Comment supprimer DEAL FINDER

Fermé
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013 - 2 déc. 2013 à 21:51
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 - 5 déc. 2013 à 21:26
Bonjour,
Depuis plusieurs jours dès que j'ouvre une page internet il y a des onglets avec des pubs qui s'affichent ainsi que DEAL FINDER.
J'ai cherché dans mes extensions FIREFOX mais rien... comment faire pour supprimer toutes ces pubs?
Merci pour votre retour
A voir également:

14 réponses

2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
2 déc. 2013 à 21:52
Bonsoir,

Passe AdwCleaner et poste le rapport : http://www.forum-entraide-informatique.com/support/adwcleaner-tutoriel-t875.html

Puis passe SFTGC et poste le rapport hébergé : http://www.forum-entraide-informatique.com/support/sftgc-tutoriel-t8267.html

Gabriel.
0
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013
2 déc. 2013 à 22:07
Je ne peux pas installer Adwcleaner, Windows SmartScreen bloque le téléchargement.
0
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
2 déc. 2013 à 22:10
Re,

Normalement tu as possibilité de contourner le blocage, non ?

Gabriel.
0
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013
2 déc. 2013 à 22:19
Ah oui effectivement! Sorry...

Le rapport:

# AdwCleaner v3.014 - Rapport créé le 02/12/2013 à 22:12:57
# Mis à jour le 01/12/2013 par Xplode
# Système d'exploitation : Windows 8 (64 bits)
# Nom d'utilisateur : Laura - PC_DE_KOWINSKY
# Exécuté depuis : C:\Users\Laura\Downloads\adwcleaner.exe
# Option : Nettoyer

***** [ Services ] *****


***** [ Fichiers / Dossiers ] *****

Dossier Supprimé : C:\ProgramData\Babylon
Dossier Supprimé : C:\Program Files (x86)\Plus-HD-3.5
Dossier Supprimé : C:\Users\Laura\AppData\LocalLow\Plus-HD-3.5
Dossier Supprimé : C:\Users\Laura\AppData\Roaming\Babylon
Dossier Supprimé : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\7oekn7mq.default\Extensions\d8222698-19e5-4827-b79e-0a077ea8eb7a@7b662f6d-3899-41e4-8864-6393447568da.com
Fichier Supprimé : C:\Users\Public\Desktop\eBay.lnk
Fichier Supprimé : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\7oekn7mq.default\invalidprefs.js
Fichier Supprimé : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\7oekn7mq.default\searchplugins\Babylon.xml
Fichier Supprimé : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\7oekn7mq.default\searchplugins\delta.xml
Fichier Supprimé : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\7oekn7mq.default\user.js
Fichier Supprimé : C:\Windows\Tasks\Plus-HD-3.5-chromeinstaller.job
Fichier Supprimé : C:\Windows\System32\Tasks\Plus-HD-3.5-chromeinstaller
Fichier Supprimé : C:\Windows\Tasks\Plus-HD-3.5-codedownloader.job
Fichier Supprimé : C:\Windows\System32\Tasks\Plus-HD-3.5-codedownloader
Fichier Supprimé : C:\Windows\Tasks\Plus-HD-3.5-enabler.job
Fichier Supprimé : C:\Windows\System32\Tasks\Plus-HD-3.5-enabler
Fichier Supprimé : C:\Windows\Tasks\Plus-HD-3.5-firefoxinstaller.job
Fichier Supprimé : C:\Windows\System32\Tasks\Plus-HD-3.5-firefoxinstaller
Fichier Supprimé : C:\Windows\Tasks\Plus-HD-3.5-updater.job
Fichier Supprimé : C:\Windows\System32\Tasks\Plus-HD-3.5-updater

***** [ Raccourcis ] *****


***** [ Registre ] *****

Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Prod.cap
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0037180.BHO
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0037180.BHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0037180.Sandbox
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0037180.Sandbox.1
Clé Supprimée : HKLM\SOFTWARE\5355d78bb434ed46
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311711180}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322712280}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355715580}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366716680}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344714480}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311711180}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311711180}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311711180}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37ff91c2-0971-47a5-9b7e-bbf864df9815}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95603cf4-7d0e-4c1d-96b6-982dae57c9c0}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a176a5ab-39a3-46b6-a8ec-97768cb9e0fd}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b6aabddc-7be3-4141-b284-7a57f768135c}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{bd645cf9-755f-47d3-ae24-c0ada9179321}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311711180}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322712280}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355715580}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366716680}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311711180}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37ff91c2-0971-47a5-9b7e-bbf864df9815}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95603cf4-7d0e-4c1d-96b6-982dae57c9c0}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a176a5ab-39a3-46b6-a8ec-97768cb9e0fd}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b6aabddc-7be3-4141-b284-7a57f768135c}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{bd645cf9-755f-47d3-ae24-c0ada9179321}
Clé Supprimée : HKCU\Software\BabSolution
Clé Supprimée : HKCU\Software\DataMngr
Clé Supprimée : HKCU\Software\DataMngr_Toolbar
Clé Supprimée : HKCU\Software\InstallCore
Clé Supprimée : HKCU\Software\installedbrowserextensions
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKCU\Software\AppDataLow\Software\Plus-HD-3.5
Clé Supprimée : HKLM\Software\Babylon
Clé Supprimée : HKLM\Software\DataMngr
Clé Supprimée : HKLM\Software\Plus-HD-3.5
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Plus-HD-3.5

***** [ Navigateurs ] *****

-\\ Internet Explorer v10.0.9200.16537

Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]

-\\ Mozilla Firefox v25.0.1 (fr)

[ Fichier : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\7oekn7mq.default\prefs.js ]

Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.InstallationThankYouPage", false);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.InstallationTime", 1385247239);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.active", true);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.addressbar", "NA");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.addressbarenhanced", "");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.asyncdb_dbWasSet", true);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.asyncdb_dbWasSet_FF25_FIX", true);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.asyncinternaldb_dbWasSet", true);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.asyncinternaldb_dbWasSet_FF25_FIX", true);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.backgroundver", 1);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.certdomaininstaller", "");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.changeprevious", false);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.InstallationTime.value", "1385247239");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.NoNeedForUpdate.expiration", "Mon Dec 02 2013 10:00:38 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.NoNeedForUpdate.value", "1");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie._GPL_aoi.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie._GPL_aoi.value", "%221385296064%22");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie._GPL_parent_zoneid.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie._GPL_parent_zoneid.value", "%22429070%22");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie._GPL_zoneid.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie._GPL_zoneid.value", "%22436417%22");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.geo.expiration", "Sun Dec 08 2013 09:37:29 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.geo.value", "%22FR%22");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.iframe-exists.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.iframe-exists.value", "true");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.jw_token.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.jw_token.value", "%2256522606-09f1-7260-ce58-eec166a3c88f%22");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.load_balancer.expiration", "Mon Dec 02 2013 03:17:34 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.load_balancer.value", "%22%7B%20%5C%22Status%5C%22%3A%201%2C%5C%22Endpoint%5C%22%3A%20%5C%2[...]
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.previous_page.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.previous_page.value", "%22hxxps%3A//www.facebook.com/%3Fref%3Dtn_tnmn%22");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.user_id.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.cookie.user_id.value", "%22142872b6aae114bea8e6b915252c3d37%22");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.description", "Turn YouTube videos to High Definition by default");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.domain", "");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.enablesearch", false);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.homepage", "");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.iframe", false);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.InstallerIdentifiers.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.InstallerIdentifiers.value", "%7B%22installer_bic%22%3A%225369DAB5C21047FC98AEA2EE25795[...]
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.InstallerParamsCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.InstallerParamsCache.value", "%7B%22source_id%22%3A%22000597%22%2C%22sub_id%22%3A%220%2[...]
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.InstallerUserIdentifiersCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.InstallerUserIdentifiersCache.value", "%7B%22installer_bic%22%3A%225369DAB5C21047FC98AE[...]
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_appVer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_appVer.value", "81");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_lastVersion.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_lastVersion.value", "1");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_meta.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_meta.value", "%7B%7D");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_nextCheck.expiration", "Mon Dec 02 2013 03:17:25 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_nextCheck.value", "true");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_queue.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_queue.value", "%7B%7D");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_remote_resources.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.Resources_remote_resources.value", "%7B%22remoteId%22%3A0%7D");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb._country_code_.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb._country_code_.value", "%22FR%22");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.installer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.installer.value", "%7B%22InstallerIdentifiers%22%3A%7B%22installer_bic%22%3A%225369DAB5[...]
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.monetization_plugin_last_executable_request.expiration", "Sun Dec 01 2013 10:00:51 GMT+[...]
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.internaldb.monetization_plugin_last_executable_request.value", "%22hxxp%3A//aihdownload.adobe.com/[...]
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.lastDailyReport", "1385930245528");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.lastUpdate", "1385930268441");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.manifesturl", "");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.name", "Plus-HD-3.5");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.newtab", "");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.opensearch", "");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.pluginsurl", "hxxps://w9u6a2p6.ssl.hwcdn.net/plugin/apps/37180/plugins/093/ff/plugins.json");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.pluginsversion", 70);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.publisher", "Plus HD");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.searchstatus", 0);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.setnewtab", false);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.thankyou", "");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.updateinterval", 360);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.ver", 81);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.apps", "37180");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.bic", "142872b6aae114bea8e6b915252c3d37");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.cid", 37180);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.firstrun", false);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.hadappinstalled", true);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.installationdate", 1385247239);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.modetype", "production");
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.reportInstall", true);
Ligne Supprimée : user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.statsDailyCounter", 14);
Ligne Supprimée : user_pref("extensions.crossrider.bic", "142872b6aae114bea8e6b915252c3d37");
Ligne Supprimée : user_pref("extensions.delta.admin", false);
Ligne Supprimée : user_pref("extensions.delta.aflt", "babsst");
Ligne Supprimée : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Ligne Supprimée : user_pref("extensions.delta.autoRvrt", "false");
Ligne Supprimée : user_pref("extensions.delta.dfltLng", "en");
Ligne Supprimée : user_pref("extensions.delta.excTlbr", false);
Ligne Supprimée : user_pref("extensions.delta.ffxUnstlRst", true);
Ligne Supprimée : user_pref("extensions.delta.id", "8c9b08170000000000001c3e8449d62a");
Ligne Supprimée : user_pref("extensions.delta.instlDay", "15866");
Ligne Supprimée : user_pref("extensions.delta.instlRef", "sst");
Ligne Supprimée : user_pref("extensions.delta.newTab", false);
Ligne Supprimée : user_pref("extensions.delta.prdct", "delta");
Ligne Supprimée : user_pref("extensions.delta.prtnrId", "delta");
Ligne Supprimée : user_pref("extensions.delta.rvrt", "false");
Ligne Supprimée : user_pref("extensions.delta.smplGrp", "none");
Ligne Supprimée : user_pref("extensions.delta.tlbrId", "base");
Ligne Supprimée : user_pref("extensions.delta.tlbrSrchUrl", "");
Ligne Supprimée : user_pref("extensions.delta.vrsn", "1.8.21.5");
Ligne Supprimée : user_pref("extensions.delta.vrsnTs", "1.8.21.518:54:31");
Ligne Supprimée : user_pref("extensions.delta.vrsni", "1.8.21.5");
Ligne Supprimée : user_pref("extensions.delta_i.babExt", "");
Ligne Supprimée : user_pref("extensions.delta_i.babTrack", "affID=121845");
Ligne Supprimée : user_pref("extensions.delta_i.srcExt", "ss");

*************************

AdwCleaner[R0].txt - [25961 octets] - [02/12/2013 22:11:45]
AdwCleaner[S0].txt - [22590 octets] - [02/12/2013 22:12:57]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [22651 octets] ##########
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013
2 déc. 2013 à 22:24
Le rapport SFTGC:

Rapport de SFTGC (Pierre13) du Lundi 02 Décembre 2013 à 22:23:19 version : 2.0.0.60
Mis à jour le 27/11/2013
Outil lancé en Mode normal et En tant qu'administrateur
Windows 8 64 bits

Tool start in C:\Users\Laura\Downloads

1410 éléments supprimés => 707.56 Mo libérés. (1 mn 17 s)

