Local\{D1823B88-E7C5-419D-833D-08A4B8BDB6A7}

[13/04/2012 09:37:33] -- |D| -- C:\Users\july\AppData\Local\{D3D3D533-91BA-4F81-A646-F165935182C2}

[06/06/2012 12:45:45] -- |D| -- C:\Users\july\AppData\Local\{D3D499D1-85DA-48A7-9492-64600A69B11D}

[30/03/2012 16:38:53] -- |D| -- C:\Users\july\AppData\Local\{D4391FEC-2AB8-439D-90B5-53B9A86E2F10}

[04/05/2012 12:26:48] -- |D| -- C:\Users\july\AppData\Local\{D52C954F-42E6-4182-A450-F46589ACFF19}

[28/05/2012 16:23:36] -- |D| -- C:\Users\july\AppData\Local\{D5F345B7-0B91-49CC-A6E7-8D39EE3371C3}

[19/04/2012 20:31:04] -- |D| -- C:\Users\july\AppData\Local\{D6071385-DAE6-4D96-BF8D-26BF7D76C83F}

[15/06/2012 00:00:04] -- |D| -- C:\Users\july\AppData\Local\{D82951D1-F07D-4077-93B4-994AC6C60105}

[15/01/2012 15:03:34] -- |D| -- C:\Users\july\AppData\Local\{D82C6117-1E77-4038-AB90-CB73EF2CD367}

[04/02/2012 23:49:43] -- |D| -- C:\Users\july\AppData\Local\{D84BA3C2-A209-4BB9-96D1-3153891784EF}

[06/05/2012 15:26:21] -- |D| -- C:\Users\july\AppData\Local\{D84FB922-610D-4C21-968D-9F783EDF2244}

[19/02/2012 02:05:40] -- |D| -- C:\Users\july\AppData\Local\{DA98C795-575A-4039-A11D-0F748B30347C}

[26/01/2012 21:42:01] -- |D| -- C:\Users\july\AppData\Local\{DB72038F-601E-4067-8DA8-BC8C50DCF7C6}

[06/05/2012 10:03:17] -- |D| -- C:\Users\july\AppData\Local\{DBB71EFB-751A-448A-AA5F-59E65B81D464}

[14/04/2012 23:44:26] -- |D| -- C:\Users\july\AppData\Local\{DC9A9618-D55E-4819-AC6F-BD769E98A689}

[08/03/2012 20:40:35] -- |D| -- C:\Users\july\AppData\Local\{DD05844D-82C4-4FE3-A2DB-146339C9F7CB}

[04/04/2012 20:11:12] -- |D| -- C:\Users\july\AppData\Local\{DD155DC0-8AB1-4A97-9E0F-A0C635D3BCD8}

[24/04/2012 16:20:27] -- |D| -- C:\Users\july\AppData\Local\{DDE8D455-1F83-451D-88AE-49B26AE39C9E}

[01/02/2012 21:37:06] -- |D| -- C:\Users\july\AppData\Local\{DEA1B22E-AF2F-457D-A47B-722AA097D363}

[17/06/2012 14:39:44] -- |D| -- C:\Users\july\AppData\Local\{DEDEE226-C3BA-4BAB-90B3-AE5055C99649}

[12/05/2012 01:44:27] -- |D| -- C:\Users\july\AppData\Local\{DFA63D0E-0293-4429-9B0E-F1AA2352EA0F}

[01/04/2012 22:54:36] -- |D| -- C:\Users\july\AppData\Local\{DFD41466-36C5-4C9A-A516-F908CD6BA8FE}

[16/04/2012 21:00:19] -- |D| -- C:\Users\july\AppData\Local\{DFF264C8-46F2-4168-AC7D-8CCF5E72E9B1}

[01/06/2012 23:06:43] -- |D| -- C:\Users\july\AppData\Local\{E0BE1FD4-B58E-4CE4-BCFF-F532FAC0B54B}

[29/04/2012 11:40:55] -- |D| -- C:\Users\july\AppData\Local\{E18C7AD6-6031-415B-A6E5-0CF6C921FDC2}

[12/06/2012 23:22:35] -- |D| -- C:\Users\july\AppData\Local\{E1F8D4D1-B1FB-45DA-A2A3-993C37F09CA4}

[20/02/2012 21:04:58] -- |D| -- C:\Users\july\AppData\Local\{E30290AC-6D79-48E9-B385-96E6D9439AEE}

[18/02/2012 14:02:52] -- |D| -- C:\Users\july\AppData\Local\{E37ADF7E-8832-4661-A012-A87B7497E102}

[26/04/2012 19:31:58] -- |D| -- C:\Users\july\AppData\Local\{E3C5C1F1-6E43-4B82-A190-DBEAF748113B}

[28/01/2012 00:29:48] -- |D| -- C:\Users\july\AppData\Local\{E3F67CC2-326B-433A-8BA7-054CC5D20B58}

[22/04/2012 14:05:09] -- |D| -- C:\Users\july\AppData\Local\{E4954C4D-BEB5-4B9E-9D94-AF0C1FF1E523}

[22/05/2012 20:57:59] -- |D| -- C:\Users\july\AppData\Local\{E685556F-9FD8-44FC-99B9-005AB4EAA772}

[24/03/2012 22:21:09] -- |D| -- C:\Users\july\AppData\Local\{E8612D87-19CC-41B7-B392-49F87BA60A9E}

[15/05/2012 18:50:11] -- |D| -- C:\Users\july\AppData\Local\{E89685F5-48BE-46DC-9EB8-3A86B314DB3F}

[03/05/2012 19:48:27] -- |D| -- C:\Users\july\AppData\Local\{E8D9FDF6-E4B2-43DE-B12A-F67AC269BAA4}

[14/01/2012 19:25:28] -- |D| -- C:\Users\july\AppData\Local\{E90DB676-67DC-4ECE-98ED-D23F82873252}

[29/05/2012 09:36:06] -- |D| -- C:\Users\july\AppData\Local\{E9849C20-B64E-44FB-9416-E93FC81D8866}

[07/05/2012 22:24:11] -- |D| -- C:\Users\july\AppData\Local\{E9E81EB2-2B14-403A-9EE6-3D5CE022EDC4}

[16/01/2012 23:11:48] -- |D| -- C:\Users\july\AppData\Local\{E9E9F5B9-1356-4563-83BE-861C1FD6144D}

[13/05/2012 22:10:44] -- |D| -- C:\Users\july\AppData\Local\{EA017F11-1ED0-4265-B6BE-DD74F5ECE27E}

[27/03/2012 20:57:05] -- |D| -- C:\Users\july\AppData\Local\{EAA138FE-07AA-43FA-A3D9-96F18F54FA54}

[17/05/2012 22:54:22] -- |D| -- C:\Users\july\AppData\Local\{EB53850C-5020-4AD8-AC35-B9EE39972792}

[17/03/2012 22:50:33] -- |D| -- C:\Users\july\AppData\Local\{EBB400B5-190A-4B70-A3C7-A76309805114}

[13/05/2012 00:15:26] -- |D| -- C:\Users\july\AppData\Local\{EBD38986-533E-4C97-939F-A476656F94ED}

[03/06/2012 22:56:02] -- |D| -- C:\Users\july\AppData\Local\{EE9E65E3-75EE-437E-B2F8-A74E91B60A99}

[29/01/2012 21:04:36] -- |D| -- C:\Users\july\AppData\Local\{F040721B-EE24-40E6-88BA-88F9C5ADBA22}

[08/03/2012 20:39:55] -- |D| -- C:\Users\july\AppData\Local\{F0CB05D9-7F83-4C7F-A9D3-4957BC4DB213}

[19/04/2012 20:30:29] -- |D| -- C:\Users\july\AppData\Local\{F2C722CD-EAA1-464C-A00C-166AE81D3A09}

[07/06/2012 01:24:01] -- |D| -- C:\Users\july\AppData\Local\{F40F5B07-9ECA-4B79-A0CA-1D501BCD225A}

[17/05/2012 22:53:54] -- |D| -- C:\Users\july\AppData\Local\{F471E35F-1EA4-4FDD-86DC-464DAF774473}

[04/05/2012 12:28:25] -- |D| -- C:\Users\july\AppData\Local\{F4DF1349-6267-43C3-A985-A78766ADB955}

[06/02/2012 22:27:19] -- |D| -- C:\Users\july\AppData\Local\{F87D14F8-82FF-41D5-BC20-BA5A2369CAE8}

[14/06/2012 23:59:35] -- |D| -- C:\Users\july\AppData\Local\{FA44CABA-1B24-492B-AF9F-8C29207887EB}

[26/05/2012 21:40:34] -- |D| -- C:\Users\july\AppData\Local\{FB1424FB-73CF-4235-84D6-BE1080EBE714}

[04/05/2012 00:42:54] -- |D| -- C:\Users\july\AppData\Local\{FBC219E3-001C-4D01-B50A-D793AC133982}

[01/04/2012 10:53:57] -- |D| -- C:\Users\july\AppData\Local\{FC1D8E7D-48CB-411A-BA96-1FB82447ACE2}

[21/03/2012 11:28:30] -- |D| -- C:\Users\july\AppData\Local\{FDEA494D-EE0D-4415-BAA9-C2DFFB3CEF1D}

[20/04/2012 23:23:43] -- |D| -- C:\Users\july\AppData\Local\{FEBB8F5E-8B74-479F-8EA0-B136AE5305D5}

[04/05/2012 09:38:49] -- |D| -- C:\Users\july\AppData\Local\{FECD7605-7D3F-4831-81E4-1D1723F4FD16}

[05/06/2012 09:01:49] -- |D| -- C:\Users\july\AppData\Local\{FFB2CA4E-84FC-4DFC-933E-C18B29149886}

 

¤¤¤¤¤¤¤¤¤¤ | ProgramFiles

 

[15/11/2011 07:12:19] -- |D| -- C:\Program Files (x86)\AMD APP

[15/11/2011 07:15:10] -- |D| -- C:\Program Files (x86)\AmIcoSingLun

[15/11/2011 07:14:41] -- |D| -- C:\Program Files (x86)\ASM104xUSB3

[13/04/2011 04:47:41] -- |D| -- C:\Program Files (x86)\ASUS

[15/11/2011 07:11:08] -- |D| -- C:\Program Files (x86)\ATI Technologies

[17/06/2012 21:15:09] -- |D| -- C:\Program Files (x86)\Auslogics

[14/07/2009 05:20:08] -- |D| -- C:\Program Files (x86)\Common Files

[21/01/2012 23:31:20] -- |D| -- C:\Program Files (x86)\Complitly

[15/11/2011 07:21:46] -- |D| -- C:\Program Files (x86)\CyberLink

[14/07/2009 06:54:24] -- |ASH| -- C:\Program Files (x86)\desktop.ini

[21/01/2012 23:48:28] -- |D| -- C:\Program Files (x86)\eMule

[13/04/2011 04:33:14] -- |D| -- C:\Program Files (x86)\Google

[15/11/2011 07:10:35] -- |HD| -- C:\Program Files (x86)\InstallShield Installation Information

[15/11/2011 07:10:02] -- |D| -- C:\Program Files (x86)\Intel

[14/07/2009 05:20:08] -- |D| -- C:\Program Files (x86)\Internet Explorer

[17/06/2012 15:09:07] -- |D| -- C:\Program Files (x86)\Malwarebytes' Anti-Malware

[13/04/2011 04:47:20] -- |D| -- C:\Program Files (x86)\Microsoft

[13/01/2012 19:30:32] -- |D| -- C:\Program Files (x86)\Microsoft Analysis Services

[18/01/2012 13:37:36] -- |D| -- C:\Program Files (x86)\Microsoft Application Virtualization Client

[13/04/2011 04:25:17] -- |D| -- C:\Program Files (x86)\Microsoft Office

[13/04/2011 04:34:46] -- |D| -- C:\Program Files (x86)\Microsoft Silverlight

[13/04/2011 04:42:56] -- |D| -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition

[13/01/2012 19:33:04] -- |D| -- C:\Program Files (x86)\Microsoft.NET

[14/07/2009 07:32:38] -- |D| -- C:\Program Files (x86)\MSBuild

[13/04/2011 04:33:04] -- |D| -- C:\Program Files (x86)\Nuance

[15/11/2011 07:17:35] -- |D| -- C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation

[15/11/2011 07:16:38] -- |D| -- C:\Program Files (x86)\Realtek

[14/07/2009 07:32:38] -- |D| -- C:\Program Files (x86)\Reference Assemblies

[17/06/2012 19:52:34] -- |D| -- C:\Program Files (x86)\RegCleaner

[12/03/2012 22:46:02] -- |RD| -- C:\Program Files (x86)\Skype

[13/04/2011 04:49:28] -- |D| -- C:\Program Files (x86)\syncables

[15/11/2011 07:16:34] -- |HD| -- C:\Program Files (x86)\Temp

[14/07/2009 06:57:06] -- |HD| -- C:\Program Files (x86)\Uninstall Information

[14/07/2009 07:32:38] -- |D| -- C:\Program Files (x86)\Windows Defender

[13/04/2011 04:38:26] -- |D| -- C:\Program Files (x86)\Windows Live

[14/07/2009 05:20:08] -- |D| -- C:\Program Files (x86)\Windows Mail

[14/07/2009 07:32:38] -- |D| -- C:\Program Files (x86)\Windows Media Player

[14/07/2009 05:20:08] -- |D| -- C:\Program Files (x86)\Windows NT

[14/07/2009 07:32:38] -- |D| -- C:\Program Files (x86)\Windows Photo Viewer

[14/07/2009 07:32:38] -- |D| -- C:\Program Files (x86)\Windows Portable Devices

[14/07/2009 07:32:38] -- |D| -- C:\Program Files (x86)\Windows Sidebar

 

¤¤¤¤¤¤¤¤¤¤ | CommonFiles

 

[13/01/2012 19:33:13] -- |D| -- C:\Program Files (x86)\Common Files\DESIGNER

[15/11/2011 07:16:32] -- |D| -- C:\Program Files (x86)\Common Files\InstallShield

[14/07/2009 05:20:08] -- |D| -- C:\Program Files (x86)\Common Files\microsoft shared

[13/04/2011 04:48:00] -- |D| -- C:\Program Files (x86)\Common Files\Oberon Media

[15/11/2011 07:10:39] -- |D| -- C:\Program Files (x86)\Common Files\postureAgent

[14/07/2009 05:20:08] -- |D| -- C:\Program Files (x86)\Common Files\Services

[12/03/2012 22:46:06] -- |D| -- C:\Program Files (x86)\Common Files\Skype

[14/07/2009 05:20:08] -- |D| -- C:\Program Files (x86)\Common Files\SpeechEngines

[14/07/2009 05:20:08] -- |D| -- C:\Program Files (x86)\Common Files\System

[13/04/2011 04:33:36] -- |D| -- C:\Program Files (x86)\Common Files\Windows Live

[21/01/2012 23:31:56] -- |A| -- C:\Program Files (x86)\Common Files\WPVersion.txt

 

¤¤¤¤¤¤¤¤¤¤ | Temp\Low

 

[18/06/2012 15:23:44] -- |D| -- C:\Users\july\AppData\Local\Temp\Low\Low

[28/05/2012 16:43:39] -- |D| -- C:\Users\july\AppData\Local\Temp\Low\Messenger Companion

[07/06/2012 01:27:30] -- |D| -- C:\Users\july\AppData\Local\Temp\Low\MSI

[31/01/2012 14:13:04] -- |D| -- C:\Users\july\AppData\Local\Temp\Low\_avast_

 

¤¤¤¤¤¤¤¤¤¤ | Tasks

 

[13/01/2012 19:37:07] -- |A| -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

[13/01/2012 19:37:09] -- |A| -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

[14/07/2009 07:08:49] -- |AH| -- C:\Windows\Tasks\SA.DAT

[14/07/2009 07:08:49] -- |A| -- C:\Windows\Tasks\SCHEDLGU.TXT

 

 

¤¤¤¤¤¤¤¤¤¤ | Firewall

 

[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

 

¤

 

[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

 

16:07:56

 

¤¤¤¤¤¤¤¤¤¤ | Services Actifs | R0 : Boot | R1 : System | R2 : Auto

 

R0 - ACPI (Microsoft ACPI Driver) -> system32\drivers\ACPI.sys

R0 - amdxata () -> system32\drivers\amdxata.sys

R0 - atapi (IDE Channel) -> system32\drivers\atapi.sys

R0 - CLFS (@%SystemRoot%\system32\clfs.sys,-100) -> System32\CLFS.sys

R0 - CNG () -> System32\Drivers\cng.sys

R0 - Compbatt (Microsoft Composite Battery Driver) -> system32\drivers\compbatt.sys

R0 - Disk (Pilote de disque) -> system32\drivers\disk.sys

R0 - FileInfo (@%SystemRoot%\system32\drivers\fileinfo.sys,-100) -> system32\drivers\fileinfo.sys

R0 - FltMgr (@%SystemRoot%\system32\drivers\fltmgr.sys,-10001) -> system32\drivers\fltmgr.sys

R0 - Fs_Rec () -> (?)

