FORUM D’ENTRAIDE INFORMATIQUE (FEI)
Site d’assistance et de sécurité informatique

Aide à la désinfection (pages publicitaires, moteur de recherche remplacé, redirections, virus...).
Règles du forum : Entraide concernant la désinfection et la sécurité informatique : en cas de publicités intempestives, pop-up, redirections, logiciels indésirables, ralentissements suspects, virus, etc.
Une désinfection complète vous sera assurée : désinfection, sécurisation, puis prévention.
Seuls les helpers (personnes qualifiées et formées à la désinfection) ainsi que le staff sont autorisés à apporter leur aide dans cette section.
Merci également de prendre connaissance de la charte générale du forum.
  • Avatar du membre
  • Avatar du membre
  • Avatar du membre
#74208
Alors voila mon problème,  depuis quelque temps une page s'affiche assez souvent quand je fais un clic de souris c'est assez désagréable:x  et j'aimerais bien le supprimer   , La page qui s'affiche c'est rvzr-akamaihd-net-t4172.html.
Je vous remercie d'avance pour votre réponse.
#74224
Me voila inscrit j'ai heberger le dossier sftgc et voila le resultat adw cleaner !


# AdwCleaner v3.011 - Rapport créé le 08/11/2013 à 22:01:29
# Mis à jour le 03/11/2013 par Xplode
# Système d'exploitation : Windows 8 (64 bits)
# Nom d'utilisateur : Alexis - BOBOUU
# Exécuté depuis : C:\Users\Alexis\Downloads\adwcleaner.exe
# Option : Nettoyer

***** [ Services ] *****


***** [ Fichiers / Dossiers ] *****

Dossier Supprimé : C:\ProgramData\Babylon
Dossier Supprimé : C:\ProgramData\boost_interprocess
Dossier Supprimé : C:\ProgramData\eSafe
Dossier Supprimé : C:\ProgramData\Tarma Installer
Dossier Supprimé : C:\Program Files (x86)\FTdownloader V4.0
Dossier Supprimé : C:\Program Files (x86)\FTDownloader.com
Dossier Supprimé : C:\Program Files (x86)\Gophoto.it
Dossier Supprimé : C:\Program Files (x86)\Plus-HD-2.2
Dossier Supprimé : C:\Program Files (x86)\Wajam
Dossier Supprimé : C:\windows\SysWOW64\Searchprotect
Dossier Supprimé : C:\Users\Alexis\AppData\Local\PutLockerDownloader
Dossier Supprimé : C:\Users\Alexis\AppData\Local\Wajam
Dossier Supprimé : C:\Users\Alexis\AppData\Roaming\Babylon
Dossier Supprimé : C:\Users\Alexis\AppData\Roaming\eIntaller
Dossier Supprimé : C:\Users\Alexis\AppData\Roaming\file scout
Dossier Supprimé : C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
Dossier Supprimé : C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FTDownloader.com
Dossier Supprimé : C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
Dossier Supprimé : C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
Dossier Supprimé : C:\Users\Alexis\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfakeonomonapccoamcmdgpoaicnpnoo
[!] Dossier Supprimé : C:\Users\Alexis\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfakeonomonapccoamcmdgpoaicnpnoo
Fichier Supprimé : C:\Users\Alexis\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
Fichier Supprimé : C:\Users\Alexis\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
Fichier Supprimé : C:\windows\System32\Tasks\Desk 365 RunAsStdUser
Fichier Supprimé : C:\windows\Tasks\FTdownloader V4.0-codedownloader.job
Fichier Supprimé : C:\windows\System32\Tasks\FTdownloader V4.0-codedownloader
Fichier Supprimé : C:\windows\Tasks\FTdownloader V4.0-enabler.job
Fichier Supprimé : C:\windows\System32\Tasks\FTdownloader V4.0-enabler
Fichier Supprimé : C:\windows\Tasks\FTdownloader V4.0-updater.job
Fichier Supprimé : C:\windows\System32\Tasks\FTdownloader V4.0-updater
Fichier Supprimé : C:\windows\Tasks\Plus-HD-2.2-chromeinstaller.job
Fichier Supprimé : C:\windows\System32\Tasks\Plus-HD-2.2-chromeinstaller
Fichier Supprimé : C:\windows\Tasks\Plus-HD-2.2-codedownloader.job
Fichier Supprimé : C:\windows\System32\Tasks\Plus-HD-2.2-codedownloader
Fichier Supprimé : C:\windows\Tasks\Plus-HD-2.2-enabler.job
Fichier Supprimé : C:\windows\System32\Tasks\Plus-HD-2.2-enabler
Fichier Supprimé : C:\windows\Tasks\Plus-HD-2.2-firefoxinstaller.job
Fichier Supprimé : C:\windows\System32\Tasks\Plus-HD-2.2-firefoxinstaller
Fichier Supprimé : C:\windows\Tasks\Plus-HD-2.2-updater.job
Fichier Supprimé : C:\windows\System32\Tasks\Plus-HD-2.2-updater

***** [ Raccourcis ] *****

Raccourci Désinfecté : C:\Users\Public\Desktop\Opera.lnk
Raccourci Désinfecté : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
Raccourci Désinfecté : C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Raccourci Désinfecté : C:\Users\Alexis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ Registre ] *****

Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\lgnbhdnimikkoodkogjlcllngimhlapp
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\nbmafkdmkkckhggblphicnnhlgljnoje
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Clé Supprimée : HKLM\SOFTWARE\Classes\FTDownloader
Clé Supprimée : HKLM\SOFTWARE\Classes\Prod.cap
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\FTDownloader_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\FTDownloader_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\DeskSvc
Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0033036.BHO
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0033036.BHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0033036.Sandbox
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0033036.Sandbox.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0035574.BHO
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0035574.BHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0035574.Sandbox
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0035574.Sandbox.1
Clé Supprimée : HKCU\Software\8e8ad0b268e948
Clé Supprimée : HKLM\SOFTWARE\8e8ad0b268e948
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311301136}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311551174}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322302236}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322552274}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355305536}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555574}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366306636}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556674}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344304436}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344554474}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311301136}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551174}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311301136}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311551174}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311301136}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311551174}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{105CE2F6-6C71-4553-95DB-0521A2C0F060}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3614D305-2DBB-4991-9297-750DD60FFC73}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4AC48E96-EB40-4792-9D9D-70D59D8754BA}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5935E203-F846-461D-89DF-435059EFCBB8}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6419A700-23B8-46EA-800B-C0EA78E133A2}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9BC852D3-9D70-4611-9AFC-016840417A4C}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{07c3c179-9008-4abe-b495-d6264c8a9e79}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15d26b5a-3551-4b52-b99c-d717e864a34d}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5bcb5480-b45d-4961-8902-fc68717495af}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{bb4e0fee-41bb-49cb-b8a8-de0889436d5f}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d5f11bc8-e9f3-4cc3-8215-0721df7135a8}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355305536}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555574}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366306636}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556674}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Donnée Restaurée : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Clé Supprimée : HKCU\Software\1ClickDownload
Clé Supprimée : HKCU\Software\BabSolution
Clé Supprimée : HKCU\Software\DataMngr
[#] Clé Supprimée : HKCU\Software\DataMngr_Toolbar
Clé Supprimée : HKCU\Software\filescout
Clé Supprimée : HKCU\Software\installedbrowserextensions
Clé Supprimée : HKCU\Software\Softonic
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKCU\Software\AppDataLow\Software\FTdownloader V4.0
Clé Supprimée : HKCU\Software\AppDataLow\Software\Plus-HD-2.2
Clé Supprimée : HKLM\Software\DataMngr
Clé Supprimée : HKLM\Software\delta-homesSoftware
Clé Supprimée : HKLM\Software\Desksvc
Clé Supprimée : HKLM\Software\eSafeSecControl
Clé Supprimée : HKLM\Software\FTdownloader V4.0
Clé Supprimée : HKLM\Software\Plus-HD-2.2
Clé Supprimée : HKLM\Software\qvo6Software
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FTdownloader V4.0
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Plus-HD-2.2
Clé Supprimée : [x64] HKLM\SOFTWARE\Tarma Installer

***** [ Navigateurs ] *****

-\\ Internet Explorer v10.0.9200.16537

Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v

[ Fichier : C:\Users\Alexis\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0,[slws][slns]phd10\prefs.js ]


-\\ Google Chrome v30.0.1599.101

[ Fichier : C:\Users\Alexis\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Supprimée : homepage

*************************

AdwCleaner[R0].txt - [14807 octets] - [08/11/2013 22:00:07]
AdwCleaner[S0].txt - [11597 octets] - [08/11/2013 22:01:29]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11658 octets] ##########
#74225
Spoiler: Rapport de SFTGC (Pierre13) du Vendredi 08 Novembre 2013 à 22:44:33 version : 2.0.0.55
Mis à jour le 12/09/2013
Outil lancé en Mode normal et En tant qu'administrateur
Windows 8 64 bits

Tool start in C:\Users\Alexis\Downloads

640 éléments supprimés = 43.21 Mo libérés. (1 mn  13 s)