C:\Users\Laura\AppData\Local\Temp\09011748-00001144-a2fswx9qzi
C:\Users\Laura\AppData\Local\Temp\09011748-0000122c-su2km3juw7
C:\Users\Laura\AppData\Local\Temp\09011748-00002004-0qkc21j6w9
C:\Users\Laura\AppData\Local\Temp\16725BC7-AEB0-49D0-A08A-3195363C2516.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\16725BC7-AEB0-49D0-A08A-3195363C2516.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\1FC64378-A64F-40ED-99D9-98279D277968.Diagnose.3.etl
C:\Users\Laura\AppData\Local\Temp\26689406-AB43-4DF1-825A-DB46F0C23A08.Diagnose.3.etl
C:\Users\Laura\AppData\Local\Temp\26689406-AB43-4DF1-825A-DB46F0C23A08.Repair.4.etl
C:\Users\Laura\AppData\Local\Temp\26689406-AB43-4DF1-825A-DB46F0C23A08.Verify.5.etl
C:\Users\Laura\AppData\Local\Temp\2A30F864-FCAE-421E-AF28-2B4ACA5135A5.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\348EEFAB-F5B1-4854-9452-4846B5DCBE0B.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\3570764F-9801-4AC5-BDE2-12C77C2253B2.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\3DC89BA1-812C-417A-803E-6E0F4C066E2A.Diagnose.3.etl
C:\Users\Laura\AppData\Local\Temp\47E2661D-3276-4A9C-AD23-AC7EF3C40CC9.Diagnose.0.etl
C:\Users\Laura\AppData\Local\Temp\47E2661D-3276-4A9C-AD23-AC7EF3C40CC9.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\47E2661D-3276-4A9C-AD23-AC7EF3C40CC9.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\50EB0562-8E1C-4FAE-9305-7A0B8915526A.Diagnose.0.etl
C:\Users\Laura\AppData\Local\Temp\50EB0562-8E1C-4FAE-9305-7A0B8915526A.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\50EB0562-8E1C-4FAE-9305-7A0B8915526A.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\58F02F43-00F1-4332-91F0-AB19BB9668F0.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\58F02F43-00F1-4332-91F0-AB19BB9668F0.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\631FE234-1310-4DB7-BAB7-1067E92BF4C1.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\631FE234-1310-4DB7-BAB7-1067E92BF4C1.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\77647DD7-ADAB-4FF3-89B7-E73299486AFA.Diagnose.0.etl
C:\Users\Laura\AppData\Local\Temp\77647DD7-ADAB-4FF3-89B7-E73299486AFA.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\77647DD7-ADAB-4FF3-89B7-E73299486AFA.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\7B3D271A-FD6A-4739-B35F-B9C17A5230E8.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\7B3D271A-FD6A-4739-B35F-B9C17A5230E8.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\7DD363D6-E9AA-48A1-81D6-E5732AE76BEF.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\7DD363D6-E9AA-48A1-81D6-E5732AE76BEF.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\8A31B948-9D1E-4133-A79C-BA02A7B5AA42.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\8A31B948-9D1E-4133-A79C-BA02A7B5AA42.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\8C052A70-DCA2-43E8-A034-6D3FC35334AA.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\8C052A70-DCA2-43E8-A034-6D3FC35334AA.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\9CC3E756-99FD-4F5F-B0FB-20B4F69B425C.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\9CC3E756-99FD-4F5F-B0FB-20B4F69B425C.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\9EE0F354-5006-487F-B751-86738562E461.Repair.Admin.0.etl
C:\Users\Laura\AppData\Local\Temp\acro_rd_dir
C:\Users\Laura\AppData\Local\Temp\AdwCleaner.jpg
C:\Users\Laura\AppData\Local\Temp\AlreadyRun2013-33-02-18
C:\Users\Laura\AppData\Local\Temp\Avtniuhu.pdf.part
C:\Users\Laura\AppData\Local\Temp\B016AC96-9D6A-499B-950D-09BDF913DD83.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\B016AC96-9D6A-499B-950D-09BDF913DD83.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\B10435BC-A002-41AF-9442-A14397BE046E.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\B10435BC-A002-41AF-9442-A14397BE046E.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\BCC0C0DC-4C24-4492-927B-16FBE861C624.Diagnose.6.etl
C:\Users\Laura\AppData\Local\Temp\cab5F39.tmp
C:\Users\Laura\AppData\Local\Temp\CC2D.tmp
C:\Users\Laura\AppData\Local\Temp\CFGFF84.tmp
C:\Users\Laura\AppData\Local\Temp\Cleaning.ico
C:\Users\Laura\AppData\Local\Temp\CLUpdater.ini
C:\Users\Laura\AppData\Local\Temp\CVR546E.tmp.cvr
C:\Users\Laura\AppData\Local\Temp\dd_vcredistMSI2F13.txt
C:\Users\Laura\AppData\Local\Temp\dd_vcredistMSI3029.txt
C:\Users\Laura\AppData\Local\Temp\dd_vcredistUI2F13.txt
C:\Users\Laura\AppData\Local\Temp\dd_vcredistUI3029.txt
C:\Users\Laura\AppData\Local\Temp\Dk7BMMwQ.exe.part
C:\Users\Laura\AppData\Local\Temp\DMI15E.tmp
C:\Users\Laura\AppData\Local\Temp\DMI2537.tmp
C:\Users\Laura\AppData\Local\Temp\DMI31A1.tmp
C:\Users\Laura\AppData\Local\Temp\DMIA9C3.tmp
C:\Users\Laura\AppData\Local\Temp\DMIC1D0.tmp
C:\Users\Laura\AppData\Local\Temp\DMID5DD.tmp
C:\Users\Laura\AppData\Local\Temp\DMIDD62.tmp
C:\Users\Laura\AppData\Local\Temp\DMIF8AB.tmp
C:\Users\Laura\AppData\Local\Temp\Donate.ico
C:\Users\Laura\AppData\Local\Temp\EAAAC3AF-1547-4A44-8E7C-DC6C92676629.Diagnose.0.etl
C:\Users\Laura\AppData\Local\Temp\EAAAC3AF-1547-4A44-8E7C-DC6C92676629.Repair.1.etl
C:\Users\Laura\AppData\Local\Temp\EAAAC3AF-1547-4A44-8E7C-DC6C92676629.Verify.2.etl
C:\Users\Laura\AppData\Local\Temp\EC346FA0-EA48-4017-B885-5C3DC1556BA5.Diagnose.3.etl
C:\Users\Laura\AppData\Local\Temp\etilqs_9F5MWw1TdA4xt1c
C:\Users\Laura\AppData\Local\Temp\etilqs_pBugvcK3htSr8vl
C:\Users\Laura\AppData\Local\Temp\EXCEL.EXE_c2rdll(2013060815135312B8).log
C:\Users\Laura\AppData\Local\Temp\Extract.exe
C:\Users\Laura\AppData\Local\Temp\F143177D-C934-4AD9-B0AF-E261F74A3D27.Diagnose.3.etl
C:\Users\Laura\AppData\Local\Temp\FireFly(201306081452194EE4).log
C:\Users\Laura\AppData\Local\Temp\FireFly(20131123210547690).log
C:\Users\Laura\AppData\Local\Temp\FIRSTRUN.EXE_c2rdll(201306081453051D34).log
C:\Users\Laura\AppData\Local\Temp\formulaire_subvention_2013_36.doc
C:\Users\Laura\AppData\Local\Temp\go9876.html
C:\Users\Laura\AppData\Local\Temp\HP Support Framework
C:\Users\Laura\AppData\Local\Temp\HPSAActionItems.xml
C:\Users\Laura\AppData\Local\Temp\ICReinstall_SkypeSetup.exe
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\01 Balance Sa Pou Mwin (Dancehall Qu.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\0611.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\07 Thon Son.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\0710.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\0713.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\0810.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\0813.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\0910.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\102NIKON.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\20130720_185738.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\20130831_180220.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\20130904_132618.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\2K5.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\2pac - Do for love.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\552157_504969862900990_982182154_n.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\994365_652912951409325_2035299115_n.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\audio.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Balance Sa Pou Mwin (Dancehall Queen) -.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Be02.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Be05.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Be06.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Be07.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Be08.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Be09.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Be10.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Black Ankle Strap Platform Court Shoes.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\cake pop.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Capture_20131124_7.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Capture_20131124_9.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\Chiktay - La pli si tol.lnk
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\2f2ab2ecaae19bc9.customDestinations-ms
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\337ed59af273c758.customDestinations-ms
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\74d7f43c1561fc1e.customDestinations-ms
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\7e4dca80246863e3.customDestinations-ms
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\83b03b46dcd30a0e.customDestinations-ms
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\969252ce11249fdd.customDestinations-ms
C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\f01b4d95cf55d32a.customDestinations-ms
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2dedab8b-4a23-4518-a98d-76981ec3da09-browser.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2dedab8b-4a23-4518-a98d-76981ec3da09-flash1.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2dedab8b-4a23-4518-a98d-76981ec3da09-flash2.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2dedab8b-4a23-4518-a98d-76981ec3da09.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2dedab8b-4a23-4518-a98d-76981ec3da09.extra
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31886e98-6f06-4d19-acb6-f6fc2c35c173-browser.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31886e98-6f06-4d19-acb6-f6fc2c35c173-flash1.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31886e98-6f06-4d19-acb6-f6fc2c35c173-flash2.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31886e98-6f06-4d19-acb6-f6fc2c35c173.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31886e98-6f06-4d19-acb6-f6fc2c35c173.extra
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\7a94c8de-02c1-4aef-99d1-b34b76708684-browser.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\7a94c8de-02c1-4aef-99d1-b34b76708684-flash1.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\7a94c8de-02c1-4aef-99d1-b34b76708684-flash2.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\7a94c8de-02c1-4aef-99d1-b34b76708684.dmp
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\7a94c8de-02c1-4aef-99d1-b34b76708684.extra
C:\Users\Laura\AppData\Local\Microsoft\SmartScreen\ARC2F90.tmp
C:\Users\Laura\AppData\Local\Microsoft\SmartScreen\ARC4DCE.tmp
C:\Users\Laura\AppData\Local\Microsoft\SmartScreen\ARC5280.tmp
C:\Users\Laura\AppData\Local\Microsoft\SmartScreen\ARC8D62.tmp
C:\Users\Laura\AppData\Local\Microsoft\SmartScreen\ARCA754.tmp
C:\Users\Laura\AppData\Local\Microsoft\SmartScreen\ARCADE3.tmp
C:\Users\Laura\AppData\Local\Microsoft\SmartScreen\ARCBC87.tmp
C:\Users\Laura\AppData\Local\Microsoft\SmartScreen\ARCE282.tmp
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\030DBCEADC67EA14BE9A74D5A32FAF83
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\03C2624375988154FBF20373B7D495E8_4CE1399DE4CEDD0087BBFC0689796C3F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_183421EAB06B3EDBBED0B7197AB66D92
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_5CF84F582F41596ED580568E391E672E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_69779981FDFB654BD555335BEDE7D0CF
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_8B8B185076EF4E7580202CFD5A0EFE0D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0B1B84E1509125064E3D44331C3817C2_3E6BB635115BB4A3C7C9DF5009227113
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_3722A7817B153CAC96BEA5D2AB2FB31E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_83653FB4B566DAD9C63D2C31D4C9715C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_91579693C2D8584E3FFB75C581EC5E8B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_AAD1CC4B7615C173F7121423EBB0D6F3
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_BFF3E82445C199812E8EC4CC74EA6FD4
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_EC2B8F0C530DA57B6BD72F9ED19E4B95
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1A1CDDC0B6944E44D4244C5611652459
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1DAF2884EC4DFA96BA4A58D4DBC9C406
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F39B5CFACECFDE48DB25BCA2231FAC6_301E817F450DD4C5D3CCB1E97E67BA56
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F39B5CFACECFDE48DB25BCA2231FAC6_659E8B339CB5D4A3440EE573BB1175E7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F39B5CFACECFDE48DB25BCA2231FAC6_79E1A496B3CA3CE57EF2B4B1EB5A1F02
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F39B5CFACECFDE48DB25BCA2231FAC6_8CD48117A4849AD5882A3A8B99DDE18D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\21EA03E12A6F9D076B6BC3318EA9363E_6EF0095DA824AE045AE9FC5B645DF095
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\23B523C9E7746F715D33C6527C18EB9D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2439BE688C04EC10EE2B724361DFB2CA_C520C54E784EC869C630392026CE9925
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\26AD01F9C002FAD37427E734302383D8_E1DF8F31180BEED965CA2CD894B8B7B4
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_3A23C6C182D1C0D94B9C0F1AC2B5A4D4
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_713760179211FF4E36BD43C5A97F3E14
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_99BFB8D0B245B9023AFFB62615DAE064
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\30F7B429BB1DACA9B591B41E016BED66_F6024CD0767F1B4C9F060C7479C6DC83
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3B143EDBBE87DD7AF4242621D50150C8_9422F659B94B610CC26DEDBD6E43A487
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3B6E683A7A45CC59BF035C9BA8C7AB9D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_5BEB6C6453DB87D996BDBC5D90D34AE1
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_6826ABE08762DD75B44135DA6EAB6E63
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3F9CAA0497A0877CE21ECD947E7238B5_E1F0919A92865CED77950400693A532F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\40EB206A466C1F1175CCB23E825B3250
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_26F6E2EE81A5B1415B34CD99049E00E2
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_6097A4327829C4260E0ABAE0469812A2
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_DF7139DD72A4FD7006E7247A8DBEB19A
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4E921787B7D7C838D920938DFC6D122E_79F029B769AAE8010337F77D683CB533
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_4BDA944235F1446F185236D493959297
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_7DCDC9B86C5DA37FEB2732F7D1A586E5
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_A6B2237C23668D872C46152358A3FB3E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_D734EC3DD00546F46D368325396086B0
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_E638F9EA31276B58E6A32FDD5296AB01
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\566A973C3ADBC70963C072413659C1CB_39482AEE62881116513CBB19A044403F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\566A973C3ADBC70963C072413659C1CB_83534C59801CE4562960B8243FB8A342
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5BF987767EE121EB773E3E93D13C2F30_0B2AEF4FE043D0F11F387BBA16F05698
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\69CB1FD121A3CCB01B235A51441959D6_078DC4B2390A7EFBCA49C4D0774B67BE
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AFA4286D305D35CF857C64AE01F5F72
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6B7AED56F69397028F35E77E6DD681FC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77FBC64BA73370EC2F659BAD977FF2AD_9767A5403B067D539A02E2AD0F3C2C4A
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\783DF2F5A7C9BC04C36663632D14B993_09E6BFC8958A4903B51F28C3DF0B32CC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\783DF2F5A7C9BC04C36663632D14B993_169DE3439FD2D9FE0AE07883B5A27A1B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\79841F8EF00FBA86D33CC5A47696F165
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_355DF12EAABE3F04A4C1AF592920E175
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_36E3207A43A87A281983E8D0B4D7BCDF
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_4E603F0CD4E04525D308172975E1810A
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_5442B1CAC753FE77C0664BB0A0BCD11E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_5AE6F9C328F80F504A42447CD464EEC0