R0 - fvevol (@%SystemRoot%\system32\drivers\fvevol.sys,-100) -> System32\DRIVERS\fvevol.sys

R0 - hwpolicy (@%systemroot%\system32\drivers\hwpolicy.sys,-101) -> System32\drivers\hwpolicy.sys

R0 - iaStor (Intel AHCI Controller) -> system32\DRIVERS\iaStor.sys

R0 - KSecDD () -> System32\Drivers\ksecdd.sys

R0 - KSecPkg () -> System32\Drivers\ksecpkg.sys

R0 - mountmgr (@%SystemRoot%\system32\drivers\mountmgr.sys,-100) -> System32\drivers\mountmgr.sys

R0 - msahci () -> system32\drivers\msahci.sys

R0 - msisadrv () -> system32\drivers\msisadrv.sys

R0 - Mup (@%systemroot%\system32\drivers\mup.sys,-101) -> System32\Drivers\mup.sys

R0 - NDIS (@%SystemRoot%\system32\drivers\ndis.sys,-200) -> system32\drivers\ndis.sys

R0 - partmgr (@%SystemRoot%\system32\drivers\partmgr.sys,-100) -> System32\drivers\partmgr.sys

R0 - pci (PCI Bus Driver) -> system32\drivers\pci.sys

R0 - pciide () -> system32\drivers\pciide.sys

R0 - pcw (Performance Counters for Windows Driver) -> System32\drivers\pcw.sys

R0 - rdyboost (ReadyBoost) -> System32\drivers\rdyboost.sys

R0 - spldr (Security Processor Loader Driver) -> (?)

R0 - Tcpip (@%SystemRoot%\system32\tcpipcfg.dll,-50003) -> System32\drivers\tcpip.sys

R0 - vdrvroot (Microsoft Virtual Drive Enumerator Driver) -> system32\drivers\vdrvroot.sys

R0 - volmgr (Volume Manager Driver) -> system32\drivers\volmgr.sys

R0 - volmgrx (@%SystemRoot%\system32\drivers\volmgrx.sys,-100) -> System32\drivers\volmgrx.sys

R0 - volsnap (Volumes de stockage) -> system32\drivers\volsnap.sys

R0 - Wdf01000 (Kernel Mode Driver Frameworks service) -> system32\drivers\Wdf01000.sys

R1 - AFD (@%systemroot%\system32\drivers\afd.sys,-1000) -> \SystemRoot\system32\drivers\afd.sys

R1 - aswRdr (aswRdr) -> \SystemRoot\System32\Drivers\aswrdr2.sys

R1 - aswSnx (aswSnx) -> (?)

R1 - aswSP (aswSP) -> (?)

R1 - aswTdi (avast! Network Shield Support) -> (?)

R1 - ATKWMIACPIIO_ (ATKWMIACPI Driver_) -> \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys

R1 - Beep (Beep) -> (?)

R1 - blbdrive () -> system32\DRIVERS\blbdrive.sys

R1 - cdrom (CD-ROM Driver) -> system32\DRIVERS\cdrom.sys

R1 - DfsC (@%systemroot%\system32\drivers\dfsc.sys,-101) -> System32\Drivers\dfsc.sys

R1 - discache (@%systemroot%\system32\drivers\discache.sys,-102) -> System32\drivers\discache.sys

R1 - Msfs () -> (?)

R1 - mssmbios (Microsoft System Management BIOS Driver) -> system32\DRIVERS\mssmbios.sys

R1 - NetBIOS (NetBIOS Interface) -> system32\DRIVERS\netbios.sys

R1 - NetBT (@%SystemRoot%\system32\drivers\netbt.sys,-2) -> System32\DRIVERS\netbt.sys

R1 - Npfs () -> (?)

R1 - nsiproxy (@%SystemRoot%\system32\drivers\nsiproxy.sys,-2) -> system32\drivers\nsiproxy.sys

R1 - Null () -> (?)

R1 - Psched (@%SystemRoot%\System32\drivers\pacer.sys,-101) -> system32\DRIVERS\pacer.sys

R1 - rdbss (@%systemroot%\system32\wkssvc.dll,-1000) -> system32\DRIVERS\rdbss.sys

R1 - RDPCDD (@%systemroot%\system32\DRIVERS\RDPCDD.sys,-100) -> System32\DRIVERS\RDPCDD.sys

R1 - RDPENCDD (@%systemroot%\system32\drivers\RDPENCDD.sys,-101) -> system32\drivers\rdpencdd.sys

R1 - RDPREFMP (@%systemroot%\system32\drivers\RdpRefMp.sys,-101) -> system32\drivers\rdprefmp.sys

R1 - tdx (@%SystemRoot%\system32\tcpipcfg.dll,-50004) -> system32\DRIVERS\tdx.sys

R1 - TermDD (Terminal Device Driver) -> system32\DRIVERS\termdd.sys

R1 - tmtdi (Trend Micro TDI Driver) -> system32\DRIVERS\tmtdi.sys

R1 - VgaSave () -> \SystemRoot\System32\drivers\vga.sys

R1 - vwififlt (Virtual WiFi Filter Driver) -> system32\DRIVERS\vwififlt.sys

R1 - Wanarpv6 (@%systemroot%\system32\rascfg.dll,-32012) -> system32\DRIVERS\wanarp.sys

R1 - WfpLwf (WFP Lightweight Filter) -> system32\DRIVERS\wfplwf.sys

R2 - AFBAgent (AFBAgent) -> "C:\Windows\system32\FBAgent.exe"

R2 - agp440 (Intel AGP Bus Filter) -> \SystemRoot\system32\drivers\agp440.sys

R2 - AMD External Events Utility () -> %SystemRoot%\system32\atiesrxx.exe

R2 - ASLDRService (ASLDR Service) -> C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe

R2 - ASMMAP64 (ASMMAP64) -> \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys

R2 - ASUS InstantOn (ASUS InstantOn Service) -> C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe

R2 - aswFsBlk (aswFsBlk) -> (?)

R2 - aswMonFlt (aswMonFlt) -> \??\C:\Windows\system32\drivers\aswMonFlt.sys

R2 - ATKGFNEXSrv (ATKGFNEX Service) -> C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe

R2 - AudioEndpointBuilder (@%SystemRoot%\system32\audiosrv.dll,-204) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

R2 - AudioSrv (@%SystemRoot%\system32\audiosrv.dll,-200) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted

R2 - avast! Antivirus (avast! Antivirus) -> "C:\Program Files\AVAST Software\Avast\AvastSvc.exe"

R2 - BFE (@%SystemRoot%\system32\bfe.dll,-1001) -> %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork

R2 - BITS (@%SystemRoot%\system32\qmgr.dll,-1000) -> %SystemRoot%\System32\svchost.exe -k netsvcs

R2 - clr_optimization_v4.0.30319_32 (Microsoft .NET Framework NGEN v4.0.30319_X86) -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

R2 - clr_optimization_v4.0.30319_64 (Microsoft .NET Framework NGEN v4.0.30319_X64) -> C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

R2 - CryptSvc (@%SystemRoot%\system32\cryptsvc.dll,-1001) -> %SystemRoot%\system32\svchost.exe -k NetworkService

R2 - cvhsvc (Client Virtualization Handler) -> "C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"

R2 - DcomLaunch (@oleres.dll,-5012) -> %SystemRoot%\system32\svchost.exe -k DcomLaunch

R2 - Dhcp (@%SystemRoot%\system32\dhcpcore.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted

R2 - Dnscache (@%SystemRoot%\System32\dnsapi.dll,-101) -> %SystemRoot%\system32\svchost.exe -k NetworkService

R2 - DPS (@%systemroot%\system32\dps.dll,-500) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork

R2 - EapHost (@%systemroot%\system32\eapsvc.dll,-1) -> %SystemRoot%\System32\svchost.exe -k netsvcs

R2 - eventlog (@%SystemRoot%\system32\wevtsvc.dll,-200) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted

R2 - EventSystem (@comres.dll,-2450) -> %SystemRoot%\system32\svchost.exe -k LocalService

R2 - FDResPub (@%systemroot%\system32\fdrespub.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

R2 - FontCache (@%systemroot%\system32\FntCache.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

R2 - gpsvc (@gpapi.dll,-112) -> %systemroot%\system32\svchost.exe -k netsvcs

R2 - gupdate (Service Google Update (gupdate)) -> "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc

R2 - IKEEXT (@%SystemRoot%\system32\ikeext.dll,-501) -> %systemroot%\system32\svchost.exe -k netsvcs

R2 - iphlpsvc (@%SystemRoot%\system32\iphlpsvc.dll,-500) -> %SystemRoot%\System32\svchost.exe -k NetSvcs

R2 - LanmanServer (@%systemroot%\system32\srvsvc.dll,-100) -> %SystemRoot%\system32\svchost.exe -k netsvcs

R2 - LanmanWorkstation (@%systemroot%\system32\wkssvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k NetworkService

R2 - lltdio (Link-Layer Topology Discovery Mapper I/O Driver) -> system32\DRIVERS\lltdio.sys

R2 - lmhosts (@%SystemRoot%\system32\lmhsvc.dll,-101) -> %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted

R2 - LMS (Intel® Management and Security Application Local Management Service) -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

R2 - luafv (@%systemroot%\system32\drivers\luafv.sys,-100) -> \SystemRoot\system32\drivers\luafv.sys

R2 - MMCSS (@%systemroot%\system32\mmcss.dll,-100) -> %SystemRoot%\system32\svchost.exe -k netsvcs

R2 - MpsSvc (@%SystemRoot%\system32\FirewallAPI.dll,-23090) -> %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork

R2 - NlaSvc (@%SystemRoot%\System32\nlasvc.dll,-1) -> %SystemRoot%\System32\svchost.exe -k NetworkService

R2 - nsi (@%SystemRoot%\system32\nsisvc.dll,-200) -> %systemroot%\system32\svchost.exe -k LocalService

R2 - PcaSvc (@%SystemRoot%\system32\pcasvc.dll,-1) -> %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted

R2 - PEAUTH (PEAUTH) -> system32\drivers\peauth.sys

R2 - PlugPlay (@%SystemRoot%\system32\umpnpmgr.dll,-100) -> %SystemRoot%\system32\svchost.exe -k DcomLaunch

R2 - Power (@%SystemRoot%\system32\umpo.dll,-100) -> %SystemRoot%\system32\svchost.exe -k DcomLaunch

R2 - ProfSvc (@%systemroot%\system32\profsvc.dll,-300) -> %systemroot%\system32\svchost.exe -k netsvcs

R2 - RpcEptMapper (@%windir%\system32\RpcEpMap.dll,-1001) -> %SystemRoot%\system32\svchost.exe -k RPCSS

R2 - RpcSs (@oleres.dll,-5010) -> %SystemRoot%\system32\svchost.exe -k rpcss

R2 - rspndr (Link-Layer Topology Discovery Responder) -> system32\DRIVERS\rspndr.sys

R2 - SamSs (@%SystemRoot%\system32\samsrv.dll,-1) -> %SystemRoot%\system32\lsass.exe

R2 - Schedule (@%SystemRoot%\system32\schedsvc.dll,-100) -> %systemroot%\system32\svchost.exe -k netsvcs

R2 - secdrv (Security Driver) -> (?)

R2 - SENS (@%SystemRoot%\system32\Sens.dll,-200) -> %SystemRoot%\system32\svchost.exe -k netsvcs

R2 - sftlist (Application Virtualization Client) -> "C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"

R2 - SharedAccess (@%SystemRoot%\system32\ipnathlp.dll,-106) -> %SystemRoot%\System32\svchost.exe -k netsvcs

R2 - ShellHWDetection (@%SystemRoot%\System32\shsvcs.dll,-12288) -> %SystemRoot%\System32\svchost.exe -k netsvcs

R2 - SkypeUpdate (Skype Updater) -> "C:\Program Files (x86)\Skype\Updater\Updater.exe"

R2 - Spooler (@%systemroot%\system32\spoolsv.exe,-1) -> %SystemRoot%\System32\spoolsv.exe

R2 - sppsvc (@%SystemRoot%\system32\sppsvc.exe,-101) -> %SystemRoot%\system32\sppsvc.exe

R2 - stisvc (@%SystemRoot%\system32\wiaservc.dll,-9) -> %SystemRoot%\system32\svchost.exe -k imgsvc

R2 - SysMain (@%SystemRoot%\system32\sysmain.dll,-1000) -> %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted

R2 - tcpipreg (TCP/IP Registry Compatibility) -> System32\drivers\tcpipreg.sys

R2 - Themes (@%SystemRoot%\System32\themeservice.dll,-8192) -> %SystemRoot%\System32\svchost.exe -k netsvcs

R2 - tmactmon (tmactmon) -> system32\DRIVERS\tmactmon.sys

R2 - tmcomm (tmcomm) -> system32\DRIVERS\tmcomm.sys

R2 - tmevtmgr (tmevtmgr) -> system32\DRIVERS\tmevtmgr.sys

R2 - TrkWks (@%SystemRoot%\system32\trkwks.dll,-1) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

R2 - UNS (Intel® Management and Security Application User Notification Service) -> "C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe"

R2 - UxSms (@%SystemRoot%\system32\dwm.exe,-2000) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

R2 - WerSvc (@%SystemRoot%\System32\wersvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k WerSvcGroup

R2 - WinDefend (@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103) -> %SystemRoot%\System32\svchost.exe -k secsvcs

R2 - Winmgmt (@%Systemroot%\system32\wbem\wmisvc.dll,-205) -> %systemroot%\system32\svchost.exe -k netsvcs

R2 - Wlansvc (@%SystemRoot%\System32\wlansvc.dll,-257) -> %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted

R2 - wlidsvc (Windows Live ID Sign-in Assistant) -> "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"

R2 - WMPNetworkSvc (@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101) -> "%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe"

R2 - wscsvc (@%SystemRoot%\System32\wscsvc.dll,-200) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted

R2 - WSearch (@%systemroot%\system32\SearchIndexer.exe,-103) -> %systemroot%\system32\SearchIndexer.exe /Embedding

R2 - wuauserv (@%systemroot%\system32\wuaueng.dll,-105) -> %systemroot%\system32\svchost.exe -k netsvcs

R2 - wudfsvc (@%SystemRoot%\system32\wudfsvc.dll,-1000) -> %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted

 

¤¤¤¤¤¤¤¤¤¤ | Fichiers Système

 

[MD5.64EDD3F59DB321947969FDF1DD747323] - [14/07/2009 02:06:39] - (.© Microsoft Corporation. - 1394 Bus Device Driver.) - [66.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\1394bus.sys

[MD5.A87D604AEA360176311474C87A63BB88] - [18/02/2011 21:49:39] - (.© Microsoft Corporation. - 1394 OpenHCI Driver.) - [224.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\1394ohci.sys

[MD5.D81D9E70B8A6DD14D42D7B4EFA65D5F2] - [18/02/2011 21:49:45] - (.© Microsoft Corporation. - Pilote ACPI pour NT.) - [326.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\acpi.sys

[MD5.99F8E788246D495CE3794D7E7821D2CA] - [18/02/2011 21:49:25] - (.© Microsoft Corporation. - ACPI Power Metering Driver.) - [12.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\acpipmi.sys

[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - [10/06/2009 22:36:24] - (.Copyright © 2006 Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) - [479.58 Ko] - (1.6.6.4) - C:\Windows\System32\Drivers\adp94xx.sys

[MD5.597F78224EE9224EA1A13D6350CED962] - [13/07/2009 23:59:32] - (.Copyright © 2006 Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) - [331.58 Ko] - (1.6.6.1) - C:\Windows\System32\Drivers\adpahci.sys

[MD5.E109549C90F62FB570B9540C4B148E54] - [13/07/2009 23:59:33] - (.Copyright © 2003 Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) - [178.58 Ko] - (7.2.0.0) - C:\Windows\System32\Drivers\adpu320.sys

[MD5.1C7857B62DE5994A75B054A9FD4C3825] - [16/02/2012 21:44:07] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487 Ko] - (6.1.7601.17752) - C:\Windows\System32\Drivers\afd.sys

[MD5.7ECFF9B22276B73F43A99A15A6094E90] - [14/07/2009 02:10:24] - (.© Microsoft Corporation. - RAS Agile Vpn Miniport Call Manager.) - [59 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\agilevpn.sys

[MD5.608C14DBA7299D8CB6ED035A68A15799] - [14/07/2009 01:38:44] - (.© Microsoft Corporation. - Filtre AGP 440 NT.) - [59.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\AGP440.sys

[MD5.5812713A477A3AD7363C7438CA2EE038] - [14/07/2009 01:19:47] - (.Copyright © Acer Laboratories Inc. 2000 - ALi mini IDE Driver.) - [15.08 Ko] - (1.2.0.0) - C:\Windows\System32\Drivers\aliide.sys

[MD5.1FF8B4431C353CE385C875F194924C0C] - [14/07/2009 01:19:49] - (.Copyright © AMD 2003 - Pilote IDE AMD.) - [15.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\amdide.sys

[MD5.7024F087CFF1833A806193EF9D22CDA9] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - Processor Device Driver.) - [63 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\amdk8.sys

[MD5.1E56388B3FE0D031C44144EB8C4D6217] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - Processor Device Driver.) - [59.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\amdppm.sys

[MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - [15/01/2012 16:37:36] - (.Copyright © 2008-2010 AMD, Inc. - AHCI 1.2 Device Driver.) - [105.38 Ko] - (1.1.2.5) - C:\Windows\System32\Drivers\amdsata.sys

[MD5.F67F933E79241ED32FF46A4F29B5120B] - [10/06/2009 22:37:35] - (.2008 Advanced Micro Devices, Inc. - AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform.) - [189.58 Ko] - (3.6.1540.127) - C:\Windows\System32\Drivers\amdsbs.sys