C:\Users\Alexis\AppData\Local\Temp\.challenge_plain
C:\Users\Alexis\AppData\Local\Temp\AdobeARM.log
C:\Users\Alexis\AppData\Local\Temp\AdwCleaner.jpg
C:\Users\Alexis\AppData\Local\Temp\Cleaning.ico
C:\Users\Alexis\AppData\Local\Temp\Donate.ico
C:\Users\Alexis\AppData\Local\Temp\etilqs_aKt8YzUnin4MtGZ
C:\Users\Alexis\AppData\Local\Temp\etilqs_sZxkpH7AdK9uUDm
C:\Users\Alexis\AppData\Local\Temp\Google Toolbar
C:\Users\Alexis\AppData\Local\Temp\GoogleToolbarInstaller1.log
C:\Users\Alexis\AppData\Local\Temp\Low
C:\Users\Alexis\AppData\Local\Temp\MicroThemePackDir
C:\Users\Alexis\AppData\Local\Temp\PDApp.log
C:\Users\Alexis\AppData\Local\Temp\qtsingleapp-EAABFC-151a-3-lockfile
C:\Users\Alexis\AppData\Local\Temp\qtsingleapp-FFDCAB-be4b-1-lockfile
C:\Users\Alexis\AppData\Local\Temp\Quarantine.exe
C:\Users\Alexis\AppData\Local\Temp\Report.ico
C:\Users\Alexis\AppData\Local\Temp\Scan.ico
C:\Users\Alexis\AppData\Local\Temp\TCD62D6.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD62D7.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD62D8.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD62E8.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD62E9.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD62FA.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD631C.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD636B.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD63BA.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD6449.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD6469.tmp
C:\Users\Alexis\AppData\Local\Temp\TCD64F8.tmp
C:\Users\Alexis\AppData\Local\Temp\Uninstall.ico
C:\Users\Alexis\AppData\Local\Temp\utt614E.tmp
C:\Users\Alexis\AppData\Local\Temp\utt614E.tmp.bat
C:\Users\Alexis\AppData\Local\Temp\winstore.log
C:\Users\Alexis\AppData\Local\Temp\wmplog00.sqm
C:\Users\Alexis\AppData\Local\Temp\wmsetup.log
C:\Users\Alexis\AppData\Local\Temp\__Samsung_Update
C:\Users\Alexis\AppData\Local\Temp\~gu3-ver.dat
C:\Users\Alexis\AppData\Local\Temp\~upgrade.dat
C:\Users\Alexis\AppData\Local\Temp\__Samsung_Update\DebugAppLog.txt
C:\Users\Alexis\AppData\Local\Temp\SWM2Temp\Compresses
C:\Users\Alexis\AppData\Local\Temp\SWM2Temp\Packages
C:\Users\Alexis\AppData\Local\Temp\SWM2Temp\SWM_20131108.log
C:\Users\Alexis\AppData\Local\Temp\Skype\DbTemp
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\1001838_386873241418774_1540269339_n.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\1013594_10200247076725568_265734994_n.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\1044423_432943443470354_977568660_n.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\128900__steklo-vision__steklo-let-me-inside-acapella.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\4seconds (Kevin Hills Remix).lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Ableton Project Info.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\agent.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\AProject.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Arksun Soundbank.fxb.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Arp Presets.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Bingo Players - Whoomp there's the Rattle (Ctrl Alt Del Bootleg) - YouTube.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\bluemissdu323993233202.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\bobo nu.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Bouillet Alexis.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Brouillon_5008404892.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Camera Roll.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\CFA Audio Synergy Vol.1 Soundset.fxb.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Clé USB.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Compte sram.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Contente.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\copine chiante.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Cv Gaetan.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\CV_Alexis_Bouillet _rapidecv (1).lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\CV_Alexis_Bouillet _rapidecv.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\CV_Gaetan_Firmino_rapidecv (1).lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\CV_Gaetan_Firmino_rapidecv.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Dark Horse.fxb.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Deadmau5 - Ghosts N Stuff piano - YouTube.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\deadmau5 - Sofi Needs a Ladder - YouTube.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Disc_Info_User.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\DMS Sylenth1 Soundbank.fxb.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Documents.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\DxDiag.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Fontana Soundbank Part I.fxb.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\FRA.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\G@â3n.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Gaetan.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Historique.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Horaire taff.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-ludovic.long.7fref=ts.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=10200142177810835set=a.1309740777252.47138.1042566919type=1theater.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=140892499438323set=a.135787076615532.1073741826.135786466615593type=1permPage=1.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=141069746087265set=a.135787076615532.1073741826.135786466615593type=1permPage=1.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=141180792742827set=a.135787076615532.1073741826.135786466615593type=1permPage=1.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=141409439386629set=a.135787076615532.1073741826.135786466615593type=1permPage=1.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=143948382466068set=a.135787076615532.1073741826.135786466615593type=1theater.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=144218962439010set=a.135787076615532.1073741826.135786466615593type=1theater.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=411232002319342set=a.377261612383048.1073741826.347588645350345type=1.