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_8102C2D9BECD09FCBB2BC1857DCCAD50
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_B2087E0B670B77412221B4DDD6EED487
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_DBEBBB72D7CF896A67503824FF19F0BB
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_E5F52F44EFEA601D95BF7714E6B3781D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_EE818221A24A912331506A3AC2125158
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7C44AA84A5CFEC3289884F54A088297E_C9E46D66912637334CBAD07207DBA517
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D1F03728133589A90656A87E482B21F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_1D5A876A9113EC07224C45E5A870E3BD
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_FFE23A7C282C1690704B5AEA6161D1B8
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_07A6F2D11F9C2BE4390B378A8F0B726F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_0C3EC2A68BF0C893E5448FE2A5806730
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_1CEED7FC41855A31A9CDFA895537D640
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_2B23328EFF2E279E24A22113F88FA71A
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_2F1BD5B4F9DBD26AB429C868029F876C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_2F678F940BC1AE622B5FD7A9A1822C3E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_5D07324D2A4387C287F004A5AD0FD609
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_602DEDB8C7D6326D5C8D775461CB2C26
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_6B51F8B211C8D2BE9261A66582B5351E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_72A8A3227555B8D9D0FEB7CED8B1BFBF
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_88139EB4B3E9796D15327C2EC2F34CF5
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_8A4ABE81D0B05920BC2AAF871936BF40
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_95BE0E24685C739E0287588432223979
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_B7F0B98819D6838FEFEBC351CA792E82
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_BE6EDE3E0FE6BF9659583D5F340D2E9F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_D0C116A346D3BE1BE9660A5DCC02D9B7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_D43DCC4666343EAF47AAA7427A5FCDEB
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_F9758F0CEE4021D579BC2D754B77BF07
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8441F16E457B557F49A631619736D31E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_1E5D470765E0BE1964814B1F5A3581DC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8C5B82AE05DF6F77F2216F84EA164791
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8EBFACB3A66359F9514D044C86BA4794
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_1521FDA318EDFEBCCDD7DD7DD752E274
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\944E5B697BC46FE14AB888AE8A1EBB99_103FFFA9688627D0A1B5433DD480BA01
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_AD9E7615297A3A83320AACE5801A04F9
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9BC0E968587BBED1FB8E252E0545369D_6186C79BD47F059B9828260ED632BA14
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9EC3B71635F8BA3FC68DE181A104A0EF_025971C6C95CB113E888C9559258C5F1
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A27A0B5E1ECAAA01CC77385E9FA4AC43_5C0DE39FCFB119C10F747E9D8D76E156
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_2C05E41C96EFDC884611C5187A819B15
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A3C4F17BF8CB09C3DF2A086B36306B5C_C1C0B5D167C066A750AF361DC97F90F6
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B3BB9C1BA2D19E090AE305B2683903A0_5864DDF0697688952ACDB52C47E0933E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B4378BD2E36B69DECED3E341BD654801_13AE43C06DD43515E195B004292BCE5C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B69D763EB21649DA26F20618312DEE70
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B90B117906B8A74C79D1BC450C2B94B1_A54F26A8A41DE52C237D54D67F12793F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BAEBE581FCB73249406FC21094EA252E_BC0CE803EF41A748738619ED7838EEFC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BBB768C456D9E2DCD3EF595C400D483D_64C05B9EB32FC3D0CE6CB126561EEBFF
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_6FD1BEFD298F4FD3EE4B4EE2E6631CC7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C3B4324B100AA32F7BE995E7E34E0AA5_15C23806E36E1233F1A79C3B11377E1C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C8E7EC0C85688F4738F3BE49B104BA67
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_C1E12B24931DF30EF8125657DA7A408C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_E87980C26CE0F29D6CF834283AAFED67
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_E8FFB3D833ACBBA2A753BCE3F81C274B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CED209487D21B905304C249DD63B49BA_763EF36FA92455C61C561841DEEE7EE8
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_415CF1E2239BBFB812667D030A1B2462
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D84E548583BE1EE7DB5A935821009D26_363BE15C72601F5ACFD78D3AA4D30414
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D84E548583BE1EE7DB5A935821009D26_5B98B6CD6E69202676965CF5B0E2A7A7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_78A3FDFEAF0CB6269293DC6B4406F98B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_9A810CD87E2646CF7429CF771DB63ED7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E7B158B31D45761A93C56C441E33DD68_86F2FC5A13B41D7B51F7847D5AB138E2
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E82F33FE110733AA96A17FA514E0EB5E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EE44ECA143B76F2B9F2A5AA75B5D1EC6_847118BE2683F0C241D1D702F3A3F5F9
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4B372709D6C2AD766C34D274501DC76_C08D897FBCD7D5D638FCD154D1404CBE
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4D9C889B7AEBCF4E1A2DAABC5C3628A_AD67B42F526068C7A09A14203543DAE9
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4D9C889B7AEBCF4E1A2DAABC5C3628A_D5823FB97412AFBE7D5654F2C6D8A224
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F72943F1E01540BBACB5396C76DD6AAA
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FAC339B39377A299AE11B4D208AD3090
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB788E090BC1F3AA2FBC9E8FB2859601
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCEA474F228C13CD0DAD678431D0ACFC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\030DBCEADC67EA14BE9A74D5A32FAF83
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\03C2624375988154FBF20373B7D495E8_4CE1399DE4CEDD0087BBFC0689796C3F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_183421EAB06B3EDBBED0B7197AB66D92
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_5CF84F582F41596ED580568E391E672E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_69779981FDFB654BD555335BEDE7D0CF
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_8B8B185076EF4E7580202CFD5A0EFE0D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0B1B84E1509125064E3D44331C3817C2_3E6BB635115BB4A3C7C9DF5009227113
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_3722A7817B153CAC96BEA5D2AB2FB31E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_83653FB4B566DAD9C63D2C31D4C9715C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_91579693C2D8584E3FFB75C581EC5E8B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_AAD1CC4B7615C173F7121423EBB0D6F3
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_BFF3E82445C199812E8EC4CC74EA6FD4
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_EC2B8F0C530DA57B6BD72F9ED19E4B95
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1A1CDDC0B6944E44D4244C5611652459
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1DAF2884EC4DFA96BA4A58D4DBC9C406
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F39B5CFACECFDE48DB25BCA2231FAC6_301E817F450DD4C5D3CCB1E97E67BA56
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F39B5CFACECFDE48DB25BCA2231FAC6_659E8B339CB5D4A3440EE573BB1175E7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F39B5CFACECFDE48DB25BCA2231FAC6_79E1A496B3CA3CE57EF2B4B1EB5A1F02
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F39B5CFACECFDE48DB25BCA2231FAC6_8CD48117A4849AD5882A3A8B99DDE18D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\21EA03E12A6F9D076B6BC3318EA9363E_6EF0095DA824AE045AE9FC5B645DF095
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\23B523C9E7746F715D33C6527C18EB9D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2439BE688C04EC10EE2B724361DFB2CA_C520C54E784EC869C630392026CE9925
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\26AD01F9C002FAD37427E734302383D8_E1DF8F31180BEED965CA2CD894B8B7B4
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_3A23C6C182D1C0D94B9C0F1AC2B5A4D4
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_713760179211FF4E36BD43C5A97F3E14
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_99BFB8D0B245B9023AFFB62615DAE064
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\30F7B429BB1DACA9B591B41E016BED66_F6024CD0767F1B4C9F060C7479C6DC83
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3B143EDBBE87DD7AF4242621D50150C8_9422F659B94B610CC26DEDBD6E43A487
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3B6E683A7A45CC59BF035C9BA8C7AB9D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_5BEB6C6453DB87D996BDBC5D90D34AE1
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_6826ABE08762DD75B44135DA6EAB6E63
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3F9CAA0497A0877CE21ECD947E7238B5_E1F0919A92865CED77950400693A532F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\40EB206A466C1F1175CCB23E825B3250
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_26F6E2EE81A5B1415B34CD99049E00E2
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_6097A4327829C4260E0ABAE0469812A2
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_DF7139DD72A4FD7006E7247A8DBEB19A
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4E921787B7D7C838D920938DFC6D122E_79F029B769AAE8010337F77D683CB533
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_4BDA944235F1446F185236D493959297
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_7DCDC9B86C5DA37FEB2732F7D1A586E5
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_A6B2237C23668D872C46152358A3FB3E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_D734EC3DD00546F46D368325396086B0
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_E638F9EA31276B58E6A32FDD5296AB01
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\566A973C3ADBC70963C072413659C1CB_39482AEE62881116513CBB19A044403F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\566A973C3ADBC70963C072413659C1CB_83534C59801CE4562960B8243FB8A342
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5BF987767EE121EB773E3E93D13C2F30_0B2AEF4FE043D0F11F387BBA16F05698
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\69CB1FD121A3CCB01B235A51441959D6_078DC4B2390A7EFBCA49C4D0774B67BE
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AFA4286D305D35CF857C64AE01F5F72
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6B7AED56F69397028F35E77E6DD681FC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77FBC64BA73370EC2F659BAD977FF2AD_9767A5403B067D539A02E2AD0F3C2C4A
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\783DF2F5A7C9BC04C36663632D14B993_09E6BFC8958A4903B51F28C3DF0B32CC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\783DF2F5A7C9BC04C36663632D14B993_169DE3439FD2D9FE0AE07883B5A27A1B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\79841F8EF00FBA86D33CC5A47696F165
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_355DF12EAABE3F04A4C1AF592920E175
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_36E3207A43A87A281983E8D0B4D7BCDF
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_4E603F0CD4E04525D308172975E1810A
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_5442B1CAC753FE77C0664BB0A0BCD11E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_5AE6F9C328F80F504A42447CD464EEC0
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_8102C2D9BECD09FCBB2BC1857DCCAD50
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_B2087E0B670B77412221B4DDD6EED487
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_DBEBBB72D7CF896A67503824FF19F0BB
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_E5F52F44EFEA601D95BF7714E6B3781D
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_EE818221A24A912331506A3AC2125158
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7C44AA84A5CFEC3289884F54A088297E_C9E46D66912637334CBAD07207DBA517
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D1F03728133589A90656A87E482B21F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_1D5A876A9113EC07224C45E5A870E3BD
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_FFE23A7C282C1690704B5AEA6161D1B8
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_07A6F2D11F9C2BE4390B378A8F0B726F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_0C3EC2A68BF0C893E5448FE2A5806730
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_1CEED7FC41855A31A9CDFA895537D640
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_2B23328EFF2E279E24A22113F88FA71A
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_2F1BD5B4F9DBD26AB429C868029F876C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_2F678F940BC1AE622B5FD7A9A1822C3E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_5D07324D2A4387C287F004A5AD0FD609
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_602DEDB8C7D6326D5C8D775461CB2C26
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_6B51F8B211C8D2BE9261A66582B5351E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_72A8A3227555B8D9D0FEB7CED8B1BFBF
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_88139EB4B3E9796D15327C2EC2F34CF5
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_8A4ABE81D0B05920BC2AAF871936BF40
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_95BE0E24685C739E0287588432223979
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_B7F0B98819D6838FEFEBC351CA792E82
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_BE6EDE3E0FE6BF9659583D5F340D2E9F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_D0C116A346D3BE1BE9660A5DCC02D9B7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_D43DCC4666343EAF47AAA7427A5FCDEB
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_F9758F0CEE4021D579BC2D754B77BF07
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8441F16E457B557F49A631619736D31E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_1E5D470765E0BE1964814B1F5A3581DC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8C5B82AE05DF6F77F2216F84EA164791
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8EBFACB3A66359F9514D044C86BA4794
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_1521FDA318EDFEBCCDD7DD7DD752E274
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\944E5B697BC46FE14AB888AE8A1EBB99_103FFFA9688627D0A1B5433DD480BA01
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_AD9E7615297A3A83320AACE5801A04F9
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9BC0E968587BBED1FB8E252E0545369D_6186C79BD47F059B9828260ED632BA14
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9EC3B71635F8BA3FC68DE181A104A0EF_025971C6C95CB113E888C9559258C5F1
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A27A0B5E1ECAAA01CC77385E9FA4AC43_5C0DE39FCFB119C10F747E9D8D76E156
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_2C05E41C96EFDC884611C5187A819B15
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A3C4F17BF8CB09C3DF2A086B36306B5C_C1C0B5D167C066A750AF361DC97F90F6
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B3BB9C1BA2D19E090AE305B2683903A0_5864DDF0697688952ACDB52C47E0933E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B4378BD2E36B69DECED3E341BD654801_13AE43C06DD43515E195B004292BCE5C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B69D763EB21649DA26F20618312DEE70
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B90B117906B8A74C79D1BC450C2B94B1_A54F26A8A41DE52C237D54D67F12793F
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BAEBE581FCB73249406FC21094EA252E_BC0CE803EF41A748738619ED7838EEFC
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BBB768C456D9E2DCD3EF595C400D483D_64C05B9EB32FC3D0CE6CB126561EEBFF