[MD5.540DAF1CEA6094886D72126FD7C33048] - [15/01/2012 16:37:36] - (.Copyright © 2008-2010 AMD, Inc. - Storage Filter Driver.) - [26.38 Ko] - (1.1.2.5) - C:\Windows\System32\Drivers\amdxata.sys

[MD5.92A848F962DA91C631147D566414BB7E] - [18/03/2011 07:36:18] - (.Copyright© Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) - [73.09 Ko] - (1.0.32.84) - C:\Windows\System32\Drivers\AmUStor.sys

[MD5.89A69C3F2F319B43379399547526D952] - [18/02/2011 21:49:57] - (.© Microsoft Corporation. - AppID Driver.) - [60 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\appid.sys

[MD5.C484F8CEB1717C540242531DB7845C4E] - [13/07/2009 23:59:33] - (.Copyright 2007 Adaptec, Inc. - Adaptec RAID Storport Driver.) - [85.58 Ko] - (5.2.0.10384) - C:\Windows\System32\Drivers\arc.sys

[MD5.019AF6924AEFE7839F61C830227FE79C] - [13/07/2009 23:59:33] - (.Copyright 2008 Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) - [95.56 Ko] - (5.2.0.16119) - C:\Windows\System32\Drivers\arcsas.sys

[MD5.0AA7A996792FB0287B33A57A8093AE44] - [02/06/2011 20:32:50] - (. - ASMedia USB3 Hub Driver.) - [125.48 Ko] - (1.12.5.0) - C:\Windows\System32\Drivers\asmthub3.sys

[MD5.125DC3ABF5BFCCFE82AD17D078E0B9EC] - [02/06/2011 20:32:50] - (. - ASMEDIA XHCI Host Controller Driver.) - [392.48 Ko] - (1.12.5.0) - C:\Windows\System32\Drivers\asmtxhci.sys

[MD5.B9DA213B5271DB5FCE962D827E6D620D] - [13/01/2012 19:37:00] - (.Copyright © 1996-2012 AVAST Software - avast! File System Access Blocking Driver.) - [23.84 Ko] - (7.0.1426.0) - C:\Windows\System32\Drivers\aswFsBlk.sys

[MD5.21C9835D0E5AD2FF0F16134BCB32CC71] - [13/01/2012 19:36:59] - (.Copyright © 1996-2012 AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) - [68.34 Ko] - (7.0.1426.0) - C:\Windows\System32\Drivers\aswMonFlt.sys

[MD5.952EDC2E81F85D1781958D4128BF59F8] - [13/01/2012 19:37:00] - (.Copyright © 1996-2010 AVAST Software - avast! TDI RDR Driver.) - [41.34 Ko] - (6.0.1367.0) - C:\Windows\System32\Drivers\aswRdr.sys

[MD5.1B96A5867ABD4FA6135D8298FCCCF9C6] - [24/03/2012 22:22:36] - (.Copyright © 1996-2012 AVAST Software - avast! WFP Redirect Driver.) - [51.84 Ko] - (7.0.1426.0) - C:\Windows\System32\Drivers\aswRdr2.sys

[MD5.6E98BB288696777A3A8A07A52B0EAEE9] - [13/01/2012 19:36:59] - (.Copyright © 1996-2012 AVAST Software - avast! Virtualization Driver.) - [799.84 Ko] - (7.0.1426.0) - C:\Windows\System32\Drivers\aswSnx.sys

[MD5.D9FB49F16E4EB02EFECAE8CBFE4BCB4C] - [13/01/2012 19:37:00] - (.Copyright © 1996-2012 AVAST Software - avast! self protection module.) - [329.34 Ko] - (7.0.1426.0) - C:\Windows\System32\Drivers\aswSP.sys

[MD5.7352BB9A564B94BBD7C9CBF165F55006] - [13/01/2012 19:37:00] - (.Copyright © 1996-2012 AVAST Software - avast! TDI Filter Driver.) - [57.84 Ko] - (7.0.1426.0) - C:\Windows\System32\Drivers\aswTdi.sys

[MD5.769765CE2CC62867468CEA93969B2242] - [14/07/2009 02:10:13] - (.© Microsoft Corporation. - MS Remote Access serial network driver.) - [22.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\asyncmac.sys

[MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\atapi.sys

[MD5.A34FE1E025E88798E746F484956C0720] - [18/02/2011 21:49:32] - (.© Microsoft Corporation. - ATAPI Driver Extension.) - [151.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ataport.sys

[MD5.0A780D84FC9C82E16E2037BE1896C022] - [15/11/2011 07:17:35] - (.Copyright © 2001-2010 Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) - [2705 Ko] - (9.2.0.446) - C:\Windows\System32\Drivers\athrx.sys

[MD5.DBB487D09F56C674430AC454FD8BCAB9] - [15/11/2011 07:10:59] - (.Copyright © 2004-2011 Advanced Micro Devices - AMD High Definition Audio Function Driver.) - [226.02 Ko] - (7.12.0.7702) - C:\Windows\System32\Drivers\AtihdW76.sys

[MD5.73B928832DDEF61B21F64E88AAC65E92] - [15/11/2011 07:10:59] - (.Copyright © 1998-2006 ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) - [9968 Ko] - (8.1.1.1199) - C:\Windows\System32\Drivers\atikmdag.sys

[MD5.BD6E1FED09FC69482E61A486968E5DDF] - [15/11/2011 07:10:59] - (.Copyright © 2007 Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) - [310.5 Ko] - (8.14.1.6233) - C:\Windows\System32\Drivers\atikmpag.sys

[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - [10/06/2009 22:34:23] - (.Copyright 2000-2008, Broadcom Corporation. - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) - [264.5 Ko] - (10.100.4.0) - C:\Windows\System32\Drivers\b57nd60a.sys

[MD5.F4DE2AE7A9E1BADAC70BC71EA2C17612] - [14/07/2009 01:31:01] - (.© Microsoft Corporation. - Battery Class Driver.) - [27.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\battc.sys

[MD5.16A47CE2DECC9B099349A5F840654746] - [14/07/2009 02:00:13] - (.© Microsoft Corporation. - BEEP Driver.) - [6.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\beep.sys

[MD5.61583EE3C3A17003C4ACD0475646B4D3] - [14/07/2009 01:35:59] - (.© Microsoft Corporation. - BLB Drive Driver.) - [44 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\blbdrive.sys

[MD5.6C02A83164F5CC0A262F4199F0871CF5] - [04/05/2011 15:43:12] - (.© Microsoft Corporation. - NT Lan Manager Datagram Receiver Driver.) - [88.5 Ko] - (6.1.7601.17565) - C:\Windows\System32\Drivers\bowser.sys

[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - [14/07/2009 03:19:59] - (.Copyright © Brother Industries, Ltd. 2001-2003 - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) - [18 Ko] - (1.10.0.2) - C:\Windows\System32\Drivers\BrFiltLo.sys

[MD5.B114D3098E9BDB8BEA8B053685831BE6] - [14/07/2009 03:20:21] - (.Copyright © Brother Industries, Ltd. 2001 - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) - [8.5 Ko] - (1.4.0.1) - C:\Windows\System32\Drivers\BrFiltUp.sys

[MD5.5C2F352A4E961D72518261257AAE204B] - [14/07/2009 03:05:51] - (.© Microsoft Corporation. - MAC Bridge Driver.) - [93 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\bridge.sys

[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - [14/07/2009 03:19:06] - (.Copyright © Brother Industries Ltd.1997-2006 - Pilote Brother Série I/F (WDM).) - [280 Ko] - (1.0.1.6) - C:\Windows\System32\Drivers\BrSerId.sys

[MD5.A6ECA2151B08A09CACECA35C07F05B42] - [14/07/2009 03:20:11] - (.Copyright © Brother Industries Ltd.1997-2003 - Brother Serial driver (WDM version).) - [46 Ko] - (1.0.0.20) - C:\Windows\System32\Drivers\BrSerWdm.sys

[MD5.B79968002C277E869CF38BD22CD61524] - [14/07/2009 03:20:26] - (.Copyright©Brother Industries Ltd.1997-2006 - Brother USB MDM Driver .) - [14.63 Ko] - (1.0.0.12) - C:\Windows\System32\Drivers\BrUsbMdm.sys

[MD5.A87528880231C54E75EA7A44943B38BF] - [14/07/2009 03:20:15] - (.Copyright©Brother Industries Ltd.1997-2006 - Brother USB Serial Driver.) - [14.38 Ko] - (1.0.1.3) - C:\Windows\System32\Drivers\BrUsbSer.sys

[MD5.CF98190A94F62E405C8CB255018B2315] - [14/07/2009 02:06:53] - (.© Microsoft Corporation. - Extension de bus Bluetooth.) - [41 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\bthenum.sys

[MD5.9DA669F11D1F894AB4EB69BF546A42E8] - [14/07/2009 02:06:52] - (.© Microsoft Corporation. - Bluetooth Communications Driver.) - [70.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\bthmodem.sys

[MD5.02DD601B708DD0667E1331FA8518E9FF] - [14/07/2009 02:07:00] - (.© Microsoft Corporation. - Bluetooth Personal Area Networking.) - [116 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\bthpan.sys

[MD5.64C198198501F7560EE41D8D1EFA7952] - [15/01/2012 16:37:43] - (.© Microsoft Corporation. - Pilote de bus Bluetooth.) - [540 Ko] - (6.1.7601.17607) - C:\Windows\System32\Drivers\bthport.sys

[MD5.F188B7394D81010767B6DF3178519A37] - [15/01/2012 16:37:42] - (.© Microsoft Corporation. - Pilote de Miniport Bluetooth.) - [78.5 Ko] - (6.1.7601.17607) - C:\Windows\System32\Drivers\BTHUSB.SYS

[MD5.3E5B191307609F7514148C6832BB0842] - [10/06/2009 22:34:28] - (.© COPYRIGHT 2001-2008 Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) - [457.5 Ko] - (4.8.2.0) - C:\Windows\System32\Drivers\bxvbda.sys

[MD5.B8BD2BB284668C84865658C77574381A] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - CD-ROM File System Driver.) - [90 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\cdfs.sys

[MD5.F036CE71586E93D94DAB220D7BDF4416] - [18/02/2011 21:49:57] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\cdrom.sys

[MD5.D7CD5C4E1B71FA62050515314CFB52CF] - [14/07/2009 02:06:34] - (.© Microsoft Corporation. - Consumer IR Class Driver for eHome.) - [44.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\circlass.sys

[MD5.ACFAD0B512226C7A83C7CB09FD55A9AD] - [18/02/2011 21:49:33] - (.© Microsoft Corporation. - SCSI Class System Dll.) - [174.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\Classpnp.sys

[MD5.0840155D0BDDF1190F84A663C284BD33] - [14/07/2009 01:31:03] - (.© Microsoft Corporation. - Control Method Battery Driver.) - [17.25 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\CmBatt.sys

[MD5.E19D3F095812725D88F9001985B94EDD] - [14/07/2009 01:19:48] - (.Copyright © CMD Technology, Inc. 1999-2000 - CMD PCI IDE Bus Driver.) - [17.08 Ko] - (2.0.7.0) - C:\Windows\System32\Drivers\cmdide.sys

[MD5.C4943B6C962E4B82197542447AD599F4] - [31/01/2012 13:19:21] - (.© Microsoft Corporation. - Kernel Cryptography, Next Generation.) - [448.47 Ko] - (6.1.7601.17725) - C:\Windows\System32\Drivers\cng.sys

[MD5.102DE219C3F61415F964C88E9085AD14] - [14/07/2009 01:31:02] - (.© Microsoft Corporation. - Composite Battery Driver.) - [21.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\compbatt.sys

[MD5.03EDB043586CCEBA243D689BDDA370A8] - [18/02/2011 21:49:39] - (.© Microsoft Corporation. - Multi-Transport Composite Bus Enumerator.) - [38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\CompositeBus.sys

[MD5.3E588B60EC061686BA05D33574A344C6] - [14/07/2009 02:01:01] - (.© Microsoft Corporation. - Crash Dump Driver.) - [38.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\crashdmp.sys

[MD5.1C827878A998C18847245FE1F34EE597] - [14/07/2009 02:01:14] - (.© Microsoft Corporation. - Disk Block Verification Filter Driver.) - [23.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\crcdisk.sys

[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - [18/02/2011 21:49:46] - (.© Microsoft Corporation. - DFS Namespace Client Driver.) - [100 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\dfsc.sys

[MD5.13096B05847EC78F0977F2C0F79E9AB3] - [14/07/2009 01:37:18] - (.© Microsoft Corporation. - System Indexer/Cache Driver.) - [39.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\discache.sys

[MD5.9819EEE8B5EA3784EC4AF3B137A5244C] - [14/07/2009 01:19:57] - (.© Microsoft Corporation. - PnP Disk Driver.) - [71.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\disk.sys

[MD5.9BBD8B5855BC6578957F82341F9CDE5A] - [14/01/2012 11:21:26] - (.© Microsoft Corporation. - Crash Dump Disk Driver.) - [26.88 Ko] - (6.1.7601.17601) - C:\Windows\System32\Drivers\Diskdump.sys

[MD5.21D26064AEDB4988F785BB4A3A2C051E] - [14/07/2009 02:06:30] - (.© Microsoft Corporation. - Microsoft Trusted Audio Drivers.) - [113.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\drmk.sys

[MD5.9B19F34400D24DF84C858A421C205754] - [14/07/2009 02:06:16] - (.© Microsoft Corporation. - Microsoft Trusted Audio Drivers.) - [5.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\drmkaud.sys

[MD5.839B5FE3D48E9F35B22C21A3D5103F6C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI Dump Driver.) - [28.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\Dumpata.sys

[MD5.814DB88F2641691575A455CF25354098] - [14/07/2009 01:21:56] - (.© Microsoft Corporation. - Bitlocker Drive Encryption Crashdump Filter.) - [53.84 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\dumpfve.sys

[MD5.BF24D6F2ED97FE830BFD52B246F98E67] - [14/07/2009 01:38:28] - (.© Microsoft Corporation. - DirectX API Driver.) - [16.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\dxapi.sys

[MD5.FEDE0629ECB23650D48989517D4914DA] - [14/07/2009 01:38:28] - (.© Microsoft Corporation. - DirectX Graphics Driver.) - [96.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\dxg.sys

[MD5.F5BEE30450E18E6B83A5012C100616FD] - [18/02/2011 21:49:56] - (.© Microsoft Corporation. - DirectX Graphics Kernel.) - [959.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\dxgkrnl.sys

[MD5.9CD68BDDF322535C02ADC8331013D13D] - [18/02/2011 21:49:56] - (.© Microsoft Corporation. - DirectX Graphics MMS.) - [252 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\dxgmms1.sys

[MD5.0E5DA5369A0FCAEA12456DD852545184] - [10/06/2009 22:36:49] - (.Copyright © 2003-2009 Emulex - Storport Miniport Driver for LightPulse HBAs.) - [518.06 Ko] - (7.2.10.211) - C:\Windows\System32\Drivers\elxstor.sys

[MD5.34A3C54752046E79A126E15C51DB409B] - [14/07/2009 01:31:04] - (.© Microsoft Corporation. - Error Device Driver.) - [9.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\errdev.sys

[MD5.4C120D2B2EA269EAE7A5744794EB6DB1] - [13/10/2011 06:47:21] - (.ELAN Microelectronics Corp. Copyright© 2003-2010 - ETD Kernel Center.) - [134.79 Ko] - (8.2.0.30) - C:\Windows\System32\Drivers\ETD.sys

[MD5.DC5D737F51BE844D8C82C695EB17372F] - [10/06/2009 22:34:33] - (.© COPYRIGHT 2001-2008 Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) - [3209 Ko] - (4.8.13.0) - C:\Windows\System32\Drivers\evbda.sys

[MD5.A510C654EC00C1E9BDD91EEB3A59823B] - [14/07/2009 01:23:29] - (.© Microsoft Corporation. - Microsoft Extended FAT File System.) - [190.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\exfat.sys

[MD5.0ADC83218B66A6DB380C330836F3E36D] - [14/07/2009 01:23:29] - (.© Microsoft Corporation. - Fast FAT File System Driver.) - [200 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\fastfat.sys

[MD5.D765D19CD8EF61F650C384F62FAC00AB] - [14/07/2009 02:00:54] - (.© Microsoft Corporation. - Floppy Disk Controller Driver.) - [29 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\fdc.sys

[MD5.655661BE46B5F5F3FD454E2C3095B930] - [14/07/2009 01:34:25] - (.© Microsoft Corporation. - FileInfo Filter Driver.) - [68.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\fileinfo.sys

[MD5.5F671AB5BC87EEA04EC38A6CD5962A47] - [14/07/2009 01:25:40] - (.© Microsoft Corporation. - File Trace Filter Driver.) - [33.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\filetrace.sys

[MD5.C172A0F53008EAEB8EA33FE10E177AF5] - [14/07/2009 02:00:54] - (.© Microsoft Corporation. - Floppy Driver.) - [24 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\flpydisk.sys

[MD5.DA6B67270FD9DB3697B20FCE94950741] - [18/02/2011 21:49:25] - (.© Microsoft Corporation. - Gestionnaire de filtres de système de fichiers Microsoft.) - [282.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\fltMgr.sys

[MD5.D43703496149971890703B4B1B723EAC] - [14/07/2009 01:26:13] - (.© Microsoft Corporation. - File System Dependency Manager Mini Filter Driver.) - [54.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\fsdepends.sys

[MD5.6C06701BF1DB05405804D7EB610991CE] - [13/04/2011 04:38:26] - (.© Microsoft Corporation. - Family Safety Filter Driver (WFP Callout).) - [47.35 Ko] - (15.4.3502.922) - C:\Windows\System32\Drivers\fssfltr.sys