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=479632088793078set=a.354771914612430.84928.354769291279359type=1theater.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=511535848895898set=a.420911941291623.87657.411447815571369type=1.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.facebook.com-photo.phpfbid=579306492114279set=a.232284746816457.66272.201242419920690type=1.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\http--www.g5e.com-.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\https--d.docs.live.net-5b5cd02617d7ff9e-Documents-Mets%20BAC%202012.doc.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\https--login.live.com-resetpw.srfmkt=fr-FR.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\I remember years ago.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\IMG_18062013_015503.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\IMG_22062013_013648.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Info.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Jungle Jim - Nek Minnit (sample).lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Lettre de motivation.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Lettre pour ar.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\License.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\Live 8.2.2.lnk
C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Recent\maximumsounds - ANALOG EDITION.fxb.lnk
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC102.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC143B.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC3812.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC42A0.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC5066.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC5AFE.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC6D30.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC6FEA.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARC82DA.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCAC8D.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCB517.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCBC63.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCBD80.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCC618.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCD4F5.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCDEE3.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCE43A.tmp
C:\Users\Alexis\AppData\Local\Microsoft\SmartScreen\ARCFC1F.tmp
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\04AFA8793E5CDC4A81C6CD4554A30707
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_13D04765184245BACBADE6B481C0B93F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_2FFE778CED2FD9BBAB74B5314F3440CA
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_86D3F159CB1C10E9A85FC2F8CF96D8A7
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_BFF3E82445C199812E8EC4CC74EA6FD4
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_EC2B8F0C530DA57B6BD72F9ED19E4B95
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_F0ED2E2E4C18AF767323D306D9F72B9E
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_F3F138DDA4E72F849B7E03101CED9406
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\17704B7A99D010A5658DCB9355B65471_5FEA55F2BCB4685A54058A290E2CED24
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\17B8570797F8F0965A8D2F21BCB58771
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1DAF2884EC4DFA96BA4A58D4DBC9C406
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F39B5CFACECFDE48DB25BCA2231FAC6_0A3DCB0602C6199DCA0F1C7BEEB45738
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F39B5CFACECFDE48DB25BCA2231FAC6_BF71D6E97073563B04061FB85FA661F7
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\23B523C9E7746F715D33C6527C18EB9D
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_18C340F8484AB6053D39574650ADBB4D
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_713760179211FF4E36BD43C5A97F3E14
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_A3F497605235EAA66C9C2CE83FA4783F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2E980CF7BB84455884A2F90C0668C729_F4A4973DA1B04433966D8A2D389761DA
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\30F7B429BB1DACA9B591B41E016BED66_F6024CD0767F1B4C9F060C7479C6DC83
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_326CA95402CB60B6A60C4129D07E3080
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_4BDA944235F1446F185236D493959297
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_7DCDC9B86C5DA37FEB2732F7D1A586E5
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_BD1446EE1580F7EA207C073F7ABA5015
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_D734EC3DD00546F46D368325396086B0
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_E638F9EA31276B58E6A32FDD5296AB01
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_E9FCAC30D964AFC39902EC989B1CC9E8
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\69CB1FD121A3CCB01B235A51441959D6_078DC4B2390A7EFBCA49C4D0774B67BE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6B7AED56F69397028F35E77E6DD681FC
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6F0788892ECB795F56E658EDB1CA93AA_32ED58A7CD9AC095E8DCEF33F5587722
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\72FB5B1C7905530E0DF39758E01A3573_B9516EA745B9469F500A97DB517D7329
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77FBC64BA73370EC2F659BAD977FF2AD_9767A5403B067D539A02E2AD0F3C2C4A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\783DF2F5A7C9BC04C36663632D14B993_09A85C5418FB163D61A6CDA83D9C0B2C
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\783DF2F5A7C9BC04C36663632D14B993_169DE3439FD2D9FE0AE07883B5A27A1B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\79841F8EF00FBA86D33CC5A47696F165
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_341DF49E12ABCCEC481FF9A8AC673987
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_E543A44216096629ACF4944FE0529DA3
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7C1B7BA2D0A4C1307F3A4A532F819AA1_38CD2CE1C4D499F93A40C9F7011B3B4D
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D1F03728133589A90656A87E482B21F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_1D5A876A9113EC07224C45E5A870E3BD
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_01E00B40ABF1B916483F1FABF3FED9C9