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_6FD1BEFD298F4FD3EE4B4EE2E6631CC7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C3B4324B100AA32F7BE995E7E34E0AA5_15C23806E36E1233F1A79C3B11377E1C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C8E7EC0C85688F4738F3BE49B104BA67
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_C1E12B24931DF30EF8125657DA7A408C
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_E87980C26CE0F29D6CF834283AAFED67
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_E8FFB3D833ACBBA2A753BCE3F81C274B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CED209487D21B905304C249DD63B49BA_763EF36FA92455C61C561841DEEE7EE8
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_415CF1E2239BBFB812667D030A1B2462
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D84E548583BE1EE7DB5A935821009D26_363BE15C72601F5ACFD78D3AA4D30414
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D84E548583BE1EE7DB5A935821009D26_5B98B6CD6E69202676965CF5B0E2A7A7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_78A3FDFEAF0CB6269293DC6B4406F98B
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_9A810CD87E2646CF7429CF771DB63ED7
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E7B158B31D45761A93C56C441E33DD68_86F2FC5A13B41D7B51F7847D5AB138E2
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E82F33FE110733AA96A17FA514E0EB5E
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EE44ECA143B76F2B9F2A5AA75B5D1EC6_847118BE2683F0C241D1D702F3A3F5F9
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4B372709D6C2AD766C34D274501DC76_C08D897FBCD7D5D638FCD154D1404CBE
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4D9C889B7AEBCF4E1A2DAABC5C3628A_AD67B42F526068C7A09A14203543DAE9
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4D9C889B7AEBCF4E1A2DAABC5C3628A_D5823FB97412AFBE7D5654F2C6D8A224
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F72943F1E01540BBACB5396C76DD6AAA
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FAC339B39377A299AE11B4D208AD3090
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB788E090BC1F3AA2FBC9E8FB2859601
C:\Users\Laura\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCEA474F228C13CD0DAD678431D0ACFC
C:\Users\Laura\AppData\Local\Temp\integratedoffice.exe_c2rdll(201306081452194EE4).log
C:\Users\Laura\AppData\Local\Temp\integratedoffice.exe_c2rdll(20131123210547690).log
C:\Users\Laura\AppData\Local\Temp\is1275519350
C:\Users\Laura\AppData\Local\Temp\iTunesSetup [1]1F90.log
C:\Users\Laura\AppData\Local\Temp\iTunesSetup(1)20E0.log
C:\Users\Laura\AppData\Local\Temp\IXP455.TMP
C:\Users\Laura\AppData\Local\Temp\IXP510.TMP
C:\Users\Laura\AppData\Local\Temp\IXP990.TMP
C:\Users\Laura\AppData\Local\Temp\j7M+EPfv.pdf.part
C:\Users\Laura\AppData\Local\Temp\Kno569E.tmp
C:\Users\Laura\AppData\Local\Temp\Laura.bmp
C:\Users\Laura\AppData\Local\Temp\Low
C:\Users\Laura\AppData\Local\Temp\MicroThemePackDir
C:\Users\Laura\AppData\Local\Temp\msdt
C:\Users\Laura\AppData\Local\Temp\msdtadmin
C:\Users\Laura\AppData\Local\Temp\MSI267ee.LOG
C:\Users\Laura\AppData\Local\Temp\MSIb1174.LOG
C:\Users\Laura\AppData\Local\Temp\MSIf0ff5.LOG
C:\Users\Laura\AppData\Local\Temp\msohtmlclip
C:\Users\Laura\AppData\Local\Temp\OfficeSetup.exe
C:\Users\Laura\AppData\Local\Temp\OOBE(201306081434563038).log
C:\Users\Laura\AppData\Local\Temp\OOBE(201306081451007E4C).log
C:\Users\Laura\AppData\Local\Temp\ood_stream.x86.fr-fr.dat
C:\Users\Laura\AppData\Local\Temp\ood_stream.x86.fr-fr.dat_15.0.4505.1006.txt
C:\Users\Laura\AppData\Local\Temp\PDFCreatorUninstall.txt
C:\Users\Laura\AppData\Local\Temp\plugtmp
C:\Users\Laura\AppData\Local\Temp\plugtmp-1
C:\Users\Laura\AppData\Local\Temp\plugtmp-10
C:\Users\Laura\AppData\Local\Temp\plugtmp-11
C:\Users\Laura\AppData\Local\Temp\plugtmp-2
C:\Users\Laura\AppData\Local\Temp\plugtmp-3
C:\Users\Laura\AppData\Local\Temp\plugtmp-4
C:\Users\Laura\AppData\Local\Temp\plugtmp-5
C:\Users\Laura\AppData\Local\Temp\plugtmp-6
C:\Users\Laura\AppData\Local\Temp\plugtmp-7
C:\Users\Laura\AppData\Local\Temp\plugtmp-8
C:\Users\Laura\AppData\Local\Temp\plugtmp-9
C:\Users\Laura\AppData\Local\Temp\Plus-HD-3.5Installer_1385246534.log
C:\Users\Laura\AppData\Local\Temp\Quarantine.exe
C:\Users\Laura\AppData\Local\Temp\Report.ico
C:\Users\Laura\AppData\Local\Temp\RoamingLogs.PC_DE_KOWINSKY-2013-06-02T063342.zip
C:\Users\Laura\AppData\Local\Temp\Scan.ico
C:\Users\Laura\AppData\Local\Temp\SDIAG_0eeae62b-da75-4ff4-a6ab-e91775c6415f
C:\Users\Laura\AppData\Local\Temp\SDIAG_1da23535-c3f3-42c1-9edf-979ac9d862d4
C:\Users\Laura\AppData\Local\Temp\SDIAG_22c95356-bb21-4b1d-a843-adf94e204a29
C:\Users\Laura\AppData\Local\Temp\SDIAG_2a96a33a-2c9b-42b1-8d2a-2d1bb83b4bca
C:\Users\Laura\AppData\Local\Temp\SDIAG_2badc1b9-2b8b-4c0d-bd6c-ba9f9af41862
C:\Users\Laura\AppData\Local\Temp\SDIAG_39124149-6845-43ef-ba84-6c203f7b56cc
C:\Users\Laura\AppData\Local\Temp\SDIAG_3ec8e92f-0f4c-4bf5-98f3-6f9896a302ce
C:\Users\Laura\AppData\Local\Temp\SDIAG_410973cd-a10e-4612-bd30-0dd4d490367a
C:\Users\Laura\AppData\Local\Temp\SDIAG_4455c20e-a9f6-4323-b5ce-36d199b53de6
C:\Users\Laura\AppData\Local\Temp\SDIAG_54f0ba47-6bfd-44c9-8d42-a8a20825d21f
C:\Users\Laura\AppData\Local\Temp\SDIAG_58296cda-696e-4360-bcc3-0e1544feaf88
C:\Users\Laura\AppData\Local\Temp\SDIAG_5a56b450-220b-4f19-a486-5113410eae99
C:\Users\Laura\AppData\Local\Temp\SDIAG_6e258d1a-ecb5-4ff8-aa5d-6904cccf358d
C:\Users\Laura\AppData\Local\Temp\SDIAG_abc87f47-05c1-4f55-842b-df482c3a7a77
C:\Users\Laura\AppData\Local\Temp\SDIAG_d0a36543-3bf3-4fa9-8a82-b1b04daeb422
C:\Users\Laura\AppData\Local\Temp\SDIAG_e76906d2-b99f-4d27-bd07-c6648cb40169
C:\Users\Laura\AppData\Local\Temp\SDIAG_f310bc95-1ed3-4796-a3d7-748262eae7ea
C:\Users\Laura\AppData\Local\Temp\SetupAdmin1F38.log
C:\Users\Laura\AppData\Local\Temp\SetupExe(20131123205848B4C).log
C:\Users\Laura\AppData\Local\Temp\SHSetup.exe
C:\Users\Laura\AppData\Local\Temp\SP60051.exe
C:\Users\Laura\AppData\Local\Temp\SP61037.exe
C:\Users\Laura\AppData\Local\Temp\SP61101.exe
C:\Users\Laura\AppData\Local\Temp\SP61306.exe
C:\Users\Laura\AppData\Local\Temp\SP61632.exe
C:\Users\Laura\AppData\Local\Temp\SP62194.exe
C:\Users\Laura\AppData\Local\Temp\SP62218.exe
C:\Users\Laura\AppData\Local\Temp\SP62364.exe
C:\Users\Laura\AppData\Local\Temp\SP62405.exe
C:\Users\Laura\AppData\Local\Temp\SP62765.exe
C:\Users\Laura\AppData\Local\Temp\SP63340.exe
C:\Users\Laura\AppData\Local\Temp\SP63752.exe
C:\Users\Laura\AppData\Local\Temp\StructuredQuery.log
C:\Users\Laura\AppData\Local\Temp\SymCCISDll.txt
C:\Users\Laura\AppData\Local\Temp\TCD2798.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3BB8.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3BB9.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3BBA.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3BBB.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3BCB.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3BEC.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3C1D.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3C2F.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3EA2.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3EB4.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3ED5.tmp
C:\Users\Laura\AppData\Local\Temp\TCD3EF6.tmp
C:\Users\Laura\AppData\Local\Temp\TCD416B.tmp
C:\Users\Laura\AppData\Local\Temp\TCD416D.tmp
C:\Users\Laura\AppData\Local\Temp\TCD417F.tmp
C:\Users\Laura\AppData\Local\Temp\TCD41A0.tmp
C:\Users\Laura\AppData\Local\Temp\TCD421F.tmp
C:\Users\Laura\AppData\Local\Temp\TCD4241.tmp
C:\Users\Laura\AppData\Local\Temp\TCD4262.tmp
C:\Users\Laura\AppData\Local\Temp\TCD4283.tmp
C:\Users\Laura\AppData\Local\Temp\TCD4285.tmp
C:\Users\Laura\AppData\Local\Temp\TCD4297.tmp
C:\Users\Laura\AppData\Local\Temp\TCD42A8.tmp
C:\Users\Laura\AppData\Local\Temp\TCD4942.tmp
C:\Users\Laura\AppData\Local\Temp\TCD514A.tmp
C:\Users\Laura\AppData\Local\Temp\TCD5153.tmp
C:\Users\Laura\AppData\Local\Temp\TCD53DC.tmp
C:\Users\Laura\AppData\Local\Temp\TCD5A35.tmp
C:\Users\Laura\AppData\Local\Temp\TCD6971.tmp
C:\Users\Laura\AppData\Local\Temp\TCD6A28.tmp
C:\Users\Laura\AppData\Local\Temp\TCD6FE7.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7151.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7152.tmp
C:\Users\Laura\AppData\Local\Temp\TCD729D.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72BB.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72BF.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72C0.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72CC.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72D1.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72D4.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72E6.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72E7.tmp
C:\Users\Laura\AppData\Local\Temp\TCD72FA.tmp
C:\Users\Laura\AppData\Local\Temp\TCD730A.tmp
C:\Users\Laura\AppData\Local\Temp\TCD730C.tmp
C:\Users\Laura\AppData\Local\Temp\TCD734D.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7360.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7361.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7362.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7375.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7377.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7388.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7399.tmp
C:\Users\Laura\AppData\Local\Temp\TCD73AB.tmp
C:\Users\Laura\AppData\Local\Temp\TCD76CA.tmp
C:\Users\Laura\AppData\Local\Temp\TCD76FB.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7874.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7C4E.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7EC1.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7F02.tmp
C:\Users\Laura\AppData\Local\Temp\TCD7F52.tmp
C:\Users\Laura\AppData\Local\Temp\TCD84E2.tmp
C:\Users\Laura\AppData\Local\Temp\TCD8E57.tmp
C:\Users\Laura\AppData\Local\Temp\TCD900A.tmp
C:\Users\Laura\AppData\Local\Temp\TCD9186.tmp
C:\Users\Laura\AppData\Local\Temp\TCD9619.tmp
C:\Users\Laura\AppData\Local\Temp\TCDA3B.tmp
C:\Users\Laura\AppData\Local\Temp\TCDA579.tmp
C:\Users\Laura\AppData\Local\Temp\TCDB1B0.tmp
C:\Users\Laura\AppData\Local\Temp\TCDD029.tmp
C:\Users\Laura\AppData\Local\Temp\TCDD2C7.tmp
C:\Users\Laura\AppData\Local\Temp\TCDD72C.tmp
C:\Users\Laura\AppData\Local\Temp\TCDE0C3.tmp
C:\Users\Laura\AppData\Local\Temp\TCDEA6A.tmp
C:\Users\Laura\AppData\Local\Temp\TCDECDD.tmp
C:\Users\Laura\AppData\Local\Temp\TCDF024.tmp
C:\Users\Laura\AppData\Local\Temp\TCDF46C.tmp
C:\Users\Laura\AppData\Local\Temp\Temporary PDF Files
C:\Users\Laura\AppData\Local\Temp\tmp85531.WMC
C:\Users\Laura\AppData\Local\Temp\uninst1.exe
C:\Users\Laura\AppData\Local\Temp\Uninstall.ico
C:\Users\Laura\AppData\Local\Temp\VBE
C:\Users\Laura\AppData\Local\Temp\VSD552F.tmp
C:\Users\Laura\AppData\Local\Temp\VSDF562.tmp
C:\Users\Laura\AppData\Local\Temp\winstore.log
C:\Users\Laura\AppData\Local\Temp\wlsF70E.tmp
C:\Users\Laura\AppData\Local\Temp\wlsF98F.tmp
C:\Users\Laura\AppData\Local\Temp\WMIBios.inf
C:\Users\Laura\AppData\Local\Temp\wmplog00.sqm
C:\Users\Laura\AppData\Local\Temp\wmsetup.log
C:\Users\Laura\AppData\Local\Temp\{D3749624-1E2C-4CAE-877C-ADBC8B055684}
C:\Users\Laura\AppData\Local\Temp\{FF9E8D9C-9FCC-4ABA-9254-169721089A20}
C:\Users\Laura\AppData\Local\Temp\~bt489B.tmp
C:\Users\Laura\AppData\Local\Temp\~bt4DFF.tmp
C:\Users\Laura\AppData\Local\Temp\~bt62BA.tmp
C:\Users\Laura\AppData\Local\Temp\~bt69B3.tmp
C:\Users\Laura\AppData\Local\Temp\~bt779D.tmp
C:\Users\Laura\AppData\Local\Temp\~bt8651.tmp
C:\Users\Laura\AppData\Local\Temp\~bt8F4F.tmp
C:\Users\Laura\AppData\Local\Temp\~bt92EE.tmp
C:\Users\Laura\AppData\Local\Temp\~bt941E.tmp
C:\Users\Laura\AppData\Local\Temp\~bt97C5.tmp
C:\Users\Laura\AppData\Local\Temp\~bt9BF6.tmp
C:\Users\Laura\AppData\Local\Temp\~btC48D.tmp
C:\Users\Laura\AppData\Local\Temp\~btC769.tmp
C:\Users\Laura\AppData\Local\Temp\~btC87A.tmp
C:\Users\Laura\AppData\Local\Temp\~btEB6F.tmp
C:\Users\Laura\AppData\Local\Temp\~DF18EAFD548BF0FA03.TMP
C:\Users\Laura\AppData\Local\Temp\~DF1DE5749C700AC7ED.TMP
C:\Users\Laura\AppData\Local\Temp\~DF217B459729C36387.TMP
C:\Users\Laura\AppData\Local\Temp\~DF3E4E700AC2400C98.TMP
C:\Users\Laura\AppData\Local\Temp\~DF7EB7EE30CB4466E8.TMP
C:\Users\Laura\AppData\Local\Temp\~DF91D98FFC374DE0E7.TMP
C:\Users\Laura\AppData\Local\Temp\~DFA157572E308D589A.TMP
C:\Users\Laura\AppData\Local\Temp\~DFA517EE6EB88C8249.TMP
C:\Users\Laura\AppData\Local\Temp\~DFC0D166E8C760046D.TMP
C:\Users\Laura\AppData\Local\Temp\~DFDFF36743EBB7FA11.TMP
C:\Users\Laura\AppData\Local\Temp\~DFEDFFC3C22BFCA0DE.TMP
C:\Users\Laura\AppData\Local\Temp\~fm209B.tmp
C:\Users\Laura\AppData\Local\Temp\~fm4899.tmp
C:\Users\Laura\AppData\Local\Temp\~fm4911.tmp
C:\Users\Laura\AppData\Local\Temp\~fm4DFD.tmp
C:\Users\Laura\AppData\Local\Temp\~fm57C6.tmp
C:\Users\Laura\AppData\Local\Temp\~fm5DB4.tmp
C:\Users\Laura\AppData\Local\Temp\~fm6252.tmp
C:\Users\Laura\AppData\Local\Temp\~fm62B8.tmp
C:\Users\Laura\AppData\Local\Temp\~fm62C8.tmp
C:\Users\Laura\AppData\Local\Temp\~fm69B1.tmp
C:\Users\Laura\AppData\Local\Temp\~fm7055.tmp
C:\Users\Laura\AppData\Local\Temp\~fm779B.tmp
C:\Users\Laura\AppData\Local\Temp\~fm7B3A.tmp
C:\Users\Laura\AppData\Local\Temp\~fm7BC8.tmp
C:\Users\Laura\AppData\Local\Temp\~fm7FB2.tmp
C:\Users\Laura\AppData\Local\Temp\~fm82F1.tmp
C:\Users\Laura\AppData\Local\Temp\~fm864F.tmp
C:\Users\Laura\AppData\Local\Temp\~fm866A.tmp
C:\Users\Laura\AppData\Local\Temp\~fm8B7E.tmp
C:\Users\Laura\AppData\Local\Temp\~fm8F4D.tmp
C:\Users\Laura\AppData\Local\Temp\~fm92EC.tmp
C:\Users\Laura\AppData\Local\Temp\~fm941C.tmp
C:\Users\Laura\AppData\Local\Temp\~fm96A2.tmp
C:\Users\Laura\AppData\Local\Temp\~fm97C3.tmp
C:\Users\Laura\AppData\Local\Temp\~fm9BB0.tmp
C:\Users\Laura\AppData\Local\Temp\~fm9BF4.tmp
C:\Users\Laura\AppData\Local\Temp\~fm9EE0.tmp
C:\Users\Laura\AppData\Local\Temp\~fmA3B9.tmp
C:\Users\Laura\AppData\Local\Temp\~fmA64D.tmp
C:\Users\Laura\AppData\Local\Temp\~fmA6FB.tmp
C:\Users\Laura\AppData\Local\Temp\~fmBC0A.tmp
C:\Users\Laura\AppData\Local\Temp\~fmC47C.tmp
C:\Users\Laura\AppData\Local\Temp\~fmC767.tmp
C:\Users\Laura\AppData\Local\Temp\~fmC869.tmp
C:\Users\Laura\AppData\Local\Temp\~fmDACD.tmp
C:\Users\Laura\AppData\Local\Temp\~fmDDBE.tmp
C:\Users\Laura\AppData\Local\Temp\~fmEB6D.tmp
C:\Users\Laura\AppData\Local\Temp\~ft209A.tmp
C:\Users\Laura\AppData\Local\Temp\~ft4898.tmp
C:\Users\Laura\AppData\Local\Temp\~ft4910.tmp
C:\Users\Laura\AppData\Local\Temp\~ft4DFC.tmp
C:\Users\Laura\AppData\Local\Temp\~ft57C5.tmp
C:\Users\Laura\AppData\Local\Temp\~ft5DB3.tmp
C:\Users\Laura\AppData\Local\Temp\~ft6251.tmp
C:\Users\Laura\AppData\Local\Temp\~ft62B7.tmp
C:\Users\Laura\AppData\Local\Temp\~ft62C7.tmp
C:\Users\Laura\AppData\Local\Temp\~ft69B0.tmp
C:\Users\Laura\AppData\Local\Temp\~ft7054.tmp
C:\Users\Laura\AppData\Local\Temp\~ft779A.tmp
C:\Users\Laura\AppData\Local\Temp\~ft7B39.tmp
C:\Users\Laura\AppData\Local\Temp\~ft7BC7.tmp
C:\Users\Laura\AppData\Local\Temp\~ft7FB1.tmp
C:\Users\Laura\AppData\Local\Temp\~ft82F0.tmp
C:\Users\Laura\AppData\Local\Temp\~ft864E.tmp
C:\Users\Laura\AppData\Local\Temp\~ft8669.tmp
C:\Users\Laura\AppData\Local\Temp\~ft8B7D.tmp
C:\Users\Laura\AppData\Local\Temp\~ft8F4C.tmp
C:\Users\Laura\AppData\Local\Temp\~ft92EB.tmp
C:\Users\Laura\AppData\Local\Temp\~ft941B.tmp
C:\Users\Laura\AppData\Local\Temp\~ft96A1.tmp
C:\Users\Laura\AppData\Local\Temp\~ft97C2.tmp
C:\Users\Laura\AppData\Local\Temp\~ft9BAF.tmp
C:\Users\Laura\AppData\Local\Temp\~ft9BF3.tmp
C:\Users\Laura\AppData\Local\Temp\~ft9EDF.tmp
C:\Users\Laura\AppData\Local\Temp\~ftA3B8.tmp
C:\Users\Laura\AppData\Local\Temp\~ftA63C.tmp
C:\Users\Laura\AppData\Local\Temp\~ftA6FA.tmp
C:\Users\Laura\AppData\Local\Temp\~ftBC09.tmp
C:\Users\Laura\AppData\Local\Temp\~ftC47B.tmp
C:\Users\Laura\AppData\Local\Temp\~ftC766.tmp
C:\Users\Laura\AppData\Local\Temp\~ftC868.tmp
C:\Users\Laura\AppData\Local\Temp\~ftDACC.tmp
C:\Users\Laura\AppData\Local\Temp\~ftDDBD.tmp
C:\Users\Laura\AppData\Local\Temp\~ftEB6C.tmp
C:\Users\Laura\AppData\Local\Temp\~hm2099.tmp
C:\Users\Laura\AppData\Local\Temp\~hm4897.tmp
C:\Users\Laura\AppData\Local\Temp\~hm490F.tmp
C:\Users\Laura\AppData\Local\Temp\~hm4DEB.tmp
C:\Users\Laura\
0
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
2 déc. 2013 à 22:28
Re,