[MD5.6BD9295CC032DD3077C671FCCF579A7B] - [11/04/2012 22:18:39] - (.© Microsoft Corporation. - File System Recognizer Driver.) - [22.86 Ko] - (6.1.7601.17787) - C:\Windows\System32\Drivers\fs_rec.sys

[MD5.1F7B25B858FA27015169FE95E54108ED] - [18/02/2011 21:49:51] - (.© Microsoft Corporation. - BitLocker Drive Encryption Driver.) - [218.02 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\fvevol.sys

[MD5.63B5129D7127E7757FCC9EA9D3763963] - [18/02/2011 21:49:38] - (.© Microsoft Corporation. - FWP/IPsec Kernel-Mode API.) - [281.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\FWPKCLNT.SYS

[MD5.8C778D335C9D272CFD3298AB02ABE3B6] - [14/07/2009 01:38:44] - (.© Microsoft Corporation. - Filtre AGPv3.0 générique Microsoft pour plateformes de processeur K8/9.) - [63.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\GAGP30KX.SYS

[MD5.F2523EF6460FC42405B12248338AB2F0] - [14/07/2009 00:53:43] - (.Copyright ©2007-2009 Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) - [30.5 Ko] - (1.31.27127.0) - C:\Windows\System32\Drivers\hcw85cir.sys

[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - [18/02/2011 21:49:57] - (.© Microsoft Corporation. - High Definition Audio Bus Driver.) - [119.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\hdaudbus.sys

[MD5.975761C778E33CD22498059B91E7373A] - [18/02/2011 21:49:57] - (.© Microsoft Corporation. - High Definition Audio Function Driver.) - [342 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\HdAudio.sys

[MD5.A6518DCC42F7A6E999BB3BEA8FD87567] - [15/11/2011 07:10:35] - (.Copyright © 2006-2010, Intel Corporation. - Intel® Management Engine Interface.) - [55.02 Ko] - (7.0.0.1144) - C:\Windows\System32\Drivers\HECIx64.sys

[MD5.78E86380454A7B10A5EB255DC44A355F] - [14/07/2009 01:31:06] - (.© Microsoft Corporation. - Hid Battery Driver.) - [26 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\hidbatt.sys

[MD5.7FD2A313F7AFE5C4DAB14798C48DD104] - [14/07/2009 02:06:52] - (.© Microsoft Corporation. - Pilote de miniport Bluetooth pour les périphériques HID.) - [98.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\hidbth.sys

[MD5.8B0E40E7E8BBF5ACF390465609D89FF1] - [18/02/2011 21:49:44] - (.© Microsoft Corporation. - Hid Class Library.) - [75 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\hidclass.sys

[MD5.0A77D29F311B88CFAE3B13F9C1A73825] - [14/07/2009 02:06:23] - (.© Microsoft Corporation. - Infrared Miniport Driver for Input Devices.) - [45.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\hidir.sys

[MD5.49EE2E52E6CD03947DAD72F65367BE06] - [14/07/2009 02:06:17] - (.© Microsoft Corporation. - Hid Parsing Library.) - [32.13 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\hidparse.sys

[MD5.9592090A7E2B61CD582B612B6DF70536] - [18/02/2011 21:49:44] - (.© Microsoft Corporation. - USB Miniport Driver for Input Devices.) - [29.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\hidusb.sys

[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - [18/02/2011 21:49:57] - (.Copyright © 2004-2010 Hewlett-Packard Development Company, L.P. - Smart Array SAS/SATA Controller Media Driver.) - [76.88 Ko] - (6.12.6.64) - C:\Windows\System32\Drivers\HpSAMD.sys

[MD5.0EA7DE1ACB728DD5A369FD742D6EEE28] - [18/02/2011 21:49:57] - (.© Microsoft Corporation. - HTTP Pile du protocole.) - [736 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\http.sys

[MD5.A5462BD6884960C9DC85ED49D34FF392] - [18/02/2011 21:49:51] - (.© Microsoft Corporation. - Hardware Policy Driver.) - [14.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\hwpolicy.sys

[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - [14/07/2009 01:19:58] - (.© Microsoft Corporation. - Pilote de port i8042.) - [103 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\i8042prt.sys

[MD5.26CF4275034214ECEDD8EC17B0A18A99] - [13/10/2011 06:47:20] - (.Copyright© Intel Corporation 1994-2011 - Intel Rapid Storage Technology driver - x64.) - [544.77 Ko] - (10.5.0.1026) - C:\Windows\System32\Drivers\iaStor.sys

[MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - [15/01/2012 16:37:36] - (.Copyright© Intel Corporation 1994-2008 - Intel Matrix Storage Manager driver - x64.) - [400.88 Ko] - (8.6.2.1014) - C:\Windows\System32\Drivers\iaStorV.sys

[MD5.5C18831C61933628F5BB0EA2675B9D21] - [13/07/2009 23:59:33] - (.Copyright © 2002-05 Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) - [43.08 Ko] - (5.4.22.0) - C:\Windows\System32\Drivers\iirsp.sys

[MD5.F00F20E70C6EC3AA366910083A0518AA] - [14/07/2009 01:19:48] - (.© Microsoft Corporation. - Intel PCI IDE Driver.) - [16.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\intelide.sys

[MD5.ADA036632C664CAA754079041CF1F8C1] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - Processor Device Driver.) - [61 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\intelppm.sys

[MD5.C9F0E1BD74365A8771590E9008D22AB6] - [18/02/2011 21:49:47] - (.© Microsoft Corporation. - IP FILTER DRIVER.) - [81 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ipfltdrv.sys

[MD5.0FC1AEA580957AA8817B8F305D18CA3A] - [18/02/2011 21:49:58] - (.© OSA Technologies, Inc., une société Avocent, © Microsoft Corporation. - PILOT IPMI WMI.) - [77 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\IPMIDrv.sys

[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - [14/07/2009 02:10:03] - (.© Microsoft Corporation. - IP Network Address Translator.) - [113.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ipnat.sys

[MD5.05360B1EA5A2ABF620D1D96EBD8BD8F1] - [14/07/2009 02:09:02] - (.© Microsoft Corporation. - IRDA Protocol Driver.) - [117.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\irda.sys

[MD5.3ABF5E7213EB28966D55D58B515D5CE9] - [14/07/2009 02:08:59] - (.© Microsoft Corporation. - Infra-Red Bus Enumerator.) - [17.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\irenum.sys

[MD5.2F7B28DC3E1183E5EB418DF55C204F38] - [14/07/2009 01:31:08] - (.© Microsoft Corporation. - Pilote de bus PNP ISA.) - [20.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\isapnp.sys

[MD5.BC02336F1CBA7DCC7D1213BB588A68A5] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Pilote de la classe Clavier.) - [49.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\kbdclass.sys

[MD5.0705EFF5B42A9DB58548EEC3B26BB484] - [18/02/2011 21:49:47] - (.© Microsoft Corporation. - Pilote de filtre clavier HID.) - [32.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\kbdhid.sys

[MD5.E63EF8C3271D014F14E2469CE75FECB4] - [13/10/2011 06:47:20] - (. - Keyboard Filter Driver.) - [15.05 Ko] - (1.0.0.3) - C:\Windows\System32\Drivers\kbfiltr.sys

[MD5.24FBF5CC5C04150073C315A7C83521EE] - [18/02/2011 21:49:25] - (.© Microsoft Corporation. - Kernel CSA Library.) - [238 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ks.sys

[MD5.DA1E991A61CFDD755A589E206B97644B] - [31/01/2012 13:19:21] - (.© Microsoft Corporation. - Kernel Security Support Provider Interface.) - [93.36 Ko] - (6.1.7601.17725) - C:\Windows\System32\Drivers\ksecdd.sys

[MD5.7E33198D956943A4F11A5474C1E9106F] - [31/01/2012 13:19:21] - (.© Microsoft Corporation. - Kernel Security Support Provider Interface Packages.) - [148.86 Ko] - (6.1.7601.17725) - C:\Windows\System32\Drivers\ksecpkg.sys

[MD5.6869281E78CB31A43E969F06B57347C4] - [14/07/2009 02:00:19] - (.© Microsoft Corporation. - Kernel Streaming WOW Thunk Service.) - [20.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ksthunk.sys

[MD5.A4A9CA24E54E81C6C3E469EAEB4B3F42] - [13/10/2011 06:47:17] - (.2001-2010 Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controller.) - [75.11 Ko] - (1.0.0.35) - C:\Windows\System32\Drivers\L1C62x64.sys

[MD5.1538831CF8AD2979A04C423779465827] - [14/07/2009 02:08:51] - (.© Microsoft Corporation. - Link-Layer Topology Mapper I/O Driver.) - [59.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\lltdio.sys

[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - [13/07/2009 23:59:34] - (.Copyright © LSI Corporation 2008 - LSI Fusion-MPT FC Driver (StorPort).) - [112.06 Ko] - (1.28.3.52) - C:\Windows\System32\Drivers\lsi_fc.sys

[MD5.1047184A9FDC8BDBFF857175875EE810] - [13/07/2009 23:59:33] - (.Copyright © LSI Corporation 2008 - LSI Fusion-MPT SAS Driver (StorPort).) - [104.06 Ko] - (1.28.3.52) - C:\Windows\System32\Drivers\lsi_sas.sys

[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - [13/07/2009 23:59:34] - (.Copyright © LSI Corporation 2009 - LSI SAS Gen2 Driver (StorPort).) - [64.06 Ko] - (2.0.2.71) - C:\Windows\System32\Drivers\lsi_sas2.sys

[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - [13/07/2009 23:59:33] - (.Copyright © LSI Corporation 2008 - LSI Fusion-MPT SCSI Driver (StorPort).) - [113.06 Ko] - (1.28.3.67) - C:\Windows\System32\Drivers\lsi_scsi.sys

[MD5.43D0F98E1D56CCDDB0D5254CFF7B356E] - [14/07/2009 01:26:13] - (.© Microsoft Corporation. - Pilote de filtre de virtualisation de fichier LUA.) - [110.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\luafv.sys

[MD5.3D3C4B63F11F63F50253E734F0ACE9F2] - [17/06/2012 15:09:07] - (.© Malwarebytes Corporation. - Malwarebytes' Anti-Malware.) - [23.59 Ko] - (1.50.1.0) - C:\Windows\System32\Drivers\mbam.sys

[MD5.3C9F072F9DCA856B9FB7A20CBD4281AC] - [14/07/2009 02:01:06] - (.© Microsoft Corporation. - Medium changer class driver.) - [21.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mcd.sys

[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - [10/06/2009 22:37:14] - (.Copyright © LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64.) - [34.56 Ko] - (4.5.1.64) - C:\Windows\System32\Drivers\megasas.sys

[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - [13/07/2009 23:59:33] - (.Copyright © 2007 LSI Corporation. - LSI MegaRAID Software RAID Driver.) - [278.06 Ko] - (13.5.409.2009) - C:\Windows\System32\Drivers\MegaSR.sys

[MD5.800BA92F7010378B09F9ED9270F07137] - [14/07/2009 02:10:49] - (.© Microsoft Corporation. - Pilote de périphérique modem.) - [39.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\modem.sys

[MD5.B03D591DC7DA45ECE20B3B467E6AADAA] - [14/07/2009 01:38:53] - (.© Microsoft Corporation. - Monitor Driver.) - [29.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\monitor.sys

[MD5.7D27EA49F3C1F687D357E77A470AEA99] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Pilote de la classe Souris.) - [48.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mouclass.sys

[MD5.D3BF052C40B0C4166D9FD86A4288C1E6] - [14/07/2009 02:00:20] - (.© Microsoft Corporation. - Pilote de filtre souris HID.) - [30.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mouhid.sys

[MD5.32E7A3D591D671A6DF2DB515A5CBE0FA] - [18/02/2011 21:49:34] - (.© Microsoft Corporation. - Gestionnaire des points de montage.) - [92.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\mountmgr.sys

[MD5.A44B420D30BD56E145D6A2BC8768EC58] - [18/02/2011 21:49:46] - (.© Microsoft Corporation. - Pilote du bus de prise en charge des chemins d’accès multiples.) - [151.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\mpio.sys

[MD5.6C38C9E45AE0EA2FA5E551F2ED5E978F] - [14/07/2009 02:08:25] - (.© Microsoft Corporation. - Microsoft Protection Service Driver.) - [75.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mpsdrv.sys

[MD5.DC722758B8261E1ABAFD31A3C0A66380] - [18/02/2011 21:49:46] - (.© Microsoft Corporation. - Windows NT WebDav Minirdr.) - [137.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\mrxdav.sys

[MD5.A5D9106A73DC88564C825D317CAC68AC] - [14/01/2012 11:21:56] - (.© Microsoft Corporation. - Windows NT SMB Minirdr.) - [154.5 Ko] - (6.1.7601.17605) - C:\Windows\System32\Drivers\mrxsmb.sys

[MD5.D711B3C1D5F42C0C2415687BE09FC163] - [14/01/2012 11:21:57] - (.© Microsoft Corporation. - Longhorn SMB Downlevel SubRdr.) - [282 Ko] - (6.1.7601.17647) - C:\Windows\System32\Drivers\mrxsmb10.sys

[MD5.9423E9D355C8D303E76B8CFBD8A5C30C] - [14/01/2012 11:21:56] - (.© Microsoft Corporation. - Longhorn SMB 2.0 Redirector.) - [125 Ko] - (6.1.7601.17605) - C:\Windows\System32\Drivers\mrxsmb20.sys

[MD5.C25F0BAFA182CBCA2DD3C851C2E75796] - [18/02/2011 21:49:33] - (.© Microsoft Corporation. - MS AHCI 1.0 Standard Driver.) - [30.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\msahci.sys

[MD5.DB801A638D011B9633829EB6F663C900] - [18/02/2011 21:49:52] - (.© Microsoft Corporation. - Module spécifique de périphériques Microsoft.) - [137.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\msdsm.sys

[MD5.AA3FB40E17CE1388FA1BEDAB50EA8F96] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - Mailslot driver.) - [25.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\msfs.sys

[MD5.F9D215A46A8B9753F61767FA72A20326] - [14/07/2009 02:06:24] - (.© Microsoft Corporation. - Pass-through HID to KMDF Filter Driver.) - [8 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mshidkmdf.sys

[MD5.D916874BBD4F8B07BFB7FA9B3CCAE29D] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - ISA Driver.) - [15.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\msisadrv.sys

[MD5.D931D7309DEB2317035B07C9F9E6B0BD] - [18/02/2011 21:49:58] - (.© Microsoft Corporation. - Microsoft iSCSI Initiator Driver.) - [267.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\msiscsi.sys

[MD5.49CCF2C4FEA34FFAD8B1B59D49439366] - [14/07/2009 02:00:18] - (.© Microsoft Corporation. - MS KS Server.) - [10.88 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mskssrv.sys

[MD5.BDD71ACE35A232104DDD349EE70E1AB3] - [14/07/2009 02:00:17] - (.© Microsoft Corporation. - MS Proxy Clock.) - [7 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mspclock.sys

[MD5.4ED981241DB27C3383D72092B618A1D0] - [14/07/2009 02:00:17] - (.© Microsoft Corporation. - MS Proxy Quality Manager.) - [6.63 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mspqm.sys

[MD5.759A9EEB0FA9ED79DA1FB7D4EF78866D] - [18/02/2011 21:49:26] - (.© Microsoft Corporation. - Kernel Remote Procedure Call Provider.) - [358.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\msrpc.sys

[MD5.0EED230E37515A0EAEE3C2E1BC97B288] - [14/07/2009 01:31:10] - (.© Microsoft Corporation. - System Management BIOS Driver.) - [31.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mssmbios.sys

[MD5.2E66F9ECB30B4221A318C92AC2250779] - [14/07/2009 02:00:17] - (.© Microsoft Corporation. - WDM Tee/Communication Transform Filter .) - [7.88 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mstee.sys

[MD5.7EA404308934E675BFFDE8EDF0757BCD] - [14/07/2009 02:02:08] - (.© Microsoft Corporation. - Pilote HID multipoint Microsoft.) - [15 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\MTConfig.sys

[MD5.F9A18612FD3526FE473C1BDA678D61C8] - [14/07/2009 01:23:45] - (.© Microsoft Corporation. - Multiple UNC Provider Driver.) - [59.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mup.sys

[MD5.C38B8AE57F78915905064A9A24DC1586] - [15/11/2011 07:08:08] - (.© Microsoft Corporation. - Pilote NDIS 6.20.) - [929.38 Ko] - (6.1.7601.17530) - C:\Windows\System32\Drivers\ndis.sys

[MD5.9F9A1F53AAD7DA4D6FEF5BB73AB811AC] - [14/07/2009 02:08:13] - (.© Microsoft Corporation. - NDIS Packet Capture Filter Driver.) - [34.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ndiscap.sys

[MD5.30639C932D9FEF22B31268FE25A1B6E5] - [14/07/2009 02:10:00] - (.© Microsoft Corporation. - NDIS 3.0 connection wrapper driver.) - [23.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ndistapi.sys

[MD5.136185F9FB2CC61E573E676AA5402356] - [18/02/2011 21:49:26] - (.© Microsoft Corporation. - Pilote d’E/S du mode utilisateur NDIS.) - [55.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ndisuio.sys

[MD5.53F7305169863F0A2BDDC49E116C2E11] - [18/02/2011 21:49:26] - (.© Microsoft Corporation. - MS PPP Framing Driver (Strong Encryption).) - [160.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ndiswan.sys