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_2F1BD5B4F9DBD26AB429C868029F876C
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_3B544D333012FB463337A933E27FA00D
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_4B3AFB4B7701485668CA9201EFF1EAAB
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_602DEDB8C7D6326D5C8D775461CB2C26
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_76BFC97063D800DD538B6BF9B3A20236
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_813AE7378B95076DBAB7346A5BE89331
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_83C49988C876DEA4BB8471001624E1A0
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_918340BA089892122B5626AE042DBBDE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_95BE0E24685C739E0287588432223979
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_B313A6AEB91DC2BE7A8547095314EC1C
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_C7911349A4546D0BB1F96FCC090CF908
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_D3BA2DAAEBA4EB4FA2A3BEFF712D7E5A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_E095D9B517370E166F7F183C25C06480
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_E4DFCF5325A7B2A17D0E55108E8A34A8
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_EC9834D79F6FC380DD6205AD8CA74CEB
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_F0D84CB7919AFA8EDA0C1950AA5534A1
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_F2EFD568D6CA72D7BC802424E3F92B9A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_F9758F0CEE4021D579BC2D754B77BF07
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\855CF405355328EC482A28D56A44CFB0_A91DA8FFE4E504C2D77546D178CA31EE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\855CF405355328EC482A28D56A44CFB0_C9CFC4000454F3107F0A791C77D31E7E
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_1E5D470765E0BE1964814B1F5A3581DC
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8890A77645B73478F5B1DED18ACBF795_D3DB95C0E7608ACC9AA10ACCCCEBBDF5
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8EBFACB3A66359F9514D044C86BA4794
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_6086784A14CE56EB65CA13296B6BFBD9
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_AD5BB4197D571391D85340813E0C33FB
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\91ECFED5143F7F4F4576655D8EFAB51C_F0B0B51F8302032AA78CF9EBF817E45B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\944E5B697BC46FE14AB888AE8A1EBB99_2269679B991E7B74D029ADC1DCE94782
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_AD9E7615297A3A83320AACE5801A04F9
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_CFEA3385E24D822B0027B3D9A091B242
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9CD8982C888AB544945893084BD7523A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B3BB9C1BA2D19E090AE305B2683903A0_6F0A84CE2BA99BD19D42C92610275852
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B90B117906B8A74C79D1BC450C2B94B1_A54F26A8A41DE52C237D54D67F12793F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_35DB72DF5C829F76FA820993F2C82D80
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_6FD1BEFD298F4FD3EE4B4EE2E6631CC7
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_BC4EC46B2A6D9424FFBAF3A0C035586C
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C29AA1B9D7AA8A9381D2CBB3F631AA4B_FBB02FE186F747D15644A2542FC215F5
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C8E7EC0C85688F4738F3BE49B104BA67
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_B9385197A2757B8FEC32C5C94631DF12
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA7B2D59B4E9BC2D316D1AECDFC12F63_E8FFB3D833ACBBA2A753BCE3F81C274B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CED209487D21B905304C249DD63B49BA_763EF36FA92455C61C561841DEEE7EE8
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0F063B6B88A2B8BFE21C3993A613447
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_D33192D58AA9CA2B9097E848E9FE86DE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E2EF7F0FB7284B9ACFD4F65D02218479
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E5F99F8CA677C9C5793DF9906EE2DCB6_FA69CC746B175989B0FDC2BBFA2BD56B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E63A640A06A2B005AB42F3250BC98D9E_6020995806BF99A1FBC324A7B889F612
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4B372709D6C2AD766C34D274501DC76_C08D897FBCD7D5D638FCD154D1404CBE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4D9C889B7AEBCF4E1A2DAABC5C3628A_27CA181CDBF71B1093D41027269F017A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB788E090BC1F3AA2FBC9E8FB2859601
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FCEA474F228C13CD0DAD678431D0ACFC
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\04AFA8793E5CDC4A81C6CD4554A30707
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_13D04765184245BACBADE6B481C0B93F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_2FFE778CED2FD9BBAB74B5314F3440CA
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_86D3F159CB1C10E9A85FC2F8CF96D8A7
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_BFF3E82445C199812E8EC4CC74EA6FD4
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_EC2B8F0C530DA57B6BD72F9ED19E4B95
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_F0ED2E2E4C18AF767323D306D9F72B9E
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_F3F138DDA4E72F849B7E03101CED9406
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\17704B7A99D010A5658DCB9355B65471_5FEA55F2BCB4685A54058A290E2CED24
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\17B8570797F8F0965A8D2F21BCB58771
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1DAF2884EC4DFA96BA4A58D4DBC9C406
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F39B5CFACECFDE48DB25BCA2231FAC6_0A3DCB0602C6199DCA0F1C7BEEB45738
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F39B5CFACECFDE48DB25BCA2231FAC6_BF71D6E97073563B04061FB85FA661F7
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\23B523C9E7746F715D33C6527C18EB9D
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_18C340F8484AB6053D39574650ADBB4D
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_713760179211FF4E36BD43C5A97F3E14
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_A3F497605235EAA66C9C2CE83FA4783F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2E980CF7BB84455884A2F90C0668C729_F4A4973DA1B04433966D8A2D389761DA