Fais un diagnostic de ton PC avec ZHPDiag et poste le rapport hébergé : http://www.forum-entraide-informatique.com/support/zhpdiag-tutoriel-t4831.html

Gabriel.
0
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013
2 déc. 2013 à 22:37
C'est fait!!!

Le rapport:

~ Rapport de ZHPDiag v2013.12.1.4 - Nicolas Coolman (01/12/2013)
~ Lancé par Laura (02/12/2013 22:33:04)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Forums gratuits d'Assistance à la désinfection : https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16736
MFIE: Mozilla Firefox 25.0.1 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : 78MQ6
Windows License : OK
~ Windows Remaining Initializations Number : 998
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Norton Internet Security v20.4.0.40
McAfee Security Scan Plus v3.0.285.6
Windows Defender W8

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin

---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 6036 MB (70% free)
System Restore: Activé (Enable)
System drive C: has 616 GB (91%) free of 676 GB

---\\ Mode de connexion au système
~ Computer Name: PC_DE_KOWINSKY
~ User Name: Laura
~ All Users Names: Laura, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Laura\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Laura\AppData\Roaming\
~ %Desktop% : C:\Users\Laura\Desktop\
~ %Favorites% : C:\Users\Laura\Favorites\
~ %LocalAppData% : C:\Users\Laura\AppData\Local\
~ %StartMenu% : C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 616 Go of 676 Go)
D: Hard drive, Flash drive, Thumb drive (Free 3 Go of 22 Go)
E: CD-ROM drive (Not Inserted)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 49 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.0E8E6463F81C80AFBED533E0F1F8895D] - (.Microsoft Corporation - Explorateur Windows.) (.01/06/2013 - 12:34:21.) -- C:\Windows\Explorer.exe [2391280]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9706C99DAEBE3FEAC811B239617E98C4] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.12/10/2013 - 09:45:20.) -- C:\Windows\System32\wininet.dll [2241536]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.7C0E0EDF18D6CC565D7BFBB451709FA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.04/09/2013 - 04:11:23.) -- C:\Windows\system32\Drivers\AFD.sys [576512]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.01/11/2012 - 19:23:08.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.78A5BBA3819FFFC62FFEC3E2220D102D] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.01/06/2013 - 12:26:33.) -- C:\Windows\system32\Drivers\volsnap.sys [327936]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/3155
~ Mes musiques (My Musics) : 1/99
~ Mes Favoris (My Favorites) : 1/11
~ Mes Documents (My Documents) : 1/2184
~ Mon Bureau (My Desktop) : 2/40
~ Menu demarrer (Programs) : 1/21
~ Hidden Files: Scanned in 00mn 07s