[MD5.015C0D8E0E0421B4CFD48CFFE2825879] - [18/02/2011 21:49:52] - (.© Microsoft Corporation. - NDIS Proxy.) - [56.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ndproxy.sys

[MD5.86743D9F5D2B1048062B14B1D84501C4] - [14/07/2009 02:09:26] - (.© Microsoft Corporation. - NetBIOS interface driver.) - [43.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\netbios.sys

[MD5.09594D1089C523423B32A4229263F068] - [18/02/2011 21:49:47] - (.© Microsoft Corporation. - MBT Transport driver.) - [255.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\netbt.sys

[MD5.C8E033EA95337FDCE489D1D0348B9A23] - [18/02/2011 21:49:26] - (.© Microsoft Corporation. - Network I/O Subsystem.) - [367.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\netio.sys

[MD5.77889813BE4D166CDAB78DDBA990DA92] - [13/07/2009 23:59:33] - (.© Copyright IBM Corp. 1994, 2002. - IBM ServeRAID Controller Driver.) - [50.06 Ko] - (7.10.0.0) - C:\Windows\System32\Drivers\nfrd960.sys

[MD5.1E4C4AB5C9B8DD13179BBDC75A2A01F7] - [14/07/2009 01:19:48] - (.© Microsoft Corporation. - NPFS Driver.) - [43 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\npfs.sys

[MD5.E7F5AE18AF4168178A642A9247C63001] - [14/07/2009 01:21:03] - (.© Microsoft Corporation. - NSI Proxy.) - [24 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\nsiproxy.sys

[MD5.A2F74975097F52A00745F9637451FDD8] - [15/01/2012 16:37:36] - (.© Microsoft Corporation. - Pilote du système de fichiers NT.) - [1620.88 Ko] - (6.1.7601.17577) - C:\Windows\System32\Drivers\ntfs.sys

[MD5.9899284589F75FA8724FF3D16AED75C1] - [14/07/2009 01:19:38] - (.© Microsoft Corporation. - NULL Driver.) - [6 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\null.sys

[MD5.0A92CB65770442ED0DC44834632F66AD] - [15/01/2012 16:37:36] - (.Copyright© 2001-2010 NVIDIA Corporation - NVIDIA® nForce RAID Driver.) - [144.88 Ko] - (10.6.0.18) - C:\Windows\System32\Drivers\nvraid.sys

[MD5.DAB0E87525C10052BF65F06152F37E4A] - [15/01/2012 16:37:36] - (.Copyright© 2001-2010 NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) - [162.38 Ko] - (10.6.0.18) - C:\Windows\System32\Drivers\nvstor.sys

[MD5.270D7CD42D6E3979F6DD0146650F0E05] - [14/07/2009 01:38:44] - (.© Microsoft Corporation. - Filtre AGP NForce NT.) - [120.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\NV_AGP.SYS

[MD5.1EA3749C4114DB3E3161156FFFFA6B33] - [14/07/2009 02:07:24] - (.© Microsoft Corporation. - Pilote de miniport WiFi natif.) - [311.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\nwifi.sys

[MD5.3589478E4B22CE21B41FA1BFC0B8B8A0] - [14/07/2009 02:06:45] - (.© Microsoft Corporation. - 1394 OpenHCI Port Driver.) - [71.13 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ohci1394.sys

[MD5.0557CF5A2556BD58E26384169D72438D] - [18/02/2011 21:49:28] - (.© Microsoft Corporation. - Planificateur de paquets QoS.) - [128.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\pacer.sys

[MD5.0086431C29C35BE1DBC43F52CC273887] - [14/07/2009 02:00:41] - (.© Microsoft Corporation. - Pilote de port parallèle.) - [95 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\parport.sys

[MD5.E9766131EEADE40A27DC27D2D68FBA9C] - [11/05/2012 00:15:11] - (.© Microsoft Corporation. - Partition Management Driver.) - [73.36 Ko] - (6.1.7601.17796) - C:\Windows\System32\Drivers\partmgr.sys

[MD5.94575C0571D1462A0F70BDE6BD6EE6B3] - [18/02/2011 21:49:28] - (.© Microsoft Corporation. - Énumérateur Plug-and-Play PCI pour NT.) - [180.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\pci.sys

[MD5.B5B8B5EF2E5CB34DF8DCF8831E3534FA] - [14/07/2009 01:19:49] - (.© Microsoft Corporation. - Generic PCI IDE Bus Driver.) - [12.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\pciide.sys

[MD5.144497DAA145BA0F7BE896064146C058] - [14/07/2009 01:19:48] - (.© Microsoft Corporation. - PCI IDE Bus Driver Extension.) - [47.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\pciidex.sys

[MD5.B2E81D4E87CE48589F98CB8C05B01F2F] - [14/07/2009 01:31:10] - (.© Microsoft Corporation. - Pilote de bus PCMCIA.) - [215.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\pcmcia.sys

[MD5.D6B9C2E1A11A3A4B26A182FFEF18F603] - [14/07/2009 01:19:30] - (.© Microsoft Corporation. - Performance Counters for Windows Driver.) - [49.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\pcw.sys

[MD5.68769C3356B3BE5D1C732C97B9A80D6E] - [14/07/2009 01:51:01] - (.© Microsoft Corporation. - Protected Environment Authentication and Authorization Export Driver.) - [636 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\PEAuth.sys

[MD5.32E11315B5126921FFD9074840EF13D3] - [14/07/2009 02:06:29] - (.© Microsoft Corporation. - Port Class (Class Driver for Port/Miniport Devices).) - [225 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\portcls.sys

[MD5.0D922E23C041EFB1C3FAC2A6F943C9BF] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - Processor Device Driver.) - [59 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\processr.sys

[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - [10/06/2009 22:37:36] - (.Copyright © QLogic Corporation 1996-2009 - QLogic Fibre Channel Stor Miniport Driver.) - [1489.08 Ko] - (9.1.8.6) - C:\Windows\System32\Drivers\ql2300.sys

[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - [13/07/2009 23:59:34] - (.© QLogic Corporation. - QLogic iSCSI Storport Miniport Driver.) - [125.58 Ko] - (2.1.3.20) - C:\Windows\System32\Drivers\ql4x.sys

[MD5.76707BB36430888D9CE9D705398ADB6C] - [14/07/2009 02:09:48] - (.© Microsoft Corporation. - Pilote du support de Microsoft Quality Windows Audio Video Experience (qWave).) - [45.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\qwavedrv.sys

[MD5.5A0DA8AD5762FA2D91678A8A01311704] - [14/07/2009 02:10:09] - (.© Microsoft Corporation. - RAS Automatic Connection Driver.) - [14.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rasacd.sys

[MD5.471815800AE33E6F1C32FB1B97C490CA] - [18/02/2011 21:49:49] - (.© Microsoft Corporation. - RAS L2TP mini-port/call-manager driver.) - [126.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\rasl2tp.sys

[MD5.855C9B1CD4756C5E9A2AA58A15F58C25] - [14/07/2009 02:10:17] - (.© Microsoft Corporation. - RAS PPPoE mini-port/call-manager driver.) - [90.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\raspppoe.sys

[MD5.F92A2C41117A11A00BE01CA01A7FCDE9] - [18/02/2011 21:49:29] - (.© Microsoft Corporation. - Peer-to-Peer Tunneling Protocol.) - [108.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\raspptp.sys

[MD5.E8B1E447B008D07FF47D016C2B0EEECB] - [14/07/2009 02:10:25] - (.© Microsoft Corporation. - RAS SSTP Miniport Call Manager.) - [82 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rassstp.sys

[MD5.77F665941019A1594D887A74F301FA2F] - [18/02/2011 21:49:49] - (.© Microsoft Corporation. - Pilote du sous-système de mise en mémoire tampon de lecteur redirigé.) - [302 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\rdbss.sys

[MD5.302DA2A0539F2CF54D7C6CC30C1F2D8D] - [14/07/2009 02:17:46] - (.© Microsoft Corporation. - Microsoft RDP Bus Device driver.) - [23.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rdpbus.sys

[MD5.CEA6CC257FC9B7715F1C2B4849286D24] - [14/07/2009 02:16:34] - (.© Microsoft Corporation. - RDP Miniport.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\RDPCDD.sys

[MD5.BB5971A4F00659529A5C44831AF22365] - [14/07/2009 02:16:34] - (.© Microsoft Corporation. - RDP Encoder Miniport.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\RDPENCDD.sys

[MD5.216F3FA57533D98E1F74DED70113177A] - [14/07/2009 02:16:35] - (.© Microsoft Corporation. - RDP Reflector Driver Miniport.) - [8 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\RDPREFMP.sys

[MD5.E61608AA35E98999AF9AAEEEA6114B0A] - [13/06/2012 19:42:30] - (.© Microsoft Corporation. - Pilote de pile RDP Terminal.) - [206 Ko] - (6.1.7601.17830) - C:\Windows\System32\Drivers\rdpwd.sys

[MD5.34ED295FA0121C241BFEF24764FC4520] - [18/02/2011 21:49:42] - (.© Microsoft Corporation. - ReadyBoost Driver.) - [208.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\rdyboost.sys

[MD5.3DD798846E2C28102B922C56E71B7932] - [14/07/2009 02:06:56] - (.© Microsoft Corporation. - Bluetooth RFCOMM Driver.) - [155 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rfcomm.sys

[MD5.CAF88D6573D21CD2AA27001DDBFDC74D] - [18/02/2011 21:49:28] - (.© Microsoft Corporation. - Reliable Multicast Transport.) - [143 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\rmcast.sys

[MD5.FC6D5C50D846B795335DEB3FCE8B33F3] - [14/07/2009 02:09:48] - (.© Microsoft Corporation. - Remote NDIS Miniport.) - [40.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\RNDISMP.sys

[MD5.388D3DD1A6457280F3BADBA9F3ACD6B1] - [14/07/2009 02:10:47] - (.© Microsoft Corporation. - Legacy Non-Pnp Modem Device Driver.) - [11 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rootmdm.sys

[MD5.DDC86E4F8E7456261E637E3552E804FF] - [14/07/2009 02:08:51] - (.© Microsoft Corporation. - Link-Layer Topology Responder Driver for NDIS 6.) - [75 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rspndr.sys

[MD5.CB7DADEF3D83FE2C12655A0BDCBA99F2] - [15/11/2011 07:16:41] - (.Copyright © Realtek Semiconductor Corp.1998-2012 - Realtek® High Definition Audio Function Driver.) - [2984.73 Ko] - (6.0.1.6438) - C:\Windows\System32\Drivers\RTKVHD64.sys

[MD5.AC03AF3329579FFFB455AA2DAABBE22B] - [18/02/2011 21:49:26] - (.© Microsoft Corporation. - SBP-2 Protocol Driver.) - [101.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\sbp2port.sys

[MD5.253F38D0D7074C02FF8DEB9836C97D2B] - [18/02/2011 21:49:42] - (.© Microsoft Corporation. - Pilote de filtre de lecteur de carte à puce Microsoft.) - [29 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\scfilter.sys

[MD5.1B1E264203D4EF9D3DA1987AD70355AB] - [18/02/2011 21:49:58] - (.© Microsoft Corporation. - SCSI Port Driver.) - [167.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\scsiport.sys

[MD5.3EA8A16169C26AFBEB544E0E48421186] - [14/07/2009 04:36:07] - (.© 2006 Macrovision Corporation - Macrovision SECURITY Driver.) - [22.5 Ko] - (4.3.86.0) - C:\Windows\System32\Drivers\secdrv.sys

[MD5.CB624C0035412AF0DEBEC78C41F5CA1B] - [14/07/2009 02:00:33] - (.© Microsoft Corporation. - Serial Port Enumerator.) - [23 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\serenum.sys

[MD5.C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] - [14/07/2009 02:00:40] - (.© Microsoft Corporation. - Pilote de périphérique série.) - [92 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\serial.sys

[MD5.1C545A7D0691CC4A027396535691C3E3] - [14/07/2009 02:00:20] - (.© Microsoft Corporation. - Pilote de filtre souris série.) - [26 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\sermouse.sys

[MD5.A554811BCD09279536440C964AE35BBF] - [14/07/2009 02:01:01] - (.© Microsoft Corporation. - Small Form Factor Disk Driver.) - [14 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\sffdisk.sys

[MD5.FF414F0BAEFEBA59BC6C04B3DB0B87BF] - [14/07/2009 02:01:03] - (.© Microsoft Corporation. - Small Form Factor MMC Protocol Driver.) - [13.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\sffp_mmc.sys

[MD5.DD85B78243A19B59F0637DCF284DA63C] - [18/02/2011 21:49:28] - (.© Microsoft Corporation. - Small Form Factor SD Protocol Driver.) - [14 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\sffp_sd.sys

[MD5.A9D601643A1647211A1EE2EC4E433FF4] - [14/07/2009 02:01:02] - (.© Microsoft Corporation. - SCSI Floppy Driver.) - [16.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\sfloppy.sys

[MD5.C6CC9297BD53E5229653303E556AA539] - [01/10/2011 09:30:10] - (.© 2011 Microsoft Corporation. - Microsoft Application Virtualization File System.) - [746.35 Ko] - (4.6.2.22610) - C:\Windows\System32\Drivers\Sftfslh.sys

[MD5.390AA7BC52CEE43F6790CDEA1E776703] - [01/10/2011 09:30:18] - (.© 2011 Microsoft Corporation. - Microsoft Application Virtualization SystemGuard.) - [262.35 Ko] - (4.6.2.22610) - C:\Windows\System32\Drivers\Sftplaylh.sys

[MD5.617E29A0B0A2807466560D4C4E338D3E] - [01/10/2011 09:30:18] - (.© 2011 Microsoft Corporation. - Microsoft Application Virtualization SystemGuard.) - [25.35 Ko] - (4.6.2.22610) - C:\Windows\System32\Drivers\Sftredirlh.sys

[MD5.8F571F016FA1976F445147E9E6C8AE9B] - [01/10/2011 09:30:22] - (.© 2011 Microsoft Corporation. - Microsoft Application Virtualization Volume Manager.) - [21.85 Ko] - (4.6.2.22610) - C:\Windows\System32\Drivers\Sftvollh.sys

[MD5.1BC348CF6BAA90EC8E533EF6E6A69933] - [10/06/2009 22:35:57] - (.Copyright © 2005-2009 Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190 Ethernet Device.) - [55.5 Ko] - (2.0.1039.1680) - C:\Windows\System32\Drivers\SiSG664.sys

[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - [10/06/2009 22:37:40] - (.Copyright © SiS Corp. 2000-2010 - SiS RAID Stor Miniport Driver.) - [42.56 Ko] - (5.1.1039.2600) - C:\Windows\System32\Drivers\sisraid2.sys

[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - [13/07/2009 23:59:33] - (.Copyright © SiS Corp. 2007-2013 - SiS AHCI Stor-Miniport Driver.) - [78.58 Ko] - (5.1.1039.3600) - C:\Windows\System32\Drivers\sisraid4.sys

[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - [14/07/2009 02:09:09] - (.© Microsoft Corporation. - SMB Transport driver.) - [91 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\smb.sys

[MD5.A80348BA03E96C70852959655CA3E084] - [14/07/2009 02:00:35] - (.© Microsoft Corporation. - Smart Card Driver Library.) - [20.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\smclib.sys

[MD5.B9E31E5CACDFE584F34F730A677803F9] - [13/07/2009 22:27:56] - (.© Microsoft Corporation. - loader for security processor.) - [18.56 Ko] - (6.1.7127.0) - C:\Windows\System32\Drivers\spldr.sys

[MD5.FFF95479C7AB1550F0750A5D01744211] - [10/06/2009 22:48:43] - (.© Microsoft Corporation. - security processor.) - [416.5 Ko] - (6.1.7127.0) - C:\Windows\System32\Drivers\spsys.sys

[MD5.441FBA48BFF01FDB9D5969EBC1838F0B] - [14/01/2012 11:21:21] - (.© Microsoft Corporation. - Server driver.) - [456.5 Ko] - (6.1.7601.17608) - C:\Windows\System32\Drivers\srv.sys

[MD5.B4ADEBBF5E3677CCE9651E0F01F7CC28] - [14/01/2012 11:21:21] - (.© Microsoft Corporation. - Smb 2.0 Server driver.) - [400.5 Ko] - (6.1.7601.17608) - C:\Windows\System32\Drivers\srv2.sys

[MD5.27E461F0BE5BFF5FC737328F749538C3] - [14/01/2012 11:21:21] - (.© Microsoft Corporation. - Server Network driver.) - [164.5 Ko] - (6.1.7601.17608) - C:\Windows\System32\Drivers\srvnet.sys

[MD5.F3817967ED533D08327DC73BC4D5542A] - [13/07/2009 23:59:33] - (.Promise Technology - Promise SuperTrak EX Series Driver for Windows .) - [24.08 Ko] - (5.0.1.1) - C:\Windows\System32\Drivers\stexstor.sys

[MD5.19CB37AC38B802BE9C441D094521A29A] - [15/01/2012 16:37:36] - (.© Microsoft Corporation. - Microsoft Storage Port Driver.) - [185.38 Ko] - (6.1.7601.17577) - C:\Windows\System32\Drivers\storport.sys

[MD5.001CC10FA5E71AE1119115E126C8750D] - [14/07/2009 02:06:18] - (.© Microsoft Corporation. - WDM CODEC Class Device Driver 2.0.) - [67.25 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\stream.sys