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\30F7B429BB1DACA9B591B41E016BED66_F6024CD0767F1B4C9F060C7479C6DC83
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_AFC22B77ED08EE3E2B28B6DE75CADDF5
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_326CA95402CB60B6A60C4129D07E3080
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_4BDA944235F1446F185236D493959297
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_7DCDC9B86C5DA37FEB2732F7D1A586E5
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_BD1446EE1580F7EA207C073F7ABA5015
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_D734EC3DD00546F46D368325396086B0
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_E638F9EA31276B58E6A32FDD5296AB01
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_E9FCAC30D964AFC39902EC989B1CC9E8
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\69CB1FD121A3CCB01B235A51441959D6_078DC4B2390A7EFBCA49C4D0774B67BE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_0AB46376AFB6F40B0426680E3025D384
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_35BFA9D40D21E81B408449EB9D85CCA4
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AA3321A15A787985201D7A6820782F0_4E35DE6F4FCFB7BE2C045F6B5ED89FC8
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6B7AED56F69397028F35E77E6DD681FC
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6F0788892ECB795F56E658EDB1CA93AA_32ED58A7CD9AC095E8DCEF33F5587722
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\72FB5B1C7905530E0DF39758E01A3573_B9516EA745B9469F500A97DB517D7329
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77FBC64BA73370EC2F659BAD977FF2AD_9767A5403B067D539A02E2AD0F3C2C4A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\783DF2F5A7C9BC04C36663632D14B993_09A85C5418FB163D61A6CDA83D9C0B2C
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\783DF2F5A7C9BC04C36663632D14B993_169DE3439FD2D9FE0AE07883B5A27A1B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\79841F8EF00FBA86D33CC5A47696F165
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_341DF49E12ABCCEC481FF9A8AC673987
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_E543A44216096629ACF4944FE0529DA3
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7C1B7BA2D0A4C1307F3A4A532F819AA1_38CD2CE1C4D499F93A40C9F7011B3B4D
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D1F03728133589A90656A87E482B21F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_1D5A876A9113EC07224C45E5A870E3BD
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_8CA7164968F366C9A94AC8E71C4BDD9B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_01E00B40ABF1B916483F1FABF3FED9C9
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_2F1BD5B4F9DBD26AB429C868029F876C
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_3B544D333012FB463337A933E27FA00D
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_4B3AFB4B7701485668CA9201EFF1EAAB
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_602DEDB8C7D6326D5C8D775461CB2C26
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_76BFC97063D800DD538B6BF9B3A20236
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_813AE7378B95076DBAB7346A5BE89331
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_83C49988C876DEA4BB8471001624E1A0
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_918340BA089892122B5626AE042DBBDE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_95BE0E24685C739E0287588432223979
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_B313A6AEB91DC2BE7A8547095314EC1C
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_C7911349A4546D0BB1F96FCC090CF908
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_D3BA2DAAEBA4EB4FA2A3BEFF712D7E5A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_E095D9B517370E166F7F183C25C06480
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_E4DFCF5325A7B2A17D0E55108E8A34A8
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_EC9834D79F6FC380DD6205AD8CA74CEB
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_F0D84CB7919AFA8EDA0C1950AA5534A1
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_F2EFD568D6CA72D7BC802424E3F92B9A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_F9758F0CEE4021D579BC2D754B77BF07
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\855CF405355328EC482A28D56A44CFB0_A91DA8FFE4E504C2D77546D178CA31EE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\855CF405355328EC482A28D56A44CFB0_C9CFC4000454F3107F0A791C77D31E7E
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_1E5D470765E0BE1964814B1F5A3581DC
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8890A77645B73478F5B1DED18ACBF795_D3DB95C0E7608ACC9AA10ACCCCEBBDF5
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8EBFACB3A66359F9514D044C86BA4794
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_6086784A14CE56EB65CA13296B6BFBD9
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_AD5BB4197D571391D85340813E0C33FB
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\91ECFED5143F7F4F4576655D8EFAB51C_F0B0B51F8302032AA78CF9EBF817E45B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\944E5B697BC46FE14AB888AE8A1EBB99_2269679B991E7B74D029ADC1DCE94782
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_0D0504E280D4BC90041F089A5D901106
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_AD9E7615297A3A83320AACE5801A04F9
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_CFEA3385E24D822B0027B3D9A091B242
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9CD8982C888AB544945893084BD7523A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B3BB9C1BA2D19E090AE305B2683903A0_6F0A84CE2BA99BD19D42C92610275852
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B90B117906B8A74C79D1BC450C2B94B1_A54F26A8A41DE52C237D54D67F12793F
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_35DB72DF5C829F76FA820993F2C82D80
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_6FD1BEFD298F4FD3EE4B4EE2E6631CC7
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_BC4EC46B2A6D9424FFBAF3A0C035586C
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C29AA1B9D7AA8A9381D2CBB3F631AA4B_FBB02FE186F747D15644A2542FC215F5
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C8E7EC0C85688F4738F3BE49B104BA67
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_B9385197A2757B8FEC32C5C94631DF12