---\\ Processus lancés
[MD5.A2C1288BD3DEDE03B2327E5972678C2E] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe [271808] [PID.936]
[MD5.B7F55E2AE978D3D34F7876EE5D689AAE] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.4272]
[MD5.A2221900B57AEC20577996744FA4A56A] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296] [PID.4280]
[MD5.724CB7A116F7E1A67009D751BCF86586] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120] [PID.4288]
[MD5.D1C8B0DC04347B6B9B5B3B9204DF6756] - (.Hewlett-Packard Development Company, L.P. - HP CoolSense.) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904] [PID.4300]
[MD5.6198A9BC15ED77F318D5DDD1918CF1D1] - (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [581024] [PID.4328]
[MD5.A9F9D081518AC03A51C1195986076F42] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.4400]
[MD5.077D59BA0FD4007E841B6C670862B065] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [275568] [PID.4268]
[MD5.1BF9D6476061B31CD7FC2BF848529A56] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368] [PID.3600]
[MD5.3E02FD57FDAF184A15CCAD9D9BD9C626] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8263680] [PID.1536]
~ Processes Running: Scanned in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\7oekn7mq.default\prefs.js
M2 - MFEP: prefs.js [Laura - 7oekn7mq.default\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}] [dwhelper] DownloadHelper v4.9.21 (..)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll
~ Firefox Browser: 2 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.google.com/?gws_rd=ssl
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16384 (win8_rtm.120725-1247)) -- C:\Windows\SysWOW64\ieframe.dll
~ IE Browser: 12 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Norton Identity Protection [64Bits] - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection [64Bits] - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (.Symantec Corporation - IPS Browser Helper DLL.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.dll
O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
~ BHO: 4 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Connected Music powered by Universal Music Group.lnk . (...) -- C:\Program Files (x86)\Connected Music powered by Universal Music Group\Connected Music powered by Universal Music Group.exe
O4 - GS\Desktop [Public]: HP Games.lnk . (.WildTangent - WildTangent Games App.) -- C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe
O4 - GS\Desktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe
O4 - GS\Desktop [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee.) -- C:\Program Files (x86)\McAfee Security Scan\3.0.285\mcuicnt.exe
O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Public]: Norton Internet Security.lnk . (.Symantec Corporation - Norton Protection Center UI Stub.) -- C:\Program Files (x86)\Norton Internet Security\Engine64\20.4.0.40\uistub.exe
O4 - GS\Desktop [Public]: Photos Snapfish.lnk . (...) -- C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe
O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc
O4 - GS\Program [Public]: Browser Choice.lnk . (...) -- C:\Windows\BrowserChoice\html\default.html
O4 - GS\Program [Public]: Connected Music powered by Meridian.lnk . (.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
O4 - GS\Program [Public]: Connected Music powered by Universal Music Group.lnk . (...) -- C:\Program Files (x86)\Connected Music powered by Universal Music Group\Connected Music powered by Universal Music Group.exe
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Store.lnk . (...) -- C:\Windows\WinStore\WinStore.htm
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (...) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe (.not file.)
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d'écran.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d'actions.) -- C:\Windows\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [Laura]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [Laura]: CyberLink YouCam.lnk . (.CyberLink Corp. - YouCam.) -- C:\Program Files (x86)\CyberLink\YouCam\Youcam_webcam_camera_video.exe
O4 - GS\TaskBar [Laura]: File Explorer.lnk . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [Laura]: HP Utility Center.lnk . (.Hewlett-Packard Development Company, L.P. - HP Utility Center.) -- C:\HP\Data\HPUC\HPPU.exe
O4 - GS\TaskBar [Laura]: HPConnectedRemoteMgmtUI.lnk . (.Hewlett-Packard - HPConnectedRemoteMgmtUI.) -- C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteMgmtUI.exe
O4 - GS\TaskBar [Laura]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Program [Laura]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Program [Laura]: SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation
O4 - GS\Accessories [Laura]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\SendTo [Laura]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\Desktop [Laura]: iexplore - Raccourci.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Laura]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [Laura]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
~ Global Startup: 44 Scanned in 00mn 01s



---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKLM\..\RunOnce: [NCPluginUpdater] . (.Hewlett-Packard - NCPluginUpdater.) -- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc
O4 - HKLM\..\Wow6432Node\Run: [CLVirtualDrive] . (.CyberLink Corp. - CyberLink Virtual Drive.) -- C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
O4 - HKLM\..\Wow6432Node\Run: [HP Quick Launch] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKUS\S-1-5-21-3229452069-3979555227-4104287253-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-3229452069-3979555227-4104287253-1001\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 [64Bits] - {25510184-5A38-4A99-B273-DCA8EEF6CD08} . (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\Resources\Icons\HP.ico
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
~ Winsock: 7 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{3AA76C55-00C5-475B-844E-1E7FBB94A82B}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{C67798A4-E4B5-4CCE-BFB3-6B3D6E5FE584}: DhcpDomain = D1-Line.COM
O17 - HKLM\System\CS1\Services\Tcpip\..\{3AA76C55-00C5-475B-844E-1E7FBB94A82B}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{C67798A4-E4B5-4CCE-BFB3-6B3D6E5FE584}: DhcpDomain = D1-Line.COM
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) --
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Co
O23 - Service: HP Connected Remote Service (HPConnectedRemote) . (.Hewlett-Packard - HPConnectedRemoteService.) - C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
O23 - Service: oem19.inf (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\Windows\System32\Hpservice.exe
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
~ Services: 18 Scanned in 00mn 04s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForLaura.job [362]
[MD5.438F31336B3DC248ABC632F1C8F34A24] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [257416]
[MD5.724CB7A116F7E1A67009D751BCF86586] [APT] [CLMLSvc_P2G8] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120]
[MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForLaura] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [91704]
[MD5.B7F55E2AE978D3D34F7876EE5D689AAE] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488]
[MD5.C66557728011B83C4FFAE7DD022F99DA] [APT] [Norton WSC Integration] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\WSCStub.exe [163944]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984]
[MD5.D1C8B0DC04347B6B9B5B3B9204DF6756] [APT] [HP CoolSense Start at Logon] (.Hewlett-Packard Development Company, L.P..) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904]
[MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [525728]
[MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [525728]
[MD5.DDFD05786536EF7AA540CC490A9DE3CE] [APT] [Update Check] (.Hewlett-Packard Company.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [592288]
[MD5.ECF92BCD708FF6E52F000EF7A2A84099] [APT] [WarrantyChecker_DeviceScan] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1584856]
[MD5.7720251986778B402978761589434491] [APT] [Norton Error Analyzer] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [54096]
[MD5.7720251986778B402978761589434491] [APT] [Norton Error Processor] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [54096]
~ Scheduled Task: 15 Scanned in 00mn 09s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll
~ Active Setup: 9 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys
O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys
O41 - Driver: (BHDrvx64) . (.Symantec Corporation - BASH Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\BASHDefs\20130715.001\BHDrvx64.sys
O41 - Driver: (ccSet_NIS) . (.Symantec Corporation - Common Client Settings Driver.) - C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys
O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: (CLVirtualDrive) . (.CyberLink - It is a virtual device driver which could c.) - C:\Windows\system32\DRIVERS\CLVirtualDrive.sys
O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (IDSVia64) . (.Symantec Corporation - IDS Core Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\IPSDefs\20130801.001\IDSvia64.sys
O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (SRTSPX) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.sys
O41 - Driver: (SymIRON) . (.Symantec Corporation - Iron Driver.) - C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.sys
O41 - Driver: (SymNetS) . (.Symantec Corporation - Network Security Driver.) - C:\Windows\system32\Drivers\NISx64\1404000.028\SYMNETS.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: C:\Windows\System32\drivers\vwififlt.sys (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys
~ Drivers: 48 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8D6CCB94-05E3-753A-5ED7-97495EA8AEFF}
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player
O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-3ee67621-9f95-461b-81a0-5c73c9231394
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2F72F540-1F60-4266-9506-952B21D6640D}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-c89f6235-89eb-4b4f-9fc8-abcdcb307668
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Build-a-lot 4 - Power Source - (.WildTangent.) [HKLM][64Bits] -- WTA-414d59eb-2f3a-4696-8176-14839085236b
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {925652DC-D377-41CC-B97E-B0979B4F534D}
O42 - Logiciel: Connected Music powered by Universal Music Group version 1.0 - (.Snowite.) [HKLM][64Bits] -- {46037DC7-F927-46DF-935F-D6F122BDD34B}_is1
O42 - Logiciel: Cradle of Rome 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-08a3c5f7-4ae7-40d1-a99e-978dd9688bad
O42 - Logiciel: Crazy Chicken Soccer - (.WildTangent.) [HKLM][64Bits] -- WTA-3cfc7398-a6e6-40a6-9700-56e256b58898
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}
O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {4862344A-A39C-4897-ACD4-A1BED5163C5A}
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Energy Star - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}
O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WTA-4425a1d0-aa13-4f68-bee0-a310fcef5b82
O42 - Logiciel: Final Drive Fury - (.WildTangent.) [HKLM][64Bits] -- WTA-faca1c72-de37-480e-b722-2f38c2368c5a
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {FE8DFDD0-A543-4A83-B7A9-C411138194D5}
O42 - Logiciel: Gardenscapes: Mansion Makeover - (.WildTangent.) [HKLM][64Bits] -- WTA-fb6d921a-ad3b-4c73-b149-48b4b6d5af3c
O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-0875d7ac-1d93-4037-9e5b-c04a548e01ed
O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {F9E399CB-046F-45FD-A67F-CF399E2128E4}
O42 - Logiciel: HP Connected Music (Meridian - installer) - (.Meridian Audio Ltd.) [HKLM][64Bits] -- StartHPConnectedMusic
O42 - Logiciel: HP Connected Remote - (.Hewlett-Packard.) [HKLM][64Bits] -- {F243A34B-AB7F-4065-B770-B85B767C247C}
O42 - Logiciel: HP CoolSense - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {59F8C5AA-91BD-423D-BF05-09A80F39898F}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544}
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {A2E95309-79F3-41E5-94C7-6D7FD6D7BBC3}
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall
O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD}
O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E5823036-6F09-4D0A-B05C-E2BAA129288A}
O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {528AB81B-D65A-4AB0-A2B6-82B51A087D01}
O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {C2E428EB-116E-41C0-9E84-B22DE9CCA42F}
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} =>.Hewlett-Packard Co
O42 - Logiciel: HP Utility Center - (.Hewlett-Packard.) [HKLM][64Bits] -- {0C57987A-A03A-4B95-A309-D23F78F406CA}
O42 - Logiciel: HP Wireless Button Driver - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {30B2D1D8-0A07-4B71-9553-0710C5D31E35}
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Display Audio Driver - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
O42 - Logiciel: Jeux WildTangent - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall
O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-6c5a7648-a797-4872-a916-134867158ef0
O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WTA-63935148-7026-4bde-85c9-bfa65905b611
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {F842F8B0-6942-4930-821F-543E976B2C66}
O42 - Logiciel: Mahjongg Artifacts - (.WildTangent.) [HKLM][64Bits] -- WTA-2da3abf5-d545-4b80-aae5-4910b3e31556
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan
O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- SkyDriveSetup.exe =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 25.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 25.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: Mystery of Mortlake Mansion - (.WildTangent.) [HKLM][64Bits] -- WTA-6641ee60-ced4-458a-ae30-46af7c9697a6
O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM][64Bits] -- NIS
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-df387fb2-1f50-4dc9-af6e-fc9f5e2e69b3
O42 - Logiciel: Ralink RT5390R 802.11bgn Wi-Fi Adapter - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}
O42 - Logiciel: Ranch Rush 2 - Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-9b222ecb-57d8-43a7-afc9-e03a07be2dd5
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C}
O42 - Logiciel: Royal Envoy 2 Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-186a8eed-ec81-4934-85e8-d7a55a729632
O42 - Logiciel: Skype(TM) 6.3 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-d980e6bb-b607-4025-ac2f-aab18186539c
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App
O42 - Logiciel: Virtual Families - (.WildTangent.) [HKLM][64Bits] -- WTA-81d3fea5-368b-46be-b681-9a36b4a709f1
O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WTA-3cfe683e-5b66-48dc-97f5-8a1ea5ad7c50
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp
O42 - Logiciel: Youda Jewel Shop - (.WildTangent.) [HKLM][64Bits] -- WTA-d251910b-c2e2-45bc-b937-3c67f11cb02e
O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-589ad0b1-d52f-42ce-bf48-35a6a8d9e97f
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {76FF0F03-B707-4332-B5D1-A56C8303514E}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
~ Logic: 70 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\ATI]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\Dnldstr_Aggregator]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\IM Providers]
[HKCU\Software\Intel]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\Mine]
[HKCU\Software\Netscape]
[HKCU\Software\Norton]
[HKCU\Software\ODBC]
[HKCU\Software\PDF Architect]
[HKCU\Software\Policies]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\Skype]
[HKCU\Software\Synaptics]
[HKCU\Software\TeleCharger]
[HKCU\Software\TeleCharger_v2]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\mozilla]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\CyberLink]
[HKLM\Software\Dolby]
[HKLM\Software\EnigmaSoftwareGroup]
[HKLM\Software\GEAR Software]
[HKLM\Software\HPQ]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IDT]
[HKLM\Software\IM Providers]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Norton]
[HKLM\Software\ODBC]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\Wow6432Node\ATI Technologies]
[HKLM\Software\Wow6432Node\ATI]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\AppDataLow]
[HKLM\Software\Wow6432Node\Apple Computer, Inc.]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\Caphyon]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\Hewlett-Packard]
[HKLM\Software\Wow6432Node\IDT]
[HKLM\Software\Wow6432Node\IM Providers]
[HKLM\Software\Wow6432Node\Insyde]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Lake]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\McAfee.com]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\Norton]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Ralink]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Skype]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\WildTangent]
[HKLM\Software\Wow6432Node\mcafeeupdater]
[HKLM\Software\Wow6432Node\mozilla.org]
[HKLM\Software\Wow6432Node]
~ Key Software: 253 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 28/12/2012 - 19:18:19 - [2,145] ----D C:\Program Files (x86)\AMD APP
O43 - CFD: 28/07/2013 - 17:31:00 - [2,316] ----D C:\Program Files (x86)\Apple Software Update =>.Apple Inc
O43 - CFD: 28/12/2012 - 19:18:12 - [58,794] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 28/12/2012 - 19:24:31 - [0,602] ----D C:\Program Files (x86)\Bonjour
O43 - CFD: 01/12/2013 - 22:29:14 - [444,584] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 01/11/2012 - 10:57:09 - [2,557] ----D C:\Program Files (x86)\Connected Music powered by Universal Music Group
O43 - CFD: 13/11/2013 - 08:03:17 - [-1362,308] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 13/11/2013 - 08:04:57 - [405,945] ----D C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 01/11/2012 - 11:06:55 - [698,901] ----D C:\Program Files (x86)\HP Games
O43 - CFD: 01/11/2012 - 10:57:03 - [0,720] ----D C:\Program Files (x86)\HPConnectedMusic
O43 - CFD: 28/12/2012 - 19:41:12 - [178,135] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 28/12/2012 - 19:21:38 - [41,376] ----D C:\Program Files (x86)\Intel
O43 - CFD: 15/11/2013 - 20:35:41 - [4,623] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 28/07/2013 - 17:32:45 - [155,998] ----D C:\Program Files (x86)\iTunes
O43 - CFD: 30/11/2013 - 22:05:12 - [2,647] ----D C:\Program Files (x86)\McAfee Security Scan
O43 - CFD: 23/11/2013 - 21:07:06 - [553,152] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 01/11/2012 - 10:53:17 - [5,306] ----D C:\Program Files (x86)\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 01/11/2012 - 10:53:50 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 23/11/2013 - 21:02:54 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 23/11/2013 - 21:00:31 - [1,323] ----D C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 24/11/2013 - 10:39:14 - [3,554] ----D C:\Program Files (x86)\Microsoft Works
O43 - CFD: 08/06/2013 - 14:15:38 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 16/11/2013 - 13:04:48 - [49,816] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 30/11/2013 - 21:56:58 - [0,216] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 23/11/2013 - 21:03:05 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 28/12/2012 - 19:46:46 - [367,931] ----D C:\Program Files (x86)\Norton Internet Security
O43 - CFD: 28/12/2012 - 19:46:00 - [20,860] ----D C:\Program Files (x86)\NortonInstaller
O43 - CFD: 01/06/2013 - 17:31:50 - [1,563] R---D C:\Program Files (x86)\Online Services
O43 - CFD: 28/12/2012 - 19:23:33 - [30,560] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 03/08/2012 - 23:37:58 - [36,536] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 10/06/2013 - 18:01:44 - [18,031] R---D C:\Program Files (x86)\Skype
O43 - CFD: 28/12/2012 - 19:47:38 - [2,444] ----D C:\Program Files (x86)\SymSilent
O43 - CFD: 01/11/2012 - 11:06:47 - [66,181] ----D C:\Program Files (x86)\WildGames
O43 - CFD: 24/11/2013 - 18:10:40 - [33,225] ----D C:\Program Files (x86)\WildTangent Games
O43 - CFD: 18/08/2013 - 12:26:20 - [1,038] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 01/11/2012 - 10:53:49 - [86,758] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 01/11/2012 - 19:13:42 - [5,466] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 01/11/2012 - 19:24:03 - [3,494] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 26/07/2012 - 09:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 26/07/2012 - 09:12:59 - [7,243] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 15/06/2013 - 20:01:34 - [5,226] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 26/07/2012 - 09:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 26/07/2012 - 09:12:59 - [0] -SH-D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 02/12/2013 - 22:32:09 - [17,184] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 28/07/2013 - 17:31:45 - [100,035] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 28/12/2012 - 19:38:02 - [0,091] ----D C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 23/11/2013 - 21:07:25 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 28/12/2012 - 19:18:33 - [13,439] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 28/12/2012 - 19:31:39 - [0,170] ----D C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 24/11/2013 - 10:39:26 - [240,888] ----D C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 01/11/2012 - 10:46:36 - [1,416] ----D C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 01/12/2013 - 22:29:14 - [0] ----D C:\Program Files (x86)\Common Files\PDF Architect
O43 - CFD: 28/12/2012 - 19:20:23 - [0,185] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 26/07/2012 - 09:13:01 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 10/06/2013 - 18:01:44 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 02/06/2013 - 21:43:59 - [0,595] ----D C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 25/11/2013 - 19:04:46 - [41,893] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 01/11/2012 - 10:53:02 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 29/11/2013 - 20:15:50 - [43,876] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 28/07/2013 - 17:32:46 - [2,774] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 28/07/2013 - 17:30:45 - [36,874] ----D C:\ProgramData\Apple
O43 - CFD: 28/07/2013 - 17:31:45 - [58,414] ----D C:\ProgramData\Apple Computer
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 28/12/2012 - 19:56:00 - [0] ----D C:\ProgramData\ATI
O43 - CFD: 01/06/2013 - 16:19:31 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 18/08/2013 - 12:32:44 - [0,146] ----D C:\ProgramData\CyberLink
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 15/06/2013 - 12:54:03 - [10,102] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 28/12/2012 - 19:37:02 - [0,169] ----D C:\ProgramData\install_clap
O43 - CFD: 28/12/2012 - 19:21:39 - [0,026] ----D C:\ProgramData\Intel
O43 - CFD: 03/06/2013 - 19:44:38 - [0,112] ----D C:\ProgramData\McAfee
O43 - CFD: 30/11/2013 - 22:05:15 - [0,001] ----D C:\ProgramData\McAfee Security Scan
O43 - CFD: 01/06/2013 - 16:19:31 - [0] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 23/11/2013 - 21:02:36 - [254,421] -S--D C:\ProgramData\Microsoft
O43 - CFD: 26/11/2013 - 21:08:23 - [0,062] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 01/11/2012 - 10:53:09 - [0] ----D C:\ProgramData\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 01/06/2013 - 16:19:31 - [0] -SH-D C:\ProgramData\Modèles
O43 - CFD: 01/06/2013 - 20:43:07 - [0,033] ----D C:\ProgramData\Mozilla
O43 - CFD: 01/06/2013 - 17:29:21 - [366,433] ----D C:\ProgramData\Norton
O43 - CFD: 28/12/2012 - 19:46:00 - [3,724] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 02/06/2013 - 17:13:29 - [0,056] ----D C:\ProgramData\PRICache
O43 - CFD: 28/12/2012 - 19:24:42 - [7,075] ----D C:\ProgramData\Ralink Driver
O43 - CFD: 23/11/2013 - 21:07:25 - [0,001] ----D C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 11/06/2013 - 17:23:11 - [20,596] ----D C:\ProgramData\Skype
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 28/12/2012 - 19:27:48 - [0,002] ----D C:\ProgramData\Synaptics
O43 - CFD: 28/12/2012 - 19:41:13 - [2,373] ----D C:\ProgramData\Temp
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 24/11/2013 - 18:10:39 - [371,114] ----D C:\ProgramData\WildTangent
O43 - CFD: 01/11/2012 - 10:58:02 - [39,643] ----D C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
O43 - CFD: 01/06/2013 - 17:31:51 - [1,962] ----D C:\Users\Laura\AppData\Roaming\Adobe
O43 - CFD: 28/07/2013 - 17:45:22 - [0,208] ----D C:\Users\Laura\AppData\Roaming\Apple Computer
O43 - CFD: 01/06/2013 - 17:33:25 - [0] ----D C:\Users\Laura\AppData\Roaming\ATI
O43 - CFD: 24/11/2013 - 14:58:58 - [0,165] ----D C:\Users\Laura\AppData\Roaming\CyberLink
O43 - CFD: 10/06/2013 - 17:56:59 - [1,014] ----D C:\Users\Laura\AppData\Roaming\Hewlett-Packard
O43 - CFD: 13/11/2013 - 08:04:57 - [0,264] ----D C:\Users\Laura\AppData\Roaming\hpqlog
O43 - CFD: 02/06/2013 - 21:51:41 - [0] ----D C:\Users\Laura\AppData\Roaming\Identities
O43 - CFD: 01/06/2013 - 18:52:20 - [0,039] ----D C:\Users\Laura\AppData\Roaming\Macromedia
O43 - CFD: 01/12/2013 - 22:08:58 - [42,927] -S--D C:\Users\Laura\AppData\Roaming\Microsoft
O43 - CFD: 01/06/2013 - 20:43:27 - [44,083] ----D C:\Users\Laura\
0
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013
2 déc. 2013 à 22:42
la suite:

O43 - CFD: 30/07/2013 - 21:01:20 - [7,739] ----D C:\Users\Laura\AppData\Roaming\OpenOffice
O43 - CFD: 24/11/2013 - 17:51:00 - [0,019] ----D C:\Users\Laura\AppData\Roaming\PDF Architect
O43 - CFD: 02/12/2013 - 22:16:34 - [4,161] ----D C:\Users\Laura\AppData\Roaming\Skype
O43 - CFD: 01/06/2013 - 17:30:00 - [0] ----D C:\Users\Laura\AppData\Roaming\Synaptics
O43 - CFD: 24/11/2013 - 18:10:26 - [4,018] ----D C:\Users\Laura\AppData\Roaming\WildTangent
O43 - CFD: 02/12/2013 - 22:33:33 - [0,016] ----D C:\Users\Laura\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 30/11/2013 - 22:08:05 - [0] ----D C:\Users\Laura\AppData\Local\Adobe
O43 - CFD: 28/07/2013 - 17:31:01 - [0] ----D C:\Users\Laura\AppData\Local\Apple
O43 - CFD: 28/07/2013 - 17:32:55 - [54,440] ----D C:\Users\Laura\AppData\Local\Apple Computer
O43 - CFD: 01/06/2013 - 17:28:32 - [0] -SH-D C:\Users\Laura\AppData\Local\Application Data
O43 - CFD: 01/06/2013 - 17:30:02 - [6,234] ----D C:\Users\Laura\AppData\Local\assembly
O43 - CFD: 01/06/2013 - 17:33:25 - [0,049] ----D C:\Users\Laura\AppData\Local\ATI
O43 - CFD: 24/11/2013 - 14:58:58 - [0,005] ----D C:\Users\Laura\AppData\Local\CyberLink
O43 - CFD: 02/12/2013 - 20:50:52 - [0] ----D C:\Users\Laura\AppData\Local\Diagnostics
O43 - CFD: 04/07/2013 - 21:10:35 - [0] ----D C:\Users\Laura\AppData\Local\ElevatedDiagnostics
O43 - CFD: 23/07/2013 - 22:14:08 - [0,010] ----D C:\Users\Laura\AppData\Local\Hewlett-Packard
O43 - CFD: 01/06/2013 - 17:28:32 - [0] -SH-D C:\Users\Laura\AppData\Local\Historique
O43 - CFD: 03/06/2013 - 22:15:41 - [0] ----D C:\Users\Laura\AppData\Local\Macromedia
O43 - CFD: 01/09/2013 - 16:48:44 - [871,374] ----D C:\Users\Laura\AppData\Local\Microsoft
O43 - CFD: 23/11/2013 - 21:00:07 - [0] ----D C:\Users\Laura\AppData\Local\Microsoft Help
O43 - CFD: 15/10/2013 - 18:17:45 - [22,394] ----D C:\Users\Laura\AppData\Local\Mozilla
O43 - CFD: 12/10/2013 - 13:48:33 - [171,004] ----D C:\Users\Laura\AppData\Local\Packages
O43 - CFD: 01/06/2013 - 17:30:06 - [0,039] ----D C:\Users\Laura\AppData\Local\Power2Go8
O43 - CFD: 23/11/2013 - 23:45:22 - [0] ----D C:\Users\Laura\AppData\Local\Programs
O43 - CFD: 02/12/2013 - 22:32:12 - [0,031] ----D C:\Users\Laura\AppData\Local\Temp
O43 - CFD: 01/06/2013 - 17:28:32 - [0] -SH-D C:\Users\Laura\AppData\Local\Temporary Internet Files
O43 - CFD: 08/06/2013 - 13:53:12 - [0,001] ----D C:\Users\Laura\AppData\Local\VirtualStore
O43 - CFD: 26/07/2012 - 09:13:00 - [0,004] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 26/07/2012 - 09:13:00 - [0,001] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 15/10/2013 - 18:16:59 - [0] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 26/07/2012 - 09:13:00 - [0] ----D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 15/10/2013 - 18:16:59 - [0] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 26/07/2012 - 09:13:00 - [0,005] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
~ Program Folder: 134 Scanned in 00mn 31s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 02/12/2013 - 20:44:39 ---A- . (...) -- C:\Windows\SysNative\HP_ActiveX_Patch_NOT_DETECTED.txt [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 02/12/2013 - 20:44:39 ---A- . (...) -- C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt [0]
O44 - LFC:[MD5.6EB7C58A905C5B9A4CCBB42BADA7748F] - 02/12/2013 - 22:16:39 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.DA5DA2219AA5C250CB4D4B3D4E48E3CB] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1997784]
O44 - LFC:[MD5.F82D5CDA92346D047BB1A9E67B600C44] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [158770]
O44 - LFC:[MD5.ED6700911F231EB5C4B0AAD16FBCE203] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [188684]
O44 - LFC:[MD5.3BA114DF556D19D35351D13C1506EFE9] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [775758]
O44 - LFC:[MD5.8B37A28EF6BEDC3A0CE804D50BCAFB37] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [875886]
O44 - LFC:[MD5.DA5DA2219AA5C250CB4D4B3D4E48E3CB] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1997784]
O44 - LFC:[MD5.F82D5CDA92346D047BB1A9E67B600C44] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\System32\perfc009.dat [158770]
O44 - LFC:[MD5.ED6700911F231EB5C4B0AAD16FBCE203] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [188684]
O44 - LFC:[MD5.3BA114DF556D19D35351D13C1506EFE9] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\System32\perfh009.dat [775758]
O44 - LFC:[MD5.8B37A28EF6BEDC3A0CE804D50BCAFB37] - 02/12/2013 - 22:21:14 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [875886]
O44 - LFC:[MD5.DAA6AAD525D12F8985695B882301336F] - 25/11/2013 - 19:04:47 ---A- . (...) -- C:\Windows\win.ini [167]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 29/11/2013 - 20:20:06 ---A- . (...) -- C:\autoexec.bat [0]
O44 - LFC:[MD5.78250D50228E4FC06349E48587821B11] - 29/11/2013 - 21:02:11 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1615784]
O44 - LFC:[MD5.EB6DCB793A2F53AAB1E121DB772D0528] - 30/11/2013 - 21:57:02 ---A- . (...) -- C:\Windows\PFRO.log [26576]
O44 - LFC:[MD5.B9A35068D7E8FDE351C10B25DF7913F2] - 30/11/2013 - 21:57:32 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [469192]
O44 - LFC:[MD5.B9A35068D7E8FDE351C10B25DF7913F2] - 30/11/2013 - 21:57:32 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [469192]
~ Files: 19 Scanned in 00mn 02s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.112E5BF890D8ED17F83F140BAFC50B8A] - 02/12/2013 - 22:23:23 ---A- - C:\Windows\Prefetch\CLTLMH.EXE-810A302E.pf
O45 - LFCP:[MD5.28999D0E54C741198563DE1B079877F6] - 02/12/2013 - 22:23:29 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-F0516D55.pf
O45 - LFCP:[MD5.6486A7F275C18C36DE9CA64366DAF36E] - 02/12/2013 - 22:25:42 ---A- - C:\Windows\Prefetch\SETTINGSYNCHOST.EXE-DD400067.pf
O45 - LFCP:[MD5.C915F32F42D9B31C4D6826DE573E71D1] - 02/12/2013 - 22:27:39 ---A- - C:\Windows\Prefetch\IGFXSRVC.EXE-F41E6E8E.pf
O45 - LFCP:[MD5.D059EBEF5B063FA1A488508A99452732] - 02/12/2013 - 22:28:23 ---A- - C:\Windows\Prefetch\CLTRT.EXE-CE1303C7.pf
O45 - LFCP:[MD5.5CEDA164AAAB584BB31CEE92B7B440D1] - 02/12/2013 - 22:30:02 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-985C34E6.pf
O45 - LFCP:[MD5.0CF2F51DB832906D3DAD861A5AB1268E] - 02/12/2013 - 22:30:03 ---A- - C:\Windows\Prefetch\THUMBNAILEXTRACTIONHOST.EXE-C3FB8861.pf
O45 - LFCP:[MD5.B8252245E99BF76EA27DCCD9E515287A] - 02/12/2013 - 22:30:37 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-29D61DAB.pf
O45 - LFCP:[MD5.EB536F3204CB144E82EA77D236374E43] - 02/12/2013 - 22:30:42 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-C1C2EFBE.pf
O45 - LFCP:[MD5.292C28222C47EB2FBD82C7E61090003E] - 02/12/2013 - 22:31:37 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-10E4267C.pf
O45 - LFCP:[MD5.042E21862668DB5557E7D9CB24B50623] - 02/12/2013 - 22:31:37 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-C6CFE2A8.pf
O45 - LFCP:[MD5.D0B8C26AD6F6263E4FDA80E088A16DB9] - 02/12/2013 - 22:32:02 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-83625ABD.pf
O45 - LFCP:[MD5.28A0B557BA6F2D10C6FED8CCE39F8C52] - 02/12/2013 - 22:32:03 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-9848A323.pf
O45 - LFCP:[MD5.FC592B70E01ABFECEDEE7145EE3EE838] - 02/12/2013 - 22:32:05 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-6B9D6E94.pf
O45 - LFCP:[MD5.188F72D57CC0CD93BFD11F0756C21F30] - 02/12/2013 - 22:32:05 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-AF998360.pf
O45 - LFCP:[MD5.D23AB77ABE655D97BD46F817CF7743A8] - 02/12/2013 - 22:32:14 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-210D3DBE.pf
O45 - LFCP:[MD5.8A758D58D6CD54D60CF9FD6ED5E6A5D8] - 02/12/2013 - 22:32:15 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-38926D07.pf
O45 - LFCP:[MD5.2BD2E3BECB4C06162F65B4A80D7B4D9A] - 02/12/2013 - 22:32:26 ---A- - C:\Windows\Prefetch\CONSENT.EXE-2D674CE4.pf
O45 - LFCP:[MD5.1175BE7B1754F27C85F6DF6A1BA399CC] - 02/12/2013 - 22:32:26 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-5F2753B1.pf
O45 - LFCP:[MD5.2C5BDB5831485BBA670E8D7F91B1D58F] - 02/12/2013 - 22:32:31 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-50AF0BCC.pf
O45 - LFCP:[MD5.8B8EF16E82DB50E4B5D4D538BC41DEB4] - 02/12/2013 - 22:32:36 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-C7289479.pf
O45 - LFCP:[MD5.44924CCE78B2236F96E9FB86D8231B34] - 02/12/2013 - 22:33:07 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-E9FF6526.pf
O45 - LFCP:[MD5.B823C0827C8785E64FC3A4B89CC4C44A] - 02/12/2013 - 22:33:15 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-7B160CA5.pf
O45 - LFCP:[MD5.A3CF35E03D2964FE15FAA43B55F42B6A] - 02/12/2013 - 22:33:15 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-0C8A533A.pf
O45 - LFCP:[MD5.78E5D0946320E2589AA92D0272D8C643] - 02/12/2013 - 22:33:16 ---A- - C:\Windows\Prefetch\PV.EXE-D9D90B9C.pf
O45 - LFCP:[MD5.7092CDE024254E93E8909BBD7E6537BC] - 02/12/2013 - 22:33:20 ---A- - C:\Windows\Prefetch\CMD.EXE-2EB3E6E2.pf
O45 - LFCP:[MD5.22E2A6A8BD961052261A4DEC5AC6D069] - 02/12/2013 - 22:33:20 ---A- - C:\Windows\Prefetch\CONHOST.EXE-F98A1078.pf
O45 - LFCP:[MD5.94BA390EE80086CA24694C65B90BF7F5] - 02/12/2013 - 22:33:20 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-D08B2113.pf
O45 - LFCP:[MD5.AC04BCEE3B2DDF28EF702665ACDAC9D7] - 02/12/2013 - 22:33:22 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-5B401A7E.pf
O45 - LFCP:[MD5.6792631877F79CE09F2AEA84B1C80363] - 02/12/2013 - 22:33:33 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-0AD36442.pf
~ Prefetcher: 30 Scanned in 00mn 00s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Live Security Package.) -- C:\Windows\System32\livessp.dll
~ LSA: 9 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 17 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ TDSD: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 17 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
~ MWPE Keys: 3 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736]
O58 - SDL:[MD5.899B7E724BF19F17978B6A37B864A277] - 24/09/2012 - 12:40:56 ---A- . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\Windows\System32\Drivers\Accelerometer.sys [43840]
O58 - SDL:[MD5.93C6388592B99925C1D1576E465BC80F] - 26/07/2012 - 06:00:49 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [492272]
O58 - SDL:[MD5.D27763E0247292654E7F7D16444C7C72] - 26/07/2012 - 06:00:48 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [340720]
O58 - SDL:[MD5.67B90070FF48F794AF19F9FCF0080D75] - 26/07/2012 - 06:00:49 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [184048]
O58 - SDL:[MD5.02CF5AD93538CCE63EB09364EDD3DCF9] - 10/07/2012 - 05:19:26 ---A- . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\Windows\System32\Drivers\amdkmpfd.sys [35496]
O58 - SDL:[MD5.35A0EB5AECB0FA3C41A2FB514A562304] - 26/07/2012 - 06:00:49 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [76016]
O58 - SDL:[MD5.00452671904F5EE94B50BF0219C97164] - 26/07/2012 - 06:00:49 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [258288]
O58 - SDL:[MD5.EA3FFE53E92E59C87E3ECA9BEB20D9B7] - 26/07/2012 - 06:00:48 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [26352]
O58 - SDL:[MD5.E933401B392387F4BE34DE8BAF1722A7] - 26/07/2012 - 06:00:49 ---A- . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [104688]
O58 - SDL:[MD5.07CA323EF2E8247A568AB0F3662AD644] - 26/07/2012 - 06:00:48 ---A- . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [108272]
O58 - SDL:[MD5.F931C2ED6C8294909C10657DCB9A9A4E] - 18/09/2012 - 13:15:48 ---A- . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\Drivers\atikmdag.sys [10316800]
O58 - SDL:[MD5.0D481A7FE3A66724DC11AD8A4E417A9A] - 18/09/2012 - 11:12:42 ---A- . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\Drivers\atikmpag.sys [370688]
O58 - SDL:[MD5.87AB5BB072A3F128541D5B815F82FFDD] - 01/11/2012 - 19:23:08 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [533224]
O58 - SDL:[MD5.075CCE75090786F124573A788C8656E6] - 25/06/2012 - 10:24:50 ---A- . (.CyberLink - It is a virtual device driver which could create multiple virtu.) -- C:\Windows\System32\Drivers\CLVirtualDrive.sys [92536]
O58 - SDL:[MD5.27069CFFF29B7F04F4B1BB10154BE52B] - 19/10/2012 - 03:52:32 ---A- . (.Windows (R) Win 7 DDK provider - IEEE-1284.4-1999 Driver.) -- C:\Windows\System32\Drivers\Dot4.sys [151968]
O58 - SDL:[MD5.0BD906A79F9CE3013F7D9D0AC45F9F9D] - 19/10/2012 - 03:52:30 ---A- . (.Windows (R) Win 7 DDK provider - IEEE-1284.4 Print Class Driver.) -- C:\Windows\System32\Drivers\Dot4Prt.sys [27040]
O58 - SDL:[MD5.5AB97B3282D7D6114949D1EB5C8598E4] - 01/11/2012 - 19:23:08 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3265256]
O58 - SDL:[MD5.8E98D21EE06192492A5671A6144D092F] - 21/08/2012 - 12:01:20 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [33240]
O58 - SDL:[MD5.772A1DEEDFDBC244183B5C805D1B7D85] - 03/07/2012 - 00:16:02 ---A- . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [62784]
O58 - SDL:[MD5.D104FF402FC3DDB686E6DEF00334DB26] - 24/09/2012 - 12:40:56 ---A- . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\Drivers\hpdskflt.sys [31040]
O58 - SDL:[MD5.64DB7A8D97CA53DCCF93D0A1E08342CF] - 26/07/2012 - 06:00:52 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [64752]
O58 - SDL:[MD5.C02FC4C6C411C85F209EBD0EBBF8CAE9] - 28/09/2012 - 19:37:04 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\Drivers\iaStorA.sys [650808]
O58 - SDL:[MD5.5E394EBD26FD68AA9300332C46BEDD62] - 26/07/2012 - 06:00:52 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [411888]
O58 - SDL:[MD5.87B67C33144BE5A68D20D9BE4D528E43] - 05/09/2012 - 00:21:24 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd64.sys [9004384]
O58 - SDL:[MD5.87B67C33144BE5A68D20D9BE4D528E43] - 05/09/2012 - 00:21:24 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdpmd64.sys [9004384]
O58 - SDL:[MD5.24847A06B84339FEEDE5CABF3D27D320] - 26/07/2012 - 06:00:52 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [45296]
O58 - SDL:[MD5.F5495B38BFB9149925F54F65AB40EFBF] - 19/06/2012 - 16:40:52 ---A- . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\Drivers\IntcDAud.sys [342528]
O58 - SDL:[MD5.022CDD12161B063D7852B1075BF3FFF2] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [108784]
O58 - SDL:[MD5.07AD59D669B996F29F91817F0ECFA34F] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [92400]
O58 - SDL:[MD5.216FB796AA4E252ACCE93B1BCB80B5EC] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [116976]
O58 - SDL:[MD5.5E80530AF37102488EE980B4A92AF99F] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sss.sys [81136]
O58 - SDL:[MD5.9B0D829C3BE4E7472DB9DD2B79908E3C] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\Drivers\megasas.sys [51952]
O58 - SDL:[MD5.ECC3F54C7AFC318271C4F0B4606D8DB0] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [353008]
O58 - SDL:[MD5.3A1E095277BBD406CEA8EA6B76950664] - 26/07/2012 - 06:00:55 ---A- . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\Drivers\mvumis.sys [64240]
O58 - SDL:[MD5.080417AC9E51B2B29656EC26B62E87F1] - 15/04/2013 - 06:02:04 ---A- . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\Drivers\netr28x.sys [2482960]
O58 - SDL:[MD5.12DD2800E4EEA37DC9AE256AD62423B4] - 26/07/2012 - 06:00:55 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [52464]
O58 - SDL:[MD5.D6D34118263412D3AAA8348A9572B7F2] - 26/07/2012 - 06:00:55 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [150256]
O58 - SDL:[MD5.27AFC428D1D32ABD04A86763A4EDDEA9] - 26/07/2012 - 06:00:55 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [168176]
O58 - SDL:[MD5.7B04C9843921AB1F695FB395422C5360] - 14/05/2007 - 15:06:18 ---A- . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520]
O58 - SDL:[MD5.34DA0D14F5C3F1883A331AFB975AB434] - 31/07/2012 - 09:04:12 ---A- . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Driver.) -- C:\Windows\System32\Drivers\Rt630x64.sys [690832]
O58 - SDL:[MD5.D38250F459BF60D6F4B69B79DCD948CC] - 04/07/2012 - 14:09:08 ---A- . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vista/Win7/Win8.) -- C:\Windows\System32\Drivers\RtsP2Stor.sys [269968]
O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 26/07/2012 - 09:11:43 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040]
O58 - SDL:[MD5.2560721D6F16D5B611C36A3A9D28C1B2] - 26/07/2012 - 06:00:55 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [44784]
O58 - SDL:[MD5.3AA8FDE1DBF65BB8B88B053529554A0D] - 26/07/2012 - 06:00:56 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [81648]
O58 - SDL:[MD5.AF5CC3F9B88F140D78FC967ABF0F4EC7] - 25/08/2012 - 02:38:26 ---A- . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\Drivers\Smb_driver_AMDASF.sys [41272]
O58 - SDL:[MD5.19555D03CB179BED8B8AAA239A36BDA4] - 25/08/2012 - 02:38:28 ---A- . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\Drivers\Smb_driver_Intel.sys [43832]
O58 - SDL:[MD5.0B3F6C8F93C5C25977EA5A8B2E656357] - 04/06/2013 - 08:15:02 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudbus.sys [103448]
O58 - SDL:[MD5.EA8F41484CCC5BA6A1455C2AD3D1BE3C] - 04/06/2013 - 08:15:00 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudmdm.sys [203672]
O58 - SDL:[MD5.4E85355B94CFCB67C135F6521A4895A7] - 26/07/2012 - 06:00:55 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x64.) -- C:\Windows\System32\Drivers\stexstor.sys [30960]
O58 - SDL:[MD5.32BE0B7CCA47A5BE30E7E43DC54B54F3] - 20/08/2012 - 06:45:20 ---A- . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\Drivers\stwrt64.sys [542208]
O58 - SDL:[MD5.F19E5E37ED8134B9E5F6287F2D3A75D7] - 19/06/2013 - 20:35:19 ---A- . (.Symantec Corporation - Symantec Event Library.) -- C:\Windows\System32\Drivers\SYMEVENT64x86.SYS [177312]
O58 - SDL:[MD5.3F45C3FE208CA5E68832B65C597A35A6] - 25/08/2012 - 02:38:28 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [448312]
O58 - SDL:[MD5.F5B4A14B00E89250C50982AC762DDD1D] - 26/07/2012 - 06:00:58 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [19184]
O58 - SDL:[MD5.38A60CD9C009C55C6D3B5586F8E6A353] - 26/07/2012 - 06:00:58 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [164080]
O58 - SDL:[MD5.A0F6FE0FC2F647C22BBFD6BD4249DBCC] - 26/07/2012 - 06:00:58 ---A- . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\Drivers\VSTXRAID.SYS [322800]
O58 - SDL:[MD5.4F2A80D65AE6F845776E2F06AE6782ED] - 31/08/2012 - 09:40:24 ---A- . (.Hewlett-Packard Development Company, L.P. - HP Wireless Button Driver.) -- C:\Windows\System32\Drivers\WirelessButtonDriver64.sys [20800]
~ Drivers: 17 Scanned in 00mn 05s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/12/2013 - 22:34:17 -S-A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\Content\7D1F03728133589A90656A87E482B21F [50747] =>.Microsoft Corporation
O61 - LFC: 01/12/2013 - 22:34:17 -S-A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F [316] =>.Microsoft Corporation
O61 - LFC: 01/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Office\Word12.pip [1684]
O61 - LFC: 01/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\PDF Architect\OptimizationSettings\QualitySettings.xml [2128]
O61 - LFC: 02/12/2013 - 22:34:16 ---A- . (...) -- C:\Users\Laura\AppData\Local\ATI\ACE\Manifest.Bin [28152]
O61 - LFC: 02/12/2013 - 22:34:16 ---A- . (...) -- C:\Users\Laura\AppData\Local\ATI\ACE\Manifest.xml [20325]
O61 - LFC: 02/12/2013 - 22:34:16 ---A- . (...) -- C:\Users\Laura\AppData\Local\ATI\ACE\Profiles.xml [2786]
O61 - LFC: 02/12/2013 - 22:34:16 --HA- . (...) -- C:\Users\Laura\AppData\Local\IconCache.db [254124]
O61 - LFC: 02/12/2013 - 22:34:17 ----- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\LocalState\LiveComm.etl [131072] =>.Microsoft Corporation
O61 - LFC: 02/12/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\LocalState\LiveCommLast.etl [655360] =>.Microsoft Corporation
O61 - LFC: 02/12/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\LocalState\LiveComm\6c26e026c9fad4bb\120712-0049\DBStore\edb.chk [8192] =>.Microsoft Corporation
O61 - LFC: 02/12/2013 - 22:34:17 -S-A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\Content\AFA2A5744430E65F42D3175FABFBE3E8 [31932] =>.Microsoft Corporation
O61 - LFC: 02/12/2013 - 22:34:17 -S-A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 [262] =>.Microsoft Corporation
O61 - LFC: 02/12/2013 - 22:34:17 -S-A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 [340] =>.Microsoft Corporation
O61 - LFC: 02/12/2013 - 22:34:17 -S-A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\7D1F03728133589A90656A87E482B21F [256] =>.Microsoft Corporation
O61 - LFC: 02/12/2013 - 22:34:17 -S-A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Microsoft\CryptnetUrlCache\MetaData\AFA2A5744430E65F42D3175FABFBE3E8 [222] =>.Microsoft Corporation
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Hewlett-Packard\HP Connected Remote\data\WMC_module.sdf [765952]
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Hewlett-Packard\HP Connected Remote\data\WMP_module.sdf [98304]
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Hewlett-Packard\HP Connected Remote\data\iTunes_module.sdf [163840]
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Hewlett-Packard\HP Support Framework\cee\3646125286.cee [2098]
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Sticky Notes\StickyNotes.snt [5120]
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Skype\shared.xml [80758]
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Skype\shared_dynco\dc.db [2232320]
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Skype\shared_dynco\dc.db-journal [1096280]
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\Log.txt [16791] =>.Nicolas Coolman
O61 - LFC: 02/12/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\TestsZHPDiag.txt [2845] =>.Nicolas Coolman
O61 - LFC: 02/12/2013 - 22:34:18 -SHA- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Protect\S-1-5-21-3229452069-3979555227-4104287253-1001\05f9e99b-8b79-4b82-824e-91db13a61ea2 [468]
O61 - LFC: 02/12/2013 - 22:34:18 -SHA- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Protect\S-1-5-21-3229452069-3979555227-4104287253-1001\3cae8bac-3611-4e3a-9588-f3a1bcf6a90f [468]
O61 - LFC: 02/12/2013 - 22:34:18 -SHA- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Protect\S-1-5-21-3229452069-3979555227-4104287253-1001\899e449d-faa1-43c3-b5ef-ce65108817d4 [468]
O61 - LFC: 02/12/2013 - 22:34:19 ---A- . (...) -- C:\Users\Laura\Downloads\SFTGC.exe [1064612]
O61 - LFC: 02/12/2013 - 22:34:19 ---A- . (...) -- C:\Users\Laura\Downloads\adwcleaner (1).exe [1110034]
O61 - LFC: 02/12/2013 - 22:34:19 ---A- . (...) -- C:\Users\Laura\Downloads\adwcleaner.exe [1110034]
O61 - LFC: 02/12/2013 - 22:34:19 ---A- . (.Nicolas Coolman.) -- C:\Users\Laura\Downloads\ZHPDiag2.exe [6855779] =>.Nicolas Coolman
O61 - LFC: 29/11/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.ZuneMusic_8wekyb3d8bbwe\Settings\settings.dat [262144]
O61 - LFC: 29/11/2013 - 22:34:19 ---A- . (.Enigma Software Group USA, LLC..) -- C:\Users\Laura\Downloads\SpyHunter-Installer.exe [728960] =>Crapware.SpyHunter
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\AD2F1837.GettingStartedwithWindows8_v10z8vjag6ke6\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\AD2F1837.HPConnectedPhotopoweredbySnapfish_v10z8vjag6ke6\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\AD2F1837.HPGames_v10z8vjag6ke6\Settings\settings.dat [262144]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\AD2F1837.HPRegistration_v10z8vjag6ke6\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\BrowserChoice_cw5n1h2txyewy\Settings\settings.dat [8192] =>.Microsoft Corporation
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.BingFinance_8wekyb3d8bbwe\Settings\settings.dat [262144]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.BingMaps_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.BingNews_8wekyb3d8bbwe\Settings\settings.dat [8192] =>.Microsoft Corporation
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.BingTravel_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.BingWeather_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.Bing_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.Camera_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.Media.PlayReadyClient_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.SkypeApp_kzf8qxf38zg5c\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.VCLibs.110.00_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.WinJS.1.0_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\eBayInc.eBay_1618n3s9xq8tw\Settings\settings.dat [8192] =>Toolbar.eBay
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.microsoftskydrive_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:17 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\microsoft.windowsphotos_8wekyb3d8bbwe\Settings\settings.dat [262144]
O61 - LFC: 30/11/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\Microsoft.XboxLIVEGames_8wekyb3d8bbwe\Settings\settings.dat [8192]
O61 - LFC: 30/11/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\3\3-DigitalMarker.dat [5366] =>.Microsoft Corporation
O61 - LFC: 30/11/2013 - 22:34:18 ---A- . (...) -- C:\Users\Laura\AppData\Local\Packages\WinStore_cw5n1h2txyewy\AC\Microsoft\Windows Store\Cache\cachemetadata.dat [6029360] =>.Microsoft Corporation
O61 - LFC: 30/11/2013 - 22:34:18 -SHA- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Protect\CREDHIST [168]
O61 - LFC: 30/11/2013 - 22:34:18 -SHA- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Protect\S-1-5-21-3229452069-3979555227-4104287253-1001\Preferred [24]
O61 - LFC: 30/11/2013 - 22:34:18 -SHA- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Protect\SYNCHIST [76]
~ Files: 61 Scanned in 00mn 03s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
~ FASS Keys: 11 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {34B99490-A983-4E3F-9991-BEF6098AD37D} - (Propositions de recherche Amazon.fr) - https://www.amazon.fr/
O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com =>Toolbar.eBay
~ Keys: Scanned in 00mn 00s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d'application.) -- C:\Windows\System32\aelupsvc.dll [190976]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [309248]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1366016]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1160192]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d'accès distant.) -- C:\Windows\System32\rasauto.dll [99840]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d'accès à distance.) -- C:\Windows\System32\rasmans.dll [358400]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d'interface dynamique.) -- C:\Windows\System32\mprdim.dll [107520]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d'événements système (SENS).) -- C:\Windows\System32\sens.dll [62976]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [438784]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [305664]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [3279360]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [826368]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [565760]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [894464]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d'application.) -- C:\Windows\System32\appinfo.dll [70144]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151552]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [105472]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1285632]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [219648]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [80896]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d'ordinateurs.) -- C:\Windows\System32\browser.dll [134144]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [291328]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [97792]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [190976]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1964544]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [47104]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d'installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [207872]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Microsoft.) -- C:\Windows\System32\ncasvc.dll [161792]
O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [180224]