[MD5.D01EC09B6711A5F8E7E6564A4D0FBC90] - [14/07/2009 02:00:18] - (.© Microsoft Corporation. - Plug and Play Software Device Enumerator.) - [12.2 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\swenum.sys

[MD5.6E316C01CBA8B785FE495F5CC4F48C6F] - [14/07/2009 02:01:04] - (.© Microsoft Corporation. - SCSI Tape Class Driver.) - [28.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\tape.sys

[MD5.ACB82BDA8F46C84F465C1AFA517DC4B9] - [11/05/2012 00:14:57] - (.© Microsoft Corporation. - Pilote TCP/IP.) - [1873.36 Ko] - (6.1.7601.17802) - C:\Windows\System32\Drivers\tcpip.sys

[MD5.DF687E3D8836BFB04FCC0615BF15A519] - [18/02/2011 21:49:43] - (.© Microsoft Corporation. - TCP/IP Registry Compatibility Driver.) - [44 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tcpipreg.sys

[MD5.6F020A220388ECA0AB6062DC27BD16B6] - [18/02/2011 21:49:27] - (.© Microsoft Corporation. - TDI Wrapper.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tdi.sys

[MD5.3371D21011695B16333A3934340C4E7C] - [14/07/2009 02:16:32] - (.© Microsoft Corporation. - Named Pipe Transport Driver.) - [15.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\tdpipe.sys

[MD5.51C5ECEB1CDEE2468A1748BE550CFBC8] - [15/03/2012 12:25:26] - (.© Microsoft Corporation. - TCP Transport Driver.) - [23 Ko] - (6.1.7601.17779) - C:\Windows\System32\Drivers\tdtcp.sys

[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [18/02/2011 21:49:36] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tdx.sys

[MD5.561E7E1F06895D78DE991E01DD0FB6E5] - [18/02/2011 21:49:31] - (.© Microsoft Corporation. - Remote Desktop Server Driver.) - [61.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\termdd.sys

[MD5.73AAFFDD2AC3C8814B26C440E5DD9DD4] - [13/04/2011 04:51:54] - (.Copyright © 2005-2010 Trend Micro Incorporated. - TrendMicro Activity Monitor Module.) - [88.58 Ko] - (3.50.0.1166) - C:\Windows\System32\Drivers\tmactmon.sys

[MD5.360E61217D4E1E333583D0C721057F70] - [13/04/2011 04:51:54] - (.Copyright © 2005-2010 Trend Micro Incorporated. - TrendMicro Common Module.) - [141.08 Ko] - (3.50.0.1166) - C:\Windows\System32\Drivers\tmcomm.sys

[MD5.699D34EB7C670139CA23A65372BD5743] - [13/04/2011 04:51:54] - (.Copyright © 2005-2010 Trend Micro Incorporated. - TrendMicro Event Management Module.) - [66.08 Ko] - (3.50.0.1166) - C:\Windows\System32\Drivers\tmevtmgr.sys

[MD5.262198EFB734012BFCD17E7479AE4A09] - [13/04/2011 04:52:01] - (.Copyright © 2008-2010 Trend Micro Incorporated. - Trend Micro TDI Driver (amd64-fre).) - [103.08 Ko] - (6.5.0.1234) - C:\Windows\System32\Drivers\tmtdi.sys

[MD5.CE18B2CDFC837C99E5FAE9CA6CBA5D30] - [18/02/2011 21:49:27] - (.© Microsoft Corporation. - TS Security Filter Driver.) - [38.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tssecsrv.sys

[MD5.D11C783E3EF9A3C52C0EBE83CC5000E9] - [18/02/2011 21:49:43] - (.© Microsoft Corporation. - Pilote de filtre pour concentrateur USB du Bureau à distance.) - [58 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\TsUsbFlt.sys

[MD5.9CC2CCAE8A84820EAECB886D477CBCB8] - [18/02/2011 21:49:31] - (.© Microsoft Corporation. - Remote Desktop Generic USB Driver.) - [30.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\TsUsbGD.sys

[MD5.3566A8DAAFA27AF944F5D705EAA64894] - [18/02/2011 21:49:43] - (.© Microsoft Corporation. - Pilote d’interface de tunnel Microsoft.) - [122.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tunnel.sys

[MD5.B4DD609BD7E282BFC683CEC7EAAAAD67] - [14/07/2009 01:38:44] - (.© Microsoft Corporation. - Filtre MS AGPv3.5.) - [62.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\UAGP35.SYS

[MD5.FF4232A1A64012BAA1FD97C7B67DF593] - [18/02/2011 21:49:43] - (.© Microsoft Corporation. - UDF File System Driver.) - [320.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\udfs.sys

[MD5.4BFE1BC28391222894CBF1E7D0E42320] - [14/07/2009 01:38:48] - (.© Microsoft Corporation. - Filtre ULi AGPv3.0 pour plateformes à processeur K8/9.) - [63.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ULIAGPKX.SYS

[MD5.DC54A574663A895C8763AF0FA1FF7561] - [18/02/2011 21:49:54] - (.© Microsoft Corporation. - User-Mode Bus Enumerator.) - [47.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\umbus.sys

[MD5.B2E8E8CB557B156DA5493BBDDCC1474D] - [14/07/2009 02:06:52] - (.© Microsoft Corporation. - Generic pass-through driver.) - [9.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\umpass.sys

[MD5.D0FE8CB5F84303E73FF0754437FAD3D1] - [14/07/2009 02:09:49] - (.© Microsoft Corporation. - Remote NDIS USB Driver.) - [19.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\usb8023.sys

[MD5.292A8E03B3FCE04E39B5BE9B14132030] - [18/02/2011 21:49:43] - (.© Microsoft Corporation. - Universal Serial Bus Camera Driver.) - [32.13 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\USBCAMD2.sys

[MD5.6F1A3157A1C89435352CEB543CDB359C] - [15/01/2012 16:37:44] - (.© Microsoft Corporation. - USB Common Class Generic Parent Driver.) - [96.5 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbccgp.sys

[MD5.AF0892A803FDDA7492F595368E3B68E7] - [14/07/2009 02:06:37] - (.© Microsoft Corporation. - USB Consumer IR Driver for eHome.) - [98 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\usbcir.sys

[MD5.CCA2AB1752A61F29C3C941CD79D78CEA] - [15/01/2012 16:37:44] - (.© Microsoft Corporation. - Universal Serial Bus Driver.) - [7.75 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbd.sys

[MD5.C025055FE7B87701EB042095DF1A2D7B] - [15/01/2012 16:37:44] - (.© Microsoft Corporation. - EHCI eUSB Miniport Driver.) - [51.5 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbehci.sys

[MD5.287C6C9410B111B68B52CA298F7B8C24] - [15/01/2012 16:37:44] - (.© Microsoft Corporation. - Default Hub Driver for USB.) - [335 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbhub.sys

[MD5.9840FC418B4CBD632D3D0A667A725C31] - [15/01/2012 16:37:44] - (.© Microsoft Corporation. - OHCI USB Miniport Driver.) - [25 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbohci.sys

[MD5.AE259C75F9A0B057B6BF9E9695632B09] - [15/01/2012 16:37:44] - (.© Microsoft Corporation. - Pilote de port USB 1.1 & 2.0.) - [317.5 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbport.sys

[MD5.73188F58FB384E75C4063D29413CEE3D] - [14/07/2009 02:38:18] - (.© Microsoft Corporation. - USB Printer driver.) - [24.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\usbprint.sys

[MD5.C3EC945DEC43C00E2AD4C98DDDD064C7] - [18/02/2011 21:49:31] - (.© Microsoft Corporation. - Gestionnaire de stratégie de redirection USB Windows.) - [31 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\usbrpm.sys

[MD5.AAA2513C8AED8B54B189FD0C6B1634C0] - [14/07/2009 02:35:32] - (.© Microsoft Corporation. - USB Scanner Driver.) - [41 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\usbscan.sys

[MD5.FED648B01349A3C8395A5169DB5FB7D6] - [15/01/2012 16:37:31] - (.© Microsoft Corporation. - USB Mass Storage Class Driver.) - [89.5 Ko] - (6.1.7601.17577) - C:\Windows\System32\Drivers\USBSTOR.SYS

[MD5.62069A34518BCF9C1FD9E74B3F6DB7CD] - [15/01/2012 16:37:44] - (.© Microsoft Corporation. - UHCI USB Miniport Driver.) - [30 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbuhci.sys

[MD5.454800C2BC7F3927CE030141EE4F4C50] - [18/02/2011 21:49:50] - (.© Microsoft Corporation. - USB Video Class Driver.) - [180.63 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\usbvideo.sys

[MD5.C5C876CCFC083FF3B128F933823E87BD] - [14/07/2009 02:01:31] - (.© Microsoft Corporation. - Énumérateur racine de lecteur virtuel.) - [35.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vdrvroot.sys

[MD5.53E92A310193CB3C03BEA963DE7D9CFC] - [14/07/2009 01:38:48] - (.© Microsoft Corporation. - VGA/Super VGA Video Driver.) - [28.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vga.sys

[MD5.DA4DA3F5E02943C2DC8C6ED875DE68DD] - [14/07/2009 01:38:48] - (.© Microsoft Corporation. - VGA/Super VGA Video Driver.) - [28.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vgapnp.sys

[MD5.2CE2DF28C83AEAF30084E1B1EB253CBB] - [18/02/2011 21:49:50] - (.© Microsoft Corporation. - VHD Miniport Driver.) - [210.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\vhdmp.sys

[MD5.E5689D93FFE4E5D66C0178761240DD54] - [14/07/2009 01:19:50] - (.Copyright © VIA Technologies, Inc. 2000-2007 - VIA Generic PCI IDE Bus Driver.) - [17.08 Ko] - (6.0.6000.170) - C:\Windows\System32\Drivers\viaide.sys

[MD5.E7353D59C9842BC7299FAEB7E7E09340] - [14/07/2009 01:38:51] - (.© Microsoft Corporation. - Video Port Driver.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\videoprt.sys

[MD5.D2AAFD421940F640B407AEFAAEBD91B0] - [18/02/2011 21:49:31] - (.© Microsoft Corporation. - Volume Manager Driver.) - [69.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\volmgr.sys

[MD5.A255814907C89BE58B79EF2F189B843B] - [18/02/2011 21:49:42] - (.© Microsoft Corporation. - Pilote d’extension du gestionnaire de volumes.) - [354.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\volmgrx.sys

[MD5.0D08D2F3B3FF84E433346669B5E0F639] - [18/02/2011 21:49:55] - (.© Microsoft Corporation. - Pilote de cliché instantané du volume.) - [288.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\volsnap.sys

[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - [10/06/2009 22:37:58] - (.Copyright © VIA Technologies 1992-2007 - VIA RAID DRIVER FOR AMD-X86-64.) - [158.08 Ko] - (6.0.6000.6210) - C:\Windows\System32\Drivers\vsmraid.sys

[MD5.36D4720B72B5C5D9CB2B9C29E9DF67A1] - [14/07/2009 02:07:21] - (.© Microsoft Corporation. - Pilote de bus WiFi virtuel.) - [24 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vwifibus.sys

[MD5.6A3D66263414FF0D6FA754C646612F3F] - [14/07/2009 02:07:22] - (.© Microsoft Corporation. - Virtual WiFi Filter Driver.) - [58.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vwififlt.sys

[MD5.6A638FC4BFDDC4D9B186C28C91BD1A01] - [14/07/2009 02:07:28] - (.© Microsoft Corporation. - Virtual WiFi Miniport Driver.) - [17.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vwifimp.sys

[MD5.4E9440F4F152A7B944CB1663D3935A3E] - [14/07/2009 02:02:07] - (.© Microsoft Corporation. - Wacom Serial Pen Tablet HID Driver.) - [27.13 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wacompen.sys

[MD5.356AFD78A6ED4457169241AC3965230C] - [18/02/2011 21:49:50] - (.© Microsoft Corporation. - MS Remote Access and Routing ARP Driver.) - [86.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\wanarp.sys

[MD5.FC438D1430B28618E2D0C7C332A710AD] - [14/07/2009 01:37:35] - (.© Microsoft Corporation. - Watchdog Driver.) - [41.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\watchdog.sys

[MD5.72889E16FF12BA0F235467D6091B17DC] - [14/07/2009 01:19:55] - (.© Microsoft Corporation. - Microsoft Watchdog Timer Driver.) - [20.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wd.sys

[MD5.441BD2D7B4F98134C3A4F9FA570FD250] - [14/07/2009 01:22:11] - (.© Microsoft Corporation. - Runtime de l’infrastructure de pilotes en mode noyau.) - [639.58 Ko] - (1.9.7600.16385) - C:\Windows\System32\Drivers\Wdf01000.sys

[MD5.1B409454D7A00110FDB06F7E0F155A88] - [14/07/2009 01:19:54] - (.© Microsoft Corporation. - Kernel Mode Driver Framework Loader.) - [41.08 Ko] - (1.9.7600.16385) - C:\Windows\System32\Drivers\WdfLdr.sys

[MD5.611B23304BF067451A9FDEE01FBDD725] - [14/07/2009 02:09:26] - (.© Microsoft Corporation. - WFP NDIS 6.20 Lightweight Filter Driver.) - [12.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wfplwf.sys

[MD5.52DED146E4797E6CCF94799E8E22BB2A] - [23/05/2008 17:27:28] - (.© Microsoft Corporation. - Windows Image File Mini-Filter Driver.) - [150.55 Ko] - (6.0.6001.18000) - C:\Windows\System32\Drivers\WimFltr.sys

[MD5.05ECAEC3E4529A7153B3136CEB49F0EC] - [14/07/2009 01:29:31] - (.© Microsoft Corporation. - Wim file system Driver.) - [21.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wimmount.sys

[MD5.FE88B288356E7B47B74B13372ADD906D] - [18/02/2011 21:49:43] - (.© Microsoft Corporation. - Windows USB Class Driver BETA.) - [41 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\winusb.sys

[MD5.F6FF8944478594D0E414D3F048F0D778] - [14/07/2009 01:31:03] - (.© Microsoft Corporation. - Windows Management Interface for ACPI.) - [14 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wmiacpi.sys

[MD5.FC146F46872D4C5B529B89A5131FD1E6] - [14/07/2009 01:19:51] - (.© Microsoft Corporation. - WMILIB WMI support library Dll.) - [16.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wmilib.sys

[MD5.6BCC1D7D2FD2453957C5479A32364E52] - [14/07/2009 02:10:34] - (.© Microsoft Corporation. - Couche IFS Winsock2.) - [21 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ws2ifsl.sys

[MD5.D3381DC54C34D79B22CEE0D65BA91B7C] - [18/02/2011 21:49:31] - (.© Microsoft Corporation. - Windows Driver Foundation - User-mode Driver Framework Platform Driver.) - [109.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\WUDFPf.sys

[MD5.CF8D590BE3373029D57AF80914190682] - [18/02/2011 21:49:31] - (.© Microsoft Corporation. - Windows Driver Foundation - User-mode Driver Framework Reflector.) - [168.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\WUDFRd.sys

 

¤¤¤¤¤¤¤¤¤¤ | Uninstall

 

[HKCU\Software\Microsoft\windows\CurrentVersion\Uninstall\<Key>]

 

[HKLM\Software\Microsoft\windows\CurrentVersion\Uninstall\<Key>]

"AddressBook"= () ->

"Adobe Flash Player ActiveX"=Adobe Flash Player 10 ActiveX (Adobe Systems Incorporated) -> C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10k_ActiveX.exe -maintain activex

"Adobe Flash Player Plugin"=Adobe Flash Player 10 Plugin (Adobe Systems Incorporated) -> C:\Windows\SysWOW64\Macromed\Flash\uninstall_plugin.exe

"AmUStor"=Alcor Micro USB Card Reader (Alcor Micro Corp.) -> C:\Program Files (x86)\InstallShield Installation Information\{4555BB9E-E715-4260-A178-E8EFD2B653E3}\Setup.exe

"Asus Vibe2.0"=AsusVibe2.0 (ASUSTEK) -> C:\Program Files (x86)\Asus\AsusVibe\unins000.exe

"ASUS WebStorage"=ASUS WebStorage (eCareme Technologies, Inc.) -> C:\Program Files (x86)\ASUS\ASUS WebStorage\uninst.exe

"ASUS_Screensaver"=ASUS_Screensaver () -> C:\Windows\system32\ASUS_Screensaver.scr /u

"avast"=avast! Free Antivirus (AVAST Software) -> C:\Program Files\AVAST Software\Avast\aswRunDll.exe "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup

"Bookworm Deluxe"=Bookworm Deluxe (Oberon Media Inc.) -> C:\Program Files (x86)\Asus\Game Park\Bookworm Deluxe\Uninstall.exe

"Connection Manager"= () ->

"Cooking Dash"=Cooking Dash (Oberon Media Inc.) -> C:\Program Files (x86)\Asus\Game Park\Cooking Dash\Uninstall.exe

"DirectDrawEx"= () ->

"eMule"=eMule () -> "C:\Program Files (x86)\eMule\Uninstall.exe"

"Fontcore"= () ->

"Google Chrome"=Google Chrome (Google Inc.) -> "C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.56\Installer\setup.exe" --uninstall --multi-install --chrome --system-level

"Hotel Dash Suite Success"=Hotel Dash Suite Success (Oberon Media Inc.) -> C:\Program Files (x86)\Asus\Game Park\Hotel Dash Suite Success\Uninstall.exe