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA7B2D59B4E9BC2D316D1AECDFC12F63_E8FFB3D833ACBBA2A753BCE3F81C274B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CED209487D21B905304C249DD63B49BA_763EF36FA92455C61C561841DEEE7EE8
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0F063B6B88A2B8BFE21C3993A613447
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_835A2FD7EE5F1F37B7872C78D42A88BF
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_D33192D58AA9CA2B9097E848E9FE86DE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E2EF7F0FB7284B9ACFD4F65D02218479
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E5F99F8CA677C9C5793DF9906EE2DCB6_FA69CC746B175989B0FDC2BBFA2BD56B
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E63A640A06A2B005AB42F3250BC98D9E_6020995806BF99A1FBC324A7B889F612
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4B372709D6C2AD766C34D274501DC76_C08D897FBCD7D5D638FCD154D1404CBE
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4D9C889B7AEBCF4E1A2DAABC5C3628A_27CA181CDBF71B1093D41027269F017A
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB788E090BC1F3AA2FBC9E8FB2859601
C:\Users\Alexis\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FCEA474F228C13CD0DAD678431D0ACFC
C:\Users\Alexis\AppData\Local\Opera\Opera\cache\g_0000
C:\Users\Alexis\AppData\Local\Opera\Opera\cache\g_0001
C:\Users\Alexis\AppData\Local\Opera\Opera\cache\g_0002
C:\Users\Alexis\AppData\Local\Opera\Opera\cache\sesn
C:\Users\Alexis\AppData\Local\Opera\Opera\cache\revocation\g_0000
C:\Users\Alexis\AppData\Local\Opera\Opera\cache\assoc002\sesn
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.0.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.1.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.10.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.11.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.12.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.13.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.14.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.15.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.16.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.17.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.18.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.19.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.2.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.3.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.4.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.5.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.6.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.7.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.8.sqm
C:\Users\Alexis\AppData\Local\Microsoft\Sqm\WindowsLL\WindowsLL.wns.9.sqm
C:\Users\Alexis\AppData\Local\Temp\Skype
C:\Users\Alexis\AppData\Local\Temp\SWM2Temp
C:\windows\TEMP\27F0AA066C0B7D4449F7C436D07B6248-Sigs
C:\windows\TEMP\FireFly(20131106195128704).log
C:\windows\TEMP\FireFly(20131108210511740).log
C:\windows\TEMP\GoogleToolbarInstaller1.log
C:\windows\TEMP\integratedoffice.exe_c2ruidll(20131106195128704).log
C:\windows\TEMP\integratedoffice.exe_c2ruidll(20131108210511740).log
C:\windows\TEMP\integratedoffice.exe_streamserver(20131106195130704).log
C:\windows\TEMP\integratedoffice.exe_streamserver(20131108210511740).log
C:\windows\TEMP\lpksetup-20131106-195201-0.log
C:\windows\TEMP\lpksetup-20131108-210525-0.log
C:\windows\TEMP\lpksetup-20131108-220254-0.log
C:\windows\TEMP\MpCmdRun.log
C:\windows\TEMP\MpSigStub.log
C:\windows\TEMP\SWM2Temp
C:\windows\TEMP\winstore.log
C:\windows\TEMP\SWM2Temp\SWM_20131106.log
C:\windows\TEMP\SWM2Temp\SWM_20131108.log
C:\windows\Prefetch\ABLETON LIVE 9 SUITE.EXE-5DC95217.pf
C:\windows\Prefetch\ACRORD32.EXE-153662D3.pf
C:\windows\Prefetch\ACTIVATEDESKTOP.EXE-389C313A.pf
C:\windows\Prefetch\ADOBE AIR INSTALLER.EXE-A6311F4B.pf
C:\windows\Prefetch\ADOBE AIR INSTALLER.EXE-EDF40CE6.pf
C:\windows\Prefetch\ADOBE AIR UPDATER.EXE-CED1D1BD.pf
C:\windows\Prefetch\ADOBEARM.EXE-813E932C.pf
C:\windows\Prefetch\ADWCLEANER.EXE-B328D22A.pf
C:\windows\Prefetch\AgAppLaunch.db
C:\windows\Prefetch\AgCx_SC1.db
C:\windows\Prefetch\AgCx_SC1.db.trx
C:\windows\Prefetch\AgCx_SC2.db
C:\windows\Prefetch\AgCx_SC4.db
C:\windows\Prefetch\AgCx_SC5.db
C:\windows\Prefetch\AgGlFaultHistory.db
C:\windows\Prefetch\AgGlFgAppHistory.db
C:\windows\Prefetch\AgGlGlobalHistory.db
C:\windows\Prefetch\AgGlUAD_P_S-1-5-21-182115508-3913688524-3247281400-1001.db
C:\windows\Prefetch\AgGlUAD_S-1-5-21-182115508-3913688524-3247281400-1001.db
C:\windows\Prefetch\AgRobust.db
C:\windows\Prefetch\AM_DELTA_PATCH_1.161.1631.0.E-4D27A7C9.pf
C:\windows\Prefetch\ARA.EXE-A6FD5EAC.pf
C:\windows\Prefetch\ATBROKER.EXE-8B8F7F7C.pf
C:\windows\Prefetch\AUDIODG.EXE-9848A323.pf
C:\windows\Prefetch\AUTHHOST.EXE-44C90B62.pf
C:\windows\Prefetch\BACKGROUNDTASKHOST.EXE-2E2383C0.pf
C:\windows\Prefetch\BACKGROUNDTRANSFERHOST.EXE-D38B78B8.pf
C:\windows\Prefetch\BTTRAY.EXE-5C8F7D59.pf
C:\windows\Prefetch\BTVSTACK.EXE-0FA626F5.pf
C:\windows\Prefetch\BUBBLES.SCR-55ABA833.pf
C:\windows\Prefetch\CALC.EXE-0FE8F3A9.pf
C:\windows\Prefetch\CAMERASETTINGSUIHOST.EXE-3D31A9A8.pf
C:\windows\Prefetch\CHROME.EXE-CCF9F3F4.pf
C:\windows\Prefetch\CLEANUPTXRLOGS.EXE-E3BABE71.pf
C:\windows\Prefetch\CLMLSVC_P2G8.EXE-B2D16FDB.pf
C:\windows\Prefetch\CLUPDATER.EXE-64D36E25.pf
C:\windows\Prefetch\CMD.EXE-2EB3E6E2.pf
C:\windows\Prefetch\CMD.EXE-CD245F9E.pf
C:\windows\Prefetch\CONHOST.EXE-F98A1078.pf
C:\windows\Prefetch\CONSENT.EXE-2D674CE4.pf
C:\windows\Prefetch\CONTROL.EXE-5BCB0217.pf
C:\windows\Prefetch\CREDENTIALUIBROKER.EXE-E9F92FD0.pf
C:\windows\Prefetch\DELEGATE_EXECUTE.EXE-DB697BCE.pf
C:\windows\Prefetch\DISPLAYSWITCH.EXE-4D432882.pf
C:\windows\Prefetch\DLLHOST.EXE-00AD1665.pf
C:\windows\Prefetch\DLLHOST.EXE-084955AE.pf
C:\windows\Prefetch\DLLHOST.EXE-5D09CA10.pf
C:\windows\Prefetch\DLLHOST.EXE-BF7B5509.pf
C:\windows\Prefetch\DLLHOST.EXE-CE99ACA7.pf
C:\windows\Prefetch\DLLHOST.EXE-E6B64B6C.pf
C:\windows\Prefetch\DOFUSMOD.EXE-3B1232E0.pf
C:\windows\Prefetch\DOLPHIN.EXE-A97962AE.pf
C:\windows\Prefetch\DRIFT MANIA CHAMPIONSHIP 2.EX-3E88263E.pf
C:\windows\Prefetch\DWM.EXE-F29FE9E2.pf
C:\windows\Prefetch\dynreservedpri.db
C:\windows\Prefetch\EASYSETTINGSCMDSERVER.EXE-1B8CA773.pf
C:\windows\Prefetch\ELEMENTO.EXE-DCA803C3.pf
C:\windows\Prefetch\ERUNT.EXE-399FC5BA.pf