~ Services: 34 Scanned in 00mn 00s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "vm-monitoring-rpc" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "vm-monitoring-dcom" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe
O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC-EPMapper" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe
O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Netlogon-TCP-RPC-In" | In - None - P6 - FALSE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\System32\lsass.exe
O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "ProximityUxHost-Sharing-In-TCP-NoScope" | In - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe
O87 - FAEL: "ProximityUxHost-Sharing-Out-TCP-NoScope" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-DAS-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-DAS-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d'assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d'assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svch
0
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013
2 déc. 2013 à 23:01
suite 3

O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PlayTo-In-UDP-NoScope" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-UDP-LocalSubnetScope" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-NoScope" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-LocalSubnetScope" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-NoScope" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-LocalSubnetScope" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-SSDP-Discovery-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PlayTo-QWave-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PlayTo-QWave-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PlayTo-QWave-In-TCP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PlayTo-QWave-Out-TCP-PlayToScope" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "TPMVSCMGR-Server-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-Server-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "TPMVSCMGR-Server-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-Server-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "Collab-P2PHost-In-TCP" |In - None - P6 - TRUE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l'infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l'infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-In-TCP" |In - None - P6 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-TERMSRV-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-Prov-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\mcx2prov.exe (.not file.)
O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-McrMgr-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\mcrmgr.exe (.not file.)
O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{088F5DA3-7D3E-4F59-B0CB-FFE2E592ED45}" |In - None - P6 - TRUE | .(...) -- C:\Users\Administrator\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (.not file.)
O87 - FAEL: "{D8173DFF-8590-42E8-98D4-8F13EA1B262B}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
O87 - FAEL: "{9BAB6699-A07D-4BE0-8A56-E0C43F41DEB6}" | Out - None - P6 - TRUE | .(.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
O87 - FAEL: "{91CDD203-5765-484A-A846-2FDD8C0DAD24}" | In - None - P6 - TRUE | .(.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
O87 - FAEL: "{38033FA6-0E8D-4E5B-995D-588A618BDCAB}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{A1A55845-6F56-4DB2-B113-49A4C702DCFB}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{76F571AF-A56B-405E-A884-3BA310922E8C}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O87 - FAEL: "{00746F88-F526-494E-BF0E-9C9AF5A021EB}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O87 - FAEL: "{C7A62349-2314-4055-80B8-B47C4A38AF99}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDVD 10.0.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.exe
O87 - FAEL: "{DAC43A5F-A972-48D8-A051-CB353123EAF5}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDirector 10.) -- C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.exe
O87 - FAEL: "{791D4E6C-B21F-4470-A78B-A9B76E2D4770}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{73DFBA11-066C-4EF0-BD83-1A994A7F0451}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{4AEED668-2EAD-4F4F-B2EB-9AD6D789BCC5}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "{66E9729C-9EBE-4385-B72D-FB36AC560FB7}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "{9D9C8BDE-7497-4349-AF37-16A4E64189E3}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "{8083BAD6-3CD1-4969-ABCC-3D9F577DE103}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "{0EFC9F17-A581-4597-91A5-310FF021A653}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{77D7326E-86FC-425D-A6C9-104F21AAEF1E}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "{0DF138C6-4052-45D6-90F1-51909E2086BD}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "{A5E12BE4-7FC9-4AF8-BFE7-1BF0297314F6}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "{9D3FBA40-3CF3-4BDB-B73F-79DB25F58F96}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "{815D3581-BB52-47FB-BD83-972CA652C92E}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "{099173A9-A273-4C5D-A71C-0E17ACEA64E6}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "{6C7BDF73-990F-4218-8755-9DA34BB54CED}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "{3B3BD2A6-799C-4C42-B553-89C7D8E3ED81}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{5ADC42B3-CAC4-4EBA-98D2-33ED477B03E8}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{6C5F3776-C7F5-4AA4-9D6A-39FB9321A22D}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{238BA7B6-C830-4D17-BC49-9C86ED196F1E}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{00025E32-EC11-4039-993B-3B5B66617547}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{D5151CAB-4684-41D2-A03C-A7607B5F1F5A}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{196A3930-836C-4CC6-B08D-4936D3429AE8}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
O87 - FAEL: "{A938657C-123F-4EC4-B279-80FFB425BEBE}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe
O87 - FAEL: "{C964EFBB-8EF5-4305-B4FE-F8DA055E9385}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe (.not file.)
O87 - FAEL: "{2F9EB283-9E5F-4453-932B-824524C00790}" | In - None - P17 - TRUE | .(.Hewlett-Packard Company - HP Device Detection.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
~ Firewall: 238 Scanned in 00mn 01s



---\\ Enumère les codes produits des logiciels (PUC) (O90)
O90 - PUC: "045F27F206F16624596059B2126D46D0" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{2F72F540-1F60-4266-9506-952B21D6640D}\Installer.ico
O90 - PUC: "0694AF70830BBE9498B1F95939A05A44" . (.HP Customer Experience Enhancements.) -- C:\windows\Installer\{07FA4960-B038-49EB-891B-9F95930AA544}\ARPPRODUCTICON.exe
O90 - PUC: "114202EE62C28E947948B11CBD7FED69" . (.HP Support Assistant.) -- C:\windows\Installer\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}\ARPPRODUCTICON.exe =>.Hewlett-Packard Co
O90 - PUC: "193880A06A511A19667D8B41CCA533C4" . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{0A088391-15A6-91A1-66D7-B814CC5A334C}\ARPPRODUCTICON.exe
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "25FF5DF75E5217B44862233934348605" . (.Catalyst Control Center InstallProxy.) -- C:\Windows\Installer\{7FD5FF52-25E5-4B71-8426-329343436850}\ARPPRODUCTICON.exe
O90 - PUC: "277C90D53BCEB244C96C4B43C187DF2C" . (.Apple Application Support.) -- C:\Windows\Installer\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}\WinInstall.ico
O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\Windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico
O90 - PUC: "2D6F4B0BEA2FA1544969F6F2A698B723" . (.PowerDirector.) -- C:\Windows\Installer\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\ARPPRODUCTICON.exe
O90 - PUC: "30F0FF67707B23345B1D5AC6383015E4" . (.iTunes.) -- C:\Windows\Installer\{76FF0F03-B707-4332-B5D1-A56C8303514E}\Installer.ico
O90 - PUC: "42C6FBF1Df1C10144AB2C065F4E9E897" . (.Media Suite.) -- C:\Windows\Installer\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc
O90 - PUC: "49BCC6D83E50A357E57D7994E58AEAFF" . (.AMD Catalyst Install Manager.) -- C:\Windows\Installer\{8D6CCB94-05E3-753A-5ED7-97495EA8AEFF}\ARPPRODUCTICON.exe
O90 - PUC: "6303285E90F6A0D40BC52EAB1A9282A8" . (.HP Quick Launch.) -- C:\windows\Installer\{E5823036-6F09-4D0A-B05C-E2BAA129288A}\_853F67D554F05449430E7E.exe
O90 - PUC: "701043F6AA9F6C745BC43C1AF91155F3" . (.Hewlett-Packard ACLM.NET v1.2.1.1.) -- C:\windows\Installer\{6F340107-F9AA-47C6-B54C-C3A19F11553F}\ARPPRODUCTICON.exe
O90 - PUC: "7C43C21609E58D74B9C5F017D78D7262" . (.swMSM.) -- C:\windows\Installer\{612C34C7-5E90-47D8-9B5C-0F717DD82726}\ARPPRODUCTICON.exe
O90 - PUC: "877B54A6BB545468979F253113BAEC82" . (.ccc-utility64.) -- C:\Windows\Installer\{6A45B778-45BB-8645-79F9-521331ABCE28}\ARPPRODUCTICON.exe
O90 - PUC: "8994BF104C33134458DE70E9E3FE7ED5" . (.YouCam.) -- C:\Windows\Installer\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\ARPPRODUCTICON.exe
O90 - PUC: "8D1D2B0370A017B4593570015C3DE153" . (.HP Wireless Button Driver.) -- C:\Windows\Installer\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}\ARPPRODUCTICON.exe
O90 - PUC: "90359E2A3F975E14497CD6F76D7DBB3C" . (.HP Documentation.) -- C:\Windows\Installer\{A2E95309-79F3-41E5-94C7-6D7FD6D7BBC3}\NotebookDocs.exe
O90 - PUC: "A4432684C93A7984CA4D1AEB5D61C3A5" . (.PhotoDirector.) -- C:\windows\Installer\{4862344A-A39C-4897-ACD4-A1BED5163C5A}\ARPPRODUCTICON.exe
O90 - PUC: "A78975C0A30A59B43A902DF3874F60AC" . (.HP Utility Center.) -- C:\Windows\Installer\{0C57987A-A03A-4B95-A309-D23F78F406CA}\ARPPRODUCTICON.exe
O90 - PUC: "AA5C8F95DB19D324FB50908AF09398F8" . (.HP CoolSense.) -- C:\Windows\Installer\{59F8C5AA-91BD-423D-BF05-09A80F39898F}\_853F67D554F05449430E7E.exe
O90 - PUC: "B18BA825A56D0BA42A6B285BA180D710" . (.HP Recovery Manager.) -- C:\windows\Installer\{528AB81B-D65A-4AB0-A2B6-82B51A087D01}\_853F67D554F05449430E7E.exe
O90 - PUC: "B43A342FF7BA56047B078BB567C742C7" . (.HP Connected Remote.) -- C:\windows\Installer\{F243A34B-AB7F-4065-B770-B85B767C247C}\_853F67D554F05449430E7E.exe
O90 - PUC: "BC993E9FF640DF546AF7FC93E912824E" . (.HP 3D DriveGuard.) -- C:\Windows\Installer\{F9E399CB-046F-45FD-A67F-CF399E2128E4}\controlPanelIcon.exe
O90 - PUC: "BE824E2CE6110C14E9482BD29ECC4AF2" . (.HP Registration Service.) -- C:\Windows\Installer\{C2E428EB-116E-41C0-9E84-B22DE9CCA42F}\ARPPRODUCTICON.exe
O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- C:\Windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe
O90 - PUC: "CD256529773DCC149BE70B79B9F435D4" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{925652DC-D377-41CC-B97E-B0979B4F534D}\ARPPRODUCTICON.exe
O90 - PUC: "D1D9B3E5E873B3E5E34B786C16526CC5" . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{5E3B9D1D-378E-5E3B-3EB4-87C66125C65C}\ARPPRODUCTICON.exe
O90 - PUC: "D276F30548C6A844F8F8B43CA58C4314" . (.AMD APP SDK Runtime.) -- C:\Windows\Installer\{503F672D-6C84-448A-8F8F-4BC35AC83441}\ARPPRODUCTICON.exe
O90 - PUC: "D4ADA0CF5AF82544A8FF0F0AAB9CE77F" . (.Energy Star.) -- C:\Windows\Installer\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}\_853F67D554F05449430E7E.exe
O90 - PUC: "D84D78A2FDF3df1479DC1A3E07FEFF2E" . (.Power2Go.) -- C:\Windows\Installer\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\ARPPRODUCTICON.exe
O90 - PUC: "DE532CED4A8571542A874CE1D8EABAB3" . (.PowerDVD.) -- C:\Windows\Installer\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\ARPPRODUCTICON.exe
O90 - PUC: "E660F949AF0CE85C3A5C5BBED50CF237" . (.Catalyst Control Center.) -- C:\Windows\Installer\{949F066E-C0FA-C58E-A3C5-B5EB5DC02F73}\ARPPRODUCTICON.exe
O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype(TM) 6.3.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O90 - PUC: "EE7CAC124AB72F148ABD0113B87C2E0E" . (.Catalyst Control Center Profiles Mobile.) -- C:\Windows\Installer\{21CAC7EE-7BA4-41F2-A8DB-10318BC7E2E0}\ARPPRODUCTICON.exe
~ Update Products: 112 Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.B06712BF5643BB55600A040F210DC218] [WIS][10/06/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\295e0a3b.msi [20586496]
~ WIS: 112 Scanned in 00mn 08s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 30/11/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 05/09/2012 277024 | (cphs) . (.Intel Corporation.) - C:\Windows\SysWow64\IntelCpHeciSvc.exe
SS - | Demand 12/10/2010 206072 | (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
SS - | Demand 05/09/2012 234776 | (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe
SS - | Demand 16/11/2013 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 28/02/2013 161384 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 01/11/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

SR - | Auto 18/09/2012 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 09/11/2013 227936 | (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
SR - | Auto 27/09/2012 86528 | (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Co
SR - | Auto 12/10/2012 35744 | (HPConnectedRemote) . (.Hewlett-Packard.) - C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
SR - | Demand 07/06/2013 1129760 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
SR - | Auto 24/09/2012 31040 | (hpsrv) . (.Hewlett-Packard Company.) - C:\Windows\System32\Hpservice.exe
SR - | Auto 07/09/2012 35232 | (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
SR - | Auto 28/09/2012 14904 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
SR - | Auto 14/07/2012 2451456 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 20/04/2012 635104 | (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
SR - | Auto 18/07/2012 128896 | (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
SR - | Demand 31/05/2013 641352 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 18/07/2012 165760 | (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
SR - | Auto 18/07/2012 276864 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - | Auto 21/05/2013 144368 | (NIS) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
SR - | Auto 20/08/2012 323072 | (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\STacSV64.exe
SR - | Auto 18/07/2012 364416 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Demand 10/07/1658 0 | (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe
SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation

~ Services: Scanned in 00mn 09s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Run by Laura at 02/12/2013 22:35:29
~ OS 64 not supported by MBR tool

~ MBR: 0 Scanned in 00mn 00s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Laura at 02/12/2013 22:35:31

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin

~ MBR: Scanned in 00mn 02s



---\\ Scan Additionnel (O88)
Database Version : 13007 - (01/12/2013)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0

~ Additionnel Scan: 296194 Items scanned in 00mn 11s



---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/26609241-crapware-spyhunter =>Crapware.SpyHunter
~ MSI: 1 link(s) detected in 00mn 11s



End of the scan (1462 lines in 02mn 39s)(0)
0
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
3 déc. 2013 à 07:51
Salut,

Non, héberge-le comme demandé. Aide-toi du tutoriel : http://www.forum-entraide-informatique.com/support/cjoint-com-tutoriel-t2939.html

Gabriel.
0
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013
5 déc. 2013 à 20:54
Ah ok
C'est fait!!!

http://cjoint.com/data3/3Lfu02BZ5en.htm
0
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
5 déc. 2013 à 21:04
Re,

Ok, encore des soucis apparents ou pas ?

Gabriel.
0
Lylyh Messages postés 9 Date d'inscription lundi 2 décembre 2013 Statut Membre Dernière intervention 5 décembre 2013
5 déc. 2013 à 21:19
Euhh non plus aucun problème!
Merci les manip ont fonctionnées!
0
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
5 déc. 2013 à 21:26
Re,

Très bien. :)

On finalise, voici la procédure : http://www.forum-entraide-informatique.com/support/finalisation-t8237.html
Tiens moi au courant de ton avancée au fur et à mesure.

Gabriel.
0