"IE40"= () ->

"IE4Data"= () ->

"IE5BAKEX"= () ->

"IEData"= () ->

"InstallShield Uninstall Information"= () ->

"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}"=CyberLink Power2Go (CyberLink Corp.) -> "C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall

"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}"=CyberLink LabelPrint (CyberLink Corp.) -> "C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall

"Jewel Quest 3"=Jewel Quest 3 (Oberon Media Inc.) -> C:\Program Files (x86)\Asus\Game Park\Jewel Quest 3\Uninstall.exe

"Luxor 3"=Luxor 3 (Oberon Media Inc.) -> C:\Program Files (x86)\Asus\Game Park\Luxor 3\Uninstall.exe

"Mahjongg dimensions"=Mahjongg dimensions (Oberon Media Inc.) -> C:\Program Files (x86)\Asus\Game Park\Mahjongg dimensions\Uninstall.exe

"Malwarebytes' Anti-Malware_is1"=Malwarebytes' Anti-Malware (Malwarebytes Corporation) -> "C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe"

"MobileOptionPack"= () ->

"Plants vs Zombies"=Plants vs Zombies (Oberon Media Inc.) -> C:\Program Files (x86)\Asus\Game Park\Plants vs Zombies\Uninstall.exe

"SchedulingAgent"= () ->

"SearchTheWebARP"= () ->

"WIC"= () ->

"World of Goo"=World of Goo (Oberon Media Inc.) -> C:\Program Files (x86)\Asus\Game Park\World of Goo\Uninstall.exe

"{09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}"=Sonic Focus (Synopsys ) -> MsiExec.exe /I{09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}

"{0A0F5E75-2A7B-3BFE-B511-FC3D02C2EFB2}"=CCC Help Czech (Advanced Micro Devices, Inc.) ->

"{19EA33FB-B34E-40EA-8B8A-61743AEB795A}"=Wireless Console 3 (ASUS) -> MsiExec.exe /I{19EA33FB-B34E-40EA-8B8A-61743AEB795A}

"{1BA3C14C-2340-BB7E-E2E7-E61C015ACB4F}"=CCC Help Hungarian (Advanced Micro Devices, Inc.) ->

"{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}"=ASUS LifeFrame3 (ASUS) -> MsiExec.exe /I{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}

"{1E18CF04-EA20-D318-36CA-5FC272CB31C8}"=CCC Help Thai (Advanced Micro Devices, Inc.) ->

"{283120CF-357C-E3AB-6F2D-136F61DAFE94}"=CCC Help Finnish (Advanced Micro Devices, Inc.) ->

"{28A5E9C7-54C8-47A0-4F34-EA24E3C08099}"=CCC Help Russian (Advanced Micro Devices, Inc.) ->

"{341697D8-9923-445E-B42A-529E5A99CB7A}"=syncables desktop SE (syncables) -> MsiExec.exe /X{341697D8-9923-445E-B42A-529E5A99CB7A}

"{40BF1E83-20EB-11D8-97C5-0009C5020658}"=CyberLink Power2Go (CyberLink Corp.) -> "C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall

"{42D185C0-8E07-C6BC-189A-8EE5B90E02B4}"=Catalyst Control Center Graphics Previews Common (Advanced Micro Devices, Inc.) ->

"{4555BB9E-E715-4260-A178-E8EFD2B653E3}"=Alcor Micro USB Card Reader (Alcor Micro Corp.) ->

"{48A213BA-0E92-CA71-D690-6F73F156BF7E}"=CCC Help Danish (Advanced Micro Devices, Inc.) ->

"{4B5F58F7-C7D1-3CE3-9B37-B657F0852643}.KB2478663"= () ->

"{4FFBB818-B13C-11E0-931D-B2664824019B}_is1"=Complitly (Complitly) -> "C:\Program Files (x86)\Complitly\unins000.exe"

"{55592A9F-4457-F644-D186-1EFE7F708C3D}"=CCC Help Turkish (Advanced Micro Devices, Inc.) ->

"{5F4541B6-187E-13A0-19E1-29224E9FFD14}"=Catalyst Control Center (Advanced Micro Devices, Inc.) ->

"{5FB586F5-2CB9-C74B-4D0B-9A8B1AF75549}"=CCC Help Dutch (Advanced Micro Devices, Inc.) ->

"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}"=Intel® Management Engine Components (Intel Corporation) -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\Uninstall\setup.exe -uninstall

"{6DD3FF83-6DE2-6CAF-8539-E11AB6613238}"=Catalyst Control Center InstallProxy (Advanced Micro Devices, Inc.) ->

"{712B796C-77B7-ED55-3FF8-EE8D1044AAB1}"=CCC Help German (Advanced Micro Devices, Inc.) ->

"{749F674B-2674-47E8-879C-5626A06B2A91}"=InstantOn for NB (ASUS) -> MsiExec.exe /I{749F674B-2674-47E8-879C-5626A06B2A91}

"{7D916FA5-DAE9-4A25-B089-655C70EAF607}"=Qualcomm Atheros WiFi Driver Installation (Qualcomm Atheros) -> "C:\Program Files (x86)\InstallShield Installation Information\{7D916FA5-DAE9-4A25-B089-655C70EAF607}\setup.exe" -runfromtemp -l0409 -removeonly

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110113233}"= () ->

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113666647}"= () ->

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115232530}"= () ->

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115364873}"= () ->

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115443300}"= () ->

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-116672750}"= () ->

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117080787}"= () ->

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11807553}"= () ->

"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-118382203}"= () ->

"{89692F45-C831-2B9D-3392-2E147399EC28}"=CCC Help Spanish (Advanced Micro Devices, Inc.) ->

"{8F21291E-0444-4B1D-B9F9-4370A73E346D}"=WinFlash (ASUS) -> MsiExec.exe /X{8F21291E-0444-4B1D-B9F9-4370A73E346D}

"{91CCBD83-8D84-F7E5-D901-E7BBB76B90D8}"=CCC Help Japanese (Advanced Micro Devices, Inc.) ->

"{9443E601-9003-C77E-FC58-61E9D3843D02}"=Catalyst Control Center Localization All (Advanced Micro Devices, Inc.) ->

"{94DA573A-F6F0-FE6E-1AD9-7998D4E7584A}"=CCC Help Chinese Standard (Advanced Micro Devices, Inc.) ->

"{A2954EF9-069D-68FA-1329-866A150DEA94}"=CCC Help French (Advanced Micro Devices, Inc.) ->

"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}"=Google Update Helper (Google Inc.) -> MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

"{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}"=ATK Package (ASUS) -> MsiExec.exe /I{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}

"{AB82E59B-7E8A-D5E6-9AF1-4D030DF41CC2}"=CCC Help English (Advanced Micro Devices, Inc.) ->

"{B0B568C5-BBBA-21B8-CB44-BD21AB9EAD56}"=CCC Help Greek (Advanced Micro Devices, Inc.) ->

"{B43DC77D-577A-49BD-AE9D-99497C9E71FB}"=Catalyst Control Center - Branding (Advanced Micro Devices, Inc.) -> MsiExec.exe /I{B43DC77D-577A-49BD-AE9D-99497C9E71FB}

"{B480904D-F73F-4673-B034-8A5F492C9184}"=Nuance PDF Reader (Nuance Communications, Inc.) -> MsiExec.exe /X{B480904D-F73F-4673-B034-8A5F492C9184}

"{B50F25A8-EA37-751F-0E28-DC73DAD537D2}"=CCC Help Polish (Advanced Micro Devices, Inc.) ->

"{B56AF4E3-02DB-45A6-8EBE-72817ECA3B2D}"=CCC Help Korean (Advanced Micro Devices, Inc.) ->

"{B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137}"=????? Windows Live (?????????? ??????????) -> MsiExec.exe /I{B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137}

"{B6CF2967-C81E-40C0-9815-C05774FEF120}"=Skype Click to Call (Skype Technologies S.A.) -> MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}

"{C0B9F5D5-DAFF-DAB1-F03B-9AFD617F3B6C}"=CCC Help Swedish (Advanced Micro Devices, Inc.) ->

"{C59C179C-668D-49A9-B6EA-0121CCFC1243}"=CyberLink LabelPrint (CyberLink Corp.) -> "C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall

"{C944B4C5-1C4D-4D95-8AC0-7CEF13914131}"=ASUS FancyStart (ASUSTeK Computer Inc.) -> MsiExec.exe /I{C944B4C5-1C4D-4D95-8AC0-7CEF13914131}

"{CBFD061C-4B27-4A89-ADD8-210316EEFA11}"=Windows Live Messenger (?????????? ??????????) -> MsiExec.exe /X{CBFD061C-4B27-4A89-ADD8-210316EEFA11}

"{CF64C90E-1EED-4B5A-627D-ED731420D13F}"=CCC Help Italian (Advanced Micro Devices, Inc.) ->

"{D332832E-F1E1-728E-6F10-7F5886D46960}"=CCC Help Chinese Traditional (Advanced Micro Devices, Inc.) ->

"{D39F0676-163E-4595-A917-E28F99BBD4D2}"=ASUS AI Recovery (ASUS) -> MsiExec.exe /I{D39F0676-163E-4595-A917-E28F99BBD4D2}

"{D627784F-B3EE-44E8-96B1-9509B991EA34}_is1"=AusLogics Registry Defrag (Auslogics Software Pty Ltd) -> "C:\Program Files (x86)\Auslogics\AusLogics Registry Defrag\unins000.exe"

"{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}"=Asmedia ASM104x USB 3.0 Host Controller Driver (Asmedia Technology) -> MsiExec.exe /X{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}

"{E71E60C1-533E-45A5-8D80-E475E88D2B17}_is1"=Game Park Console (Oberon Media, Inc.) -> "C:\Program Files (x86)\Asus\Game Park\GameConsole\unins000.exe"

"{E7AEA25E-AD78-85B3-92DD-2D17EB144FA5}"=CCC Help Portuguese (Advanced Micro Devices, Inc.) ->

"{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}"=ASUS Virtual Camera (asus) -> MsiExec.exe /I{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}

"{ECA6F2F0-61D4-5173-D0E1-423F60D2EB9C}"=CCC Help Norwegian (Advanced Micro Devices, Inc.) ->

"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}"=Skype 5.8 (Skype Technologies S.A.) -> MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}

"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}"=Realtek High Definition Audio Driver (Realtek Semiconductor Corp.) -> RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe" -removeonly

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2162169"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2446708"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2446708v2"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2473228"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2478063"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2478663"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2514805"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2544514"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2572063"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2599651"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600211"= () ->

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2639327"= () ->

"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}"=Intel® Control Center (Intel Corporation) -> C:\Program Files (x86)\Intel\Intel Control Center\uninstaller\SetupICC.exe -uninstall -force -confirm

"{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}"=ASUS Live Update (ASUS) -> MsiExec.exe /X{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}

 

16:08:28

 

 

¤¤¤¤¤¤¤¤¤¤ | Contrôle de(s) Partition(s)

 

Disk: 0 Size=477G

Pos MBRndx Type/Name Size Active Hide Start Sector Sectors

--- ------ ---------- ---- ------ ---- ------------ ------------

0 0 1C-FAT32x 26G No Yes 2,048 52,428,800

1 1 07-NTFS 191G Yes No 52,430,848 390,709,248

2 2 07-NTFS 261G No No 443,140,096 533,630,976

 

¤¤¤¤¤¤¤¤¤¤ | Contrôle du MBR

 

MBR code signature : 19 96 6B 49

 

 

Systeme 64 bits non supporté par Mbr.exe , Dump : C:\Pre_Scan\MBR.Bin

 

¤¤¤¤¤¤¤¤¤¤ | Modules chargés dans Explorer

 

explorer.exe pid: 4732

Command line: explorer.exe

 

Base Size Path

00000000ff400000 2c0000 C:\Windows\explorer.exe

0000000077760000 1a9000 C:\Windows\SYSTEM32\ntdll.dll

00000000774f0000 11f000 C:\Windows\system32\kernel32.dll

00000000fdd50000 6c000 C:\Windows\system32\KERNELBASE.dll

00000000fe830000 db000 C:\Windows\system32\ADVAPI32.dll

00000000fe090000 9f000 C:\Windows\system32\msvcrt.dll

00000000fdf90000 1f000 C:\Windows\SYSTEM32\sechost.dll

00000000fe5e0000 12d000 C:\Windows\system32\RPCRT4.dll

00000000fe560000 67000 C:\Windows\system32\GDI32.dll

0000000077080000 fa000 C:\Windows\system32\USER32.dll

00000000ffa60000 e000 C:\Windows\system32\LPK.dll

00000000fe490000 c9000 C:\Windows\system32\USP10.dll

00000000fe7b0000 71000 C:\Windows\system32\SHLWAPI.dll

00000000febc0000 d88000 C:\Windows\system32\SHELL32.dll

00000000fe960000 203000 C:\Windows\system32\ole32.dll

00000000fe3b0000 d7000 C:\Windows\system32\OLEAUT32.dll

00000000fbc70000 1ca000 C:\Windows\system32\EXPLORERFRAME.dll

00000000fcc30000 43000 C:\Windows\system32\DUser.dll

00000000fcb30000 f2000 C:\Windows\system32\DUI70.dll

00000000feb90000 2e000 C:\Windows\system32\IMM32.dll

00000000ff950000 109000 C:\Windows\system32\MSCTF.dll

00000000fc5b0000 56000 C:\Windows\system32\UxTheme.dll

00000000fcd50000 2c000 C:\Windows\system32\POWRPROF.dll

00000000fe130000 1d7000 C:\Windows\system32\SETUPAPI.dll

00000000fdc70000 36000 C:\Windows\system32\CFGMGR32.dll

00000000fdf30000 1a000 C:\Windows\system32\DEVOBJ.dll

00000000fbb40000 18000 C:\Windows\system32\dwmapi.dll

00000000fbe90000 b000 C:\Windows\system32\slc.dll

00000000fc390000 216000 C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\gdiplus.dll