C:\windows\Prefetch\ETDCTRL.EXE-91BAE8DE.pf
C:\windows\Prefetch\EXPLORER.EXE-03C49D11.pf
C:\windows\Prefetch\FACEBOOKUPDATE.EXE-8F70E8F9.pf
C:\windows\Prefetch\FACEBOOKVIDEOCALLING.EXE-46B8062B.pf
C:\windows\Prefetch\FAHRENHEIT.EXE-E09AF9AF.pf
C:\windows\Prefetch\FILESCOUT.EXE-AAD2EC69.pf
C:\windows\Prefetch\FLASHUTIL_ACTIVEX.EXE-4E6AE223.pf
C:\windows\Prefetch\FRST64.EXE-1BC11821.pf
C:\windows\Prefetch\FTDOWNLOADER V4.0-BG.EXE-B8A8A9F3.pf
C:\windows\Prefetch\FTDOWNLOADER V4.0-CODEDOWNLOA-4A1C7DF8.pf
C:\windows\Prefetch\FTDOWNLOADER V4.0-ENABLER.EXE-DD079CAB.pf
C:\windows\Prefetch\FTDOWNLOADER V4.0-UPDATER.EXE-DFC2391F.pf
C:\windows\Prefetch\G1.EXE-407CC4E2.pf
C:\windows\Prefetch\GFXUI.EXE-2E721AA9.pf
C:\windows\Prefetch\GLCND.EXE-1C7784D8.pf
C:\windows\Prefetch\GLCND.EXE-E78A3D46.pf
C:\windows\Prefetch\GOOGLETOOLBARMANAGER_08875ABF-6CE8F09A.pf
C:\windows\Prefetch\GOOGLETOOLBARNOTIFIER.EXE-B25C45A8.pf
C:\windows\Prefetch\GOOGLETOOLBARUSER_32.EXE-992C17DF.pf
C:\windows\Prefetch\GOOGLEUPDATE.EXE-62E5E10F.pf
C:\windows\Prefetch\GOOGLEUPDATEONDEMAND.EXE-54C2945A.pf
C:\windows\Prefetch\GOOGLEUPDATERSERVICE.EXE-5B31194A.pf
C:\windows\Prefetch\GUNINSTALLER.EXE-7F13E53E.pf
C:\windows\Prefetch\GUS3F0.TMP-3C93C6FC.pf
C:\windows\Prefetch\HILLSOFGLORY3D.EXE-4C28DCDB.pf
C:\windows\Prefetch\HKCMD.EXE-15DC91D5.pf
C:\windows\Prefetch\IEXPLORE.EXE-6C28DB75.pf
C:\windows\Prefetch\IEXPLORE.EXE-6C28DB76.pf
C:\windows\Prefetch\IEXPLORE.EXE-7A9337F2.pf
C:\windows\Prefetch\IEXPLORE.EXE-F4FB5D2D.pf
C:\windows\Prefetch\IEXPLORE.EXE-F4FB5D2F.pf
C:\windows\Prefetch\IGFXSRVC.EXE-F41E6E8E.pf
C:\windows\Prefetch\IGFXTRAY.EXE-21BDFE68.pf
C:\windows\Prefetch\INTEGRATEDOFFICE.EXE-DFB67DA0.pf
C:\windows\Prefetch\INTEGRATOR.EXE-0112F6B4.pf
C:\windows\Prefetch\INTELMEFWSERVICE.EXE-265333D9.pf
C:\windows\Prefetch\ISMAGENT.EXE-47E31896.pf
C:\windows\Prefetch\ITEM_20130524_1136_WIN_P05RBF-7D02CE4A.pf
C:\windows\Prefetch\JAMIEOLIVER.EXE-9FC0F0FF.pf
C:\windows\Prefetch\JETPACKJOYRIDE_WIN8.EXE-1910CA71.pf
C:\windows\Prefetch\JEU_PETIT_BAC_SOLO_FREE.EXE-37AEE4FF.pf
C:\windows\Prefetch\KINGDOM_WIN8.EXE-8F32CE1E.pf
C:\windows\Prefetch\KNIGHTS.EXE-F1890E74.pf
C:\windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
C:\windows\Prefetch\Layout.ini
C:\windows\Prefetch\LMS.EXE-409EDB07.pf
C:\windows\Prefetch\LOGONUI.EXE-E35F76FB.pf
C:\windows\Prefetch\METROAPP.EXE-B6E8D098.pf
C:\windows\Prefetch\MOBILEAPSET.EXE-2C67F0CE.pf
C:\windows\Prefetch\MPCMDRUN.EXE-6520183E.pf
C:\windows\Prefetch\MPSIGSTUB.EXE-4D562760.pf
C:\windows\Prefetch\MSASCUI.EXE-4ED47FD9.pf
C:\windows\Prefetch\MSDT.EXE-A16F1692.pf
C:\windows\Prefetch\MSIEXEC.EXE-7D20CFB0.pf
C:\windows\Prefetch\MSIEXEC.EXE-BAE57A74.pf
C:\windows\Prefetch\MSPAINT.EXE-512C7E1E.pf
C:\windows\Prefetch\MUSHROOMAGE_WIN8.EXE-A5D729C0.pf
C:\windows\Prefetch\NGENTASK.EXE-4DB88ADA.pf
C:\windows\Prefetch\NGENTASK.EXE-CD4E002C.pf
C:\windows\Prefetch\NOTEPAD.EXE-B28CC291.pf
C:\windows\Prefetch\ONENOTE.EXE-6A88D7FE.pf
C:\windows\Prefetch\Op-EXPLORER.EXE-03C49D11-000000F5.pf
C:\windows\Prefetch\OPENWITH.EXE-BA0DC300.pf
C:\windows\Prefetch\OPERA.EXE-66EC3BD9.pf
C:\windows\Prefetch\PDVD10SERV.EXE-99C8A7B5.pf
C:\windows\Prefetch\PfSvPerfStats.bin
C:\windows\Prefetch\PHOTOSHOPELEMENTSFILEAGENT.EX-1606E2AE.pf
C:\windows\Prefetch\PING.EXE-CF0A440C.pf
C:\windows\Prefetch\PLUS-HD-2.2-BG.EXE-19C78F41.pf
C:\windows\Prefetch\PLUS-HD-2.2-CHROMEINSTALLER.E-CF810D48.pf
C:\windows\Prefetch\PLUS-HD-2.2-CODEDOWNLOADER.EX-CAECEC06.pf
C:\windows\Prefetch\PLUS-HD-2.2-ENABLER.EXE-95865109.pf
C:\windows\Prefetch\PLUS-HD-2.2-FIREFOXINSTALLER.-F4167011.pf
C:\windows\Prefetch\PLUS-HD-2.2-UPDATER.EXE-9840ED7D.pf
C:\windows\Prefetch\POKEMON WHO AM I.EXE-C8CA9DC0.pf
C:\windows\Prefetch\POKÉMONGEMME.EXE-33A3717B.pf
C:\windows\Prefetch\POWERDVD10.EXE-6CD2ECA6.pf
C:\windows\Prefetch\PROJECT64.EXE-234DD2AC.pf
C:\windows\Prefetch\RAVCPL64.EXE-C0BB540D.pf
C:\windows\Prefetch\READER_SL.EXE-350EE930.pf
C:\windows\Prefetch\ReadyBoot
C:\windows\Prefetch\REG.EXE-55DF2F8B.pf
C:\windows\Prefetch\REG.EXE-6A8B6960.pf
C:\windows\Prefetch\REGMECH.EXE-46E96623.pf
C:\windows\Prefetch\REGSVR32.EXE-E1DBB6D8.pf
C:\windows\Prefetch\ROMSTATION.EXE-E8C9FF13.pf
C:\windows\Prefetch\ROMSTATION_SETUP_FR.TMP-7BDBB986.pf
C:\windows\Prefetch\ROMSTATION_SETUP_FR.TMP-C407A0EA.pf
C:\windows\Prefetch\RUNDLL32.EXE-05A90954.pf
C:\windows\Prefetch\RUNDLL32.EXE-067A12BD.pf
C:\windows\Prefetch\RUNDLL32.EXE-12C3B419.pf
C:\windows\Prefetch\RUNDLL32.EXE-141F7849.pf
C:\windows\Prefetch\RUNDLL32.EXE-210D3DBE.pf
C:\windows\Prefetch\RUNDLL32.EXE-528DD7BF.pf
C:\windows\Prefetch\RUNDLL32.EXE-90628860.pf
C:\windows\Prefetch\RUNDLL32.EXE-A4DB1DC0.pf
C:\windows\Prefetch\RUNDLL32.EXE-AC024951.pf
C:\windows\Prefetch\RUNDLL32.EXE-E41090C3.pf
C:\windows\Prefetch\RUNONCE.EXE-E874B0D0.pf
C:\windows\Prefetch\RUNTIMEBROKER.EXE-17E2786F.pf
C:\windows\Prefetch\SCHTASKS.EXE-0AD36442.pf
C:\windows\Prefetch\SCHTASKS.EXE-BA1E321E.pf
C:\windows\Prefetch\SEARCHFILTERHOST.EXE-10E4267C.pf
C:\windows\Prefetch\SEARCHINDEXER.EXE-EF8503D3.pf
C:\windows\Prefetch\SEARCHPROTOCOLHOST.EXE-C6CFE2A8.pf
C:\windows\Prefetch\SETTINGSYNCHOST.EXE-DD400067.pf
C:\windows\Prefetch\SETTOUCHPADCONTROL64.EXE-CAF017E2.pf
C:\windows\Prefetch\SETUP.EXE-2456CFF1.pf
C:\windows\Prefetch\SETUP.EXE-836ABBE4.pf
C:\windows\Prefetch\SETUP.EXE-AD21646C.pf
C:\windows\Prefetch\SFTGC.EXE-735EF847.pf
C:\windows\Prefetch\SKYPE.EXE-67114AC9.pf
C:\windows\Prefetch\SKYPESETUP.EXE-DCD57EF5.pf
C:\windows\Prefetch\SMANAGER.EXE-DCDBB0BC.pf
C:\windows\Prefetch\SNDVOL.EXE-276AC160.pf
C:\windows\Prefetch\SPOTIFY.EXE-E743AFD1.pf
C:\windows\Prefetch\SPOTIFYSETUP.EXE-AB1EE977.pf
C:\windows\Prefetch\SPOTIFYWEBHELPER.EXE-E64B2435.pf
C:\windows\Prefetch\SPOTIFY_NEW.EXE-EEABFFEE.pf
C:\windows\Prefetch\SPPSVC.EXE-7B160CA5.pf
C:\windows\Prefetch\SPWEBINST0.EXE-3457411E.pf
C:\windows\Prefetch\SSDMONITOR.EXE-F5A65224.pf
C:\windows\Prefetch\STANDOFOOD3.X86.EXE-13F51C83.pf
C:\windows\Prefetch\SVCHOST.EXE-5A956D1E.pf
C:\windows\Prefetch\SVCHOST.EXE-69B6023D.pf
C:\windows\Prefetch\SWMAGENT.EXE-19A0EDB9.pf
C:\windows\Prefetch\SYSTEMSETTINGS.EXE-D8CC3B5E.pf
C:\windows\Prefetch\TASKENG.EXE-23205583.pf
C:\windows\Prefetch\TASKHOST.EXE-05B3EDF6.pf
C:\windows\Prefetch\TASKHOST.EXE-29D61DAB.pf
C:\windows\Prefetch\TASKHOST.EXE-985C34E6.pf
C:\windows\Prefetch\TASKHOST.EXE-F2C7AEBC.pf
C:\windows\Prefetch\TASKHOSTEX.EXE-7