00000000fd7f0000 b000 C:\Windows\system32\Secur32.dll

00000000fda50000 25000 C:\Windows\system32\SSPICLI.DLL

00000000fc610000 12c000 C:\Windows\system32\PROPSYS.dll

00000000fd1e0000 3d000 C:\Windows\system32\WINSTA.dll

00000000fdaf0000 f000 C:\Windows\system32\CRYPTBASE.dll

00000000fc790000 1f4000 C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll

00000000fb6c0000 12a000 C:\Windows\system32\WindowsCodecs.dll

00000000fdb20000 f000 C:\Windows\system32\profapi.dll

00000000fda90000 57000 C:\Windows\system32\apphelp.dll

00000000fe310000 99000 C:\Windows\system32\CLBCatQ.DLL

0000000074ae0000 25000 C:\Program Files\AVAST Software\Avast\ashShA64.dll

00000000fa7a0000 317000 C:\Windows\system32\msi.dll

0000000080000000 3b000 C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll

00000000fcaf0000 35000 C:\Windows\system32\EhStorShell.dll

00000000fca70000 80000 C:\Windows\system32\ntshrui.dll

00000000fd6a0000 23000 C:\Windows\system32\srvcli.dll

00000000fca60000 f000 C:\Windows\system32\cscapi.dll

00000000fca50000 8000 C:\Windows\system32\IconCodecService.dll

00000000fd490000 17000 C:\Windows\system32\CRYPTSP.dll

00000000fd150000 47000 C:\Windows\system32\rsaenh.dll

00000000fdb00000 14000 C:\Windows\system32\RpcRtRemote.dll

00000000fbf20000 3b000 C:\Windows\system32\SndVolSSO.DLL

00000000fc770000 b000 C:\Windows\system32\HID.DLL

00000000fc0f0000 4b000 C:\Windows\System32\MMDevApi.dll

00000000fac90000 83000 C:\Windows\system32\timedate.cpl

00000000fbec0000 19000 C:\Windows\system32\ATL.DLL

00000000f82d0000 ee000 C:\Windows\system32\actxprxy.dll

00000000fc090000 2d000 C:\Windows\system32\ntmarta.dll

00000000fdfb0000 52000 C:\Windows\system32\WLDAP32.dll

00000000fca10000 34000 C:\Windows\System32\shdocvw.dll

00000000fc990000 c000 C:\Windows\system32\LINKINFO.dll

00000000fbee0000 3d000 C:\Windows\system32\msutb.dll

00000000fceb0000 1e000 C:\Windows\system32\USERENV.dll

00000000fbbb0000 24000 C:\Windows\System32\shacct.dll

00000000fc740000 1d000 C:\Windows\system32\SAMLIB.dll

00000000fadb0000 14000 C:\Windows\system32\samcli.dll

00000000fadf0000 c000 C:\Windows\system32\netutils.dll

00000000fbb00000 35000 C:\Windows\system32\xmllite.dll

00000000f7e50000 2a3000 C:\Windows\System32\gameux.dll

00000000fddc0000 16a000 C:\Windows\system32\CRYPT32.dll

00000000fdc60000 f000 C:\Windows\system32\MSASN1.dll

00000000f93e0000 7c000 C:\Windows\System32\wer.dll

00000000f9d70000 c6000 C:\Windows\system32\MsftEdit.dll

00000000fb150000 3a000 C:\Windows\system32\msls31.dll

00000000fad30000 7f000 C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll

00000000f7c70000 1da000 C:\Windows\system32\authui.dll

00000000f86d0000 109000 C:\Windows\system32\CRYPTUI.dll

0000000077610000 14d000 C:\Windows\system32\urlmon.dll

0000000077180000 20f000 C:\Windows\system32\iertutil.dll

0000000077390000 15b000 C:\Windows\system32\WININET.dll

0000000077930000 3000 C:\Windows\system32\Normaliz.dll

00000000fc780000 9000 C:\Windows\system32\msiltcfg.dll

00000000fcc80000 c000 C:\Windows\system32\VERSION.dll

00000000f7a90000 19c000 C:\Windows\system32\NetworkExplorer.dll

00000000fac60000 21000 C:\Windows\System32\UIAnimation.dll

00000000f9d00000 43000 C:\Windows\system32\stobject.dll

00000000f81d0000 ba000 C:\Windows\system32\BatMeter.dll

00000000fcd80000 11000 C:\Windows\system32\WTSAPI32.dll

00000000fdf50000 3a000 C:\Windows\system32\WINTRUST.dll

00000000fba90000 67000 C:\Windows\system32\es.dll

00000000f8660000 69000 C:\Windows\system32\prnfldr.dll

00000000f8100000 71000 C:\Windows\system32\WINSPOOL.DRV

00000000f83d0000 74000 C:\Windows\system32\dxp.dll

00000000fb130000 16000 C:\Windows\system32\Syncreg.dll

00000000fbe40000 4f000 C:\Windows\system32\AUDIOSES.DLL

00000000fb6b0000 b000 C:\Windows\ehome\ehSSO.dll

00000000f6ed0000 28b000 C:\Windows\System32\netshell.dll

00000000fb9c0000 27000 C:\Windows\System32\IPHLPAPI.DLL

00000000fe5d0000 8000 C:\Windows\system32\NSI.dll

00000000fb9b0000 b000 C:\Windows\System32\WINNSI.DLL

00000000fbfa0000 15000 C:\Windows\System32\nlaapi.dll

00000000fb200000 10000 C:\Windows\System32\AltTab.dll

00000000fab90000 20000 C:\Windows\system32\wpdshserviceobj.dll

00000000f9c30000 39000 C:\Windows\system32\PortableDeviceTypes.dll

00000000f6dd0000 bd000 C:\Windows\system32\PortableDeviceApi.dll

00000000fa0d0000 127000 C:\Windows\system32\taskschd.dll

00000000fac40000 1d000 C:\Windows\system32\mssprxy.dll

00000000f71a0000 1bd000 C:\Windows\System32\pnidui.dll

00000000faad0000 1f000 C:\Windows\System32\QUtil.dll

00000000fd6e0000 6d000 C:\Windows\System32\wevtapi.dll

00000000fb430000 18000 C:\Windows\system32\dhcpcsvc.DLL

00000000fe910000 4d000 C:\Windows\system32\WS2_32.dll

00000000fb410000 11000 C:\Windows\system32\dhcpcsvc6.DLL

00000000fd000000 a000 C:\Windows\system32\credssp.dll

00000000f5530000 c000 C:\Windows\System32\npmproxy.dll

00000000f7a30000 58000 C:\Windows\System32\srchadmin.dll

00000000f9820000 20000 C:\Windows\system32\Wlanapi.dll

00000000fb070000 7000 C:\Windows\system32\wlanutil.dll

00000000f79d0000 5e000 C:\Windows\system32\wwanapi.dll

00000000fae20000 d000 C:\Windows\system32\wwapi.dll

00000000f8180000 45000 C:\Windows\System32\QAgent.dll

00000000f6ba0000 22b000 C:\Windows\System32\SyncCenter.dll

00000000f6ae0000 b5000 C:\Windows\System32\bthprops.cpl

00000000f69b0000 c2000 C:\Windows\System32\Actioncenter.dll

00000000fdb30000 91000 C:\Windows\system32\SXS.DLL

00000000f61d0000 7f000 C:\Windows\system32\imapi2.dll

00000000f7440000 55000 C:\Windows\System32\hgcpl.dll

00000000f6e90000 31000 C:\Windows\System32\provsvc.dll

00000000f8c00000 74000 C:\Windows\System32\netprofm.dll

00000000fadd0000 15000 C:\Windows\system32\wkscli.dll

00000000f4cc0000 d7000 C:\Windows\system32\fxsst.dll

00000000f6050000 9d000 C:\Windows\system32\FXSAPI.dll

0000000072af0000 e3000 C:\Windows\system32\FXSRESM.DLL

00000000fabc0000 28000 C:\Windows\System32\wscinterop.dll

00000000fb210000 13000 C:\Windows\System32\WSCAPI.dll

00000000f38d0000 11f000 C:\Windows\System32\wscui.cpl

00000000f1050000 13c000 C:\Windows\System32\werconcpl.dll

00000000f68c0000 4c000 C:\Windows\System32\framedynos.dll

00000000fac20000 19000 C:\Windows\System32\wercplsupport.dll

00000000fae30000 1f2000 C:\Windows\System32\msxml6.dll

00000000fbc60000 b000 C:\Windows\System32\hcproviders.dll

 

¤¤¤¤¤¤¤¤¤¤ | Modules chargés dans Winlogon

 

winlogon.exe pid: 736

Command line: winlogon.exe

 

Base Size Path

00000000ffe80000 62000 C:\Windows\system32\winlogon.exe

0000000077760000 1a9000 C:\Windows\SYSTEM32\ntdll.dll

00000000774f0000 11f000 C:\Windows\system32\kernel32.dll

00000000fdd50000 6c000 C:\Windows\system32\KERNELBASE.dll

0000000074fc0000 45000 C:\Program Files\AVAST Software\Avast\snxhk64.dll

0000000077080000 fa000 C:\Windows\system32\USER32.dll

00000000fe560000 67000 C:\Windows\system32\GDI32.dll

00000000ffa60000 e000 C:\Windows\system32\LPK.dll

00000000fe490000 c9000 C:\Windows\system32\USP10.dll

00000000fe090000 9f000 C:\Windows\system32\msvcrt.dll

00000000fd1e0000 3d000 C:\Windows\system32\WINSTA.dll

00000000fe5e0000 12d000 C:\Windows\system32\RPCRT4.dll

00000000feb90000 2e000 C:\Windows\system32\IMM32.DLL

00000000ff950000 109000 C:\Windows\system32\MSCTF.dll

00000000fe830000 db000 C:\Windows\system32\ADVAPI32.dll

00000000fdf90000 1f000 C:\Windows\SYSTEM32\sechost.dll

00000000fdb20000 f000 C:\Windows\system32\profapi.dll

00000000fdb00000 14000 C:\Windows\system32\RpcRtRemote.dll

00000000fda90000 57000 C:\Windows\system32\apphelp.dll

00000000fab80000 a000 C:\Windows\system32\UXINIT.dll

00000000fc5b0000 56000 C:\Windows\system32\UxTheme.dll

00000000fd490000 17000 C:\Windows\system32\CRYPTSP.dll

00000000fd150000 47000 C:\Windows\system32\rsaenh.dll

00000000fdaf0000 f000 C:\Windows\system32\CRYPTBASE.dll

00000000fb6c0000 12a000 C:\Windows\system32\WindowsCodecs.dll

00000000fe960000 203000 C:\Windows\system32\ole32.dll

00000000fadd0000 15000 C:\Windows\system32\wkscli.dll

00000000fd5a0000 32000 C:\Windows\system32\netjoin.dll

00000000fadf0000 c000 C:\Windows\system32\netutils.dll

00000000fda50000 25000 C:\Windows\system32\SspiCli.dll

00000000fbe90000 b000 C:\Windows\system32\slc.dll

00000000f8b00000 18000 C:\Windows\system32\MPR.dll

 

 

¤¤¤¤¤¤¤¤¤¤ | Modules chargés dans Services

 

services.exe pid: 656

Command line: C:\Windows\system32\services.exe

 

Base Size Path

00000000ffd20000 53000 C:\Windows\system32\services.exe

0000000077760000 1a9000 C:\Windows\SYSTEM32\ntdll.dll

00000000774f0000 11f000 C:\Windows\system32\kernel32.dll

00000000fdd50000 6c000 C:\Windows\system32\KERNELBASE.dll

0000000074fc0000 45000 C:\Program Files\AVAST Software\Avast\snxhk64.dll

00000000fe090000 9f000 C:\Windows\system32\msvcrt.dll

00000000fe5e0000 12d000 C:\Windows\system32\RPCRT4.dll

00000000fda50000 25000 C:\Windows\system32\SspiCli.dll

00000000fdb20000 f000 C:\Windows\system32\profapi.dll

00000000fdf90000 1f000 C:\Windows\SYSTEM32\sechost.dll

00000000fdaf0000 f000 C:\Windows\system32\CRYPTBASE.dll

00000000fd8c0000 19000 C:\Windows\system32\scext.dll

0000000077080000 fa000 C:\Windows\system32\USER32.dll

00000000fe560000 67000 C:\Windows\system32\GDI32.dll

00000000ffa60000 e000 C:\Windows\system32\LPK.dll

00000000fe490000 c9000 C:\Windows\system32\USP10.dll

00000000fd7f0000 b000 C:\Windows\system32\Secur32.dll

00000000fd750000 67000 C:\Windows\system32\SCESRV.dll

00000000fd6a0000 23000 C:\Windows\system32\srvcli.dll

00000000feb90000 2e000 C:\Windows\system32\IMM32.DLL

00000000ff950000 109000 C:\Windows\system32\MSCTF.dll

00000000fdb00000 14000 C:\Windows\system32\RpcRtRemote.dll

00000000fd000000 a000 C:\Windows\system32\credssp.dll

00000000fd660000 2f000 C:\Windows\system32\AUTHZ.dll

00000000fcfc0000 39000 C:\Windows\system32\UBPM.dll

00000000fe830000 db000 C:\Windows\system32\ADVAPI32.dll

00000000fda90000 57000 C:\Windows\system32\apphelp.dll

00000000fcd80000 11000 C:\Windows\system32\WTSAPI32.dll

00000000fd1e0000 3d000 C:\Windows\system32\WINSTA.dll

00000000fe910000 4d000 C:\Windows\system32\WS2_32.dll

00000000fe5d0000 8000 C:\Windows\system32\NSI.dll

00000000fd430000 55000 C:\Windows\system32\mswsock.dll

00000000fcda0000 7000 C:\Windows\System32\wshtcpip.dll

00000000fd420000 7000 C:\Windows\System32\wship6.dll

 

16:08:34

 

¤¤¤¤¤¤¤¤¤¤ | Security Center

 

 

 

 

[HKLM | FirewallPolicy\DomainProfile] | DisableNotifications : 0

[HKLM | FirewallPolicy\StandardProfile] | DisableNotifications : 0

 

¤¤¤¤¤¤¤¤¤¤ | Ports

 

[HKLM\System\CurrentControlSet\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

 

¤

 

[HKLM\System\CurrentControlSet\services\sharedaccess\parameters\firewallpolicy\domainprofile\GloballyOpenPorts\List]

 

16:08:34

 

 

¤¤¤¤¤¤¤¤¤¤ | Réattribution Fichiers cachés

 

~ Disques externes : 0 Eléments cachés

Disque Local : 5 Eléments Réattribués

Utilisateurs : 1 Eléments Réattribués

ProgramFiles : 2 Eléments Réattribués

Music : 794 Eléments Réattribués

Pictures : 4 Eléments Réattribués

~ Videos : 0 Eléments cachés

~ Downloads : 0 Eléments cachés

~ Desktop : 0 Eléments cachés

~ Links : 0 Eléments cachés

Searches : 3 Eléments Réattribués

~ Contacts : 0 Eléments cachés

~ Saved Games : 0 Eléments cachés

~ Favorites : 0 Eléments cachés

Documents : 7 Eléments Réattribués

Windows : 10 Eléments Réattribués

~ StartMenu : 0 Eléments cachés

~ Librairies : 0 Eléments cachés

Quick Launch : 2 Eléments Réattribués

%AppData% : 4 Eléments Réattribués

 

Total : 832 Eléments Réattribués

 

¤¤¤¤¤

 

[HKLM | Winlogon] | AutoRestartShell : 0 -> 1

 

Pre_Script.exe : Pour l'utiliser , relancer Pre_scan et choisir l'option script

 

Fin : 16:09:24

 

¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤

 

 

 

Mais c'est vraiment pour la première question que je suis venu donc pas grave si vous n'avez pas le temps pour la deuxième.

Modifié par pseudobidon_
Posté(e)

Bonjour

tout ce qui est dans la quarantaine ne sont a 99% que des fichiers temporaires ".tmp"

donc suppression sans soucis.

par contre je constate que tu as des restes de "Babylon" et autres fait ceci alors s.t.p

 

Télécharge AdwCleaner ( d'Xplode ) sur ton bureau.

©©chargements - Outils de Xplode - AdwCleaner

 

Lance le, clique sur [suppression]puis patiente le temps du scan.

Une fois le scan fini, un rapport s'ouvrira. Poste moi son contenu dans ta prochaine réponse.

 

Note : Le rapport est également sauvegardé sous C:\AdwCleaner[s1].txt

  • Upvote 1
Posté(e) (modifié)

Merci de prendre le temps de me répondre :)

C'est fait :

 

 

# AdwCleaner v1.609 - Rapport créé le 21/06/2012 à 21:36:34

# Mis à jour le 10/06/2012 par Xplode

# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)

# Nom d'utilisateur : july - JULY-PC

# Exécuté depuis : C:\Users\july\Desktop\adwcleaner.exe

# Option [suppression]

 

 

***** [services] *****

 

 

***** [Fichiers / Dossiers] *****

 

Dossier Supprimé : C:\Users\july\AppData\Local\Babylon

Dossier Supprimé : C:\Users\july\AppData\Local\Temp\BabylonToolbar

Dossier Supprimé : C:\Users\july\AppData\Local\Temp\Iminent

Dossier Supprimé : C:\Users\july\AppData\LocalLow\BabylonToolbar

Dossier Supprimé : C:\Users\july\AppData\Roaming\Babylon

Dossier Supprimé : C:\Users\july\AppData\Roaming\cacaoweb

Dossier Supprimé : C:\Users\july\AppData\Roaming\Mozilla\Firefox\Profiles\scfnt2uz.default\extensions\cacaoweb@cacaoweb.org

Dossier Supprimé : C:\ProgramData\Babylon

 

***** [Registre] *****

 

Clé Supprimée : HKCU\Software\cacaoweb

Clé Supprimée : HKCU\Software\Cr_Installer

Clé Supprimée : HKCU\Software\Iminent

Clé Supprimée : HKCU\Software\Softonic

Clé Supprimée : HKCU\Software\SweetIm

Clé Supprimée : HKCU\Software\AppDataLow\Software\I Want This

Clé Supprimée : HKLM\SOFTWARE\Babylon

Clé Supprimée : HKLM\SOFTWARE\Iminent

Clé Supprimée : HKLM\SOFTWARE\SweetIM

Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escort.DLL

Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP

Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]

Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]

Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [cacaoweb]

 

***** [Registre - GUID] *****

 

Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}

Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}

Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}

Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}

Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}

Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}

Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}

Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}

Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550055225558}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660066226658}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{77777777-7777-7777-7777-770077227758}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}

[x64] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}

 

***** [Navigateurs] *****

 

-\\ Internet Explorer v9.0.8112.16421

 

[OK] Le registre ne contient aucune entrée illégitime.

 

-\\ Mozilla Firefox v13.0.1 (fr)

 

Nom du profil : default

Fichier : C:\Users\july\AppData\Roaming\Mozilla\Firefox\Profiles\scfnt2uz.default\prefs.js

 

[OK] Le fichier ne contient aucune entrée illégitime.

 

-\\ Google Chrome v19.0.1084.56

 

Fichier : C:\Users\july\AppData\Local\Google\Chrome\User Data\Default\Preferences

 

Supprimée : "icon_url": "hxxp://www.babylon.com/favicon.ico",

Supprimée : "keyword": "babylon.com",

Supprimée : "name": "Search the web (Babylon)",

Supprimée : "search_url": "hxxp://search.babylon.com/?q={searchTerms}&tt=010412_crm&babsrc=SP_crm",

Supprimée : "search.babylon.com": 1.2239010334014893,

 

*************************

 

AdwCleaner[s1].txt - [11659 octets] - [21/06/2012 21:36:34]

 

########## EOF - C:\AdwCleaner[s1].txt - [11788 octets] ##########

 

 

 

Je ne pense pas que çà ait de l'importance mais je préfère le préciser, je l'ai run en mode sans échec sans prise en charge du réseau.

Modifié par pseudobidon_
Posté(e) (modifié)

Ouai çà a l'air. Juste que quand j'ouvre chrome il est parfois trop long à afficher la page d'accueil google et je suis obligé d'appuyer sur l'icone page d'accueil (la barre d'adresse affichée au démarrage est bien "www.google.fr"). Mais je pense que c'est rien, il n'y a plus aucun effet notable à part celui-là. Merci beaucoup pour ton aide.

 

Je mettrai [Résolu] dans l'après midi si tu ne me signales pas que c'est peut être dû à un malware.

Modifié par pseudobidon_
Posté(e)

pour ta navigation .

 

 

Réinitialisation des paramètres de connexion :

tapes cmd dans la recherche "Vista" ou "Seven" <ensuite clique droit sur la petite fenêtre noire nommée cmd.exe et choisis "Exécuter en tant qu'administrateur".

Dans le fenêtre DOS qui va s'afficher tapes ceci.

 

ipconfig /flushdns

netsh winsock reset

netsh winhttp reset proxy

netsh winhttp reset tracing

netsh winsock reset catalog

netsh int ipv4 reset catalog

netsh int ipv6 reset catalog

 

Valide par la touche Entrée chaque commande.

 

Tu redémarres le PC.

  • Upvote 1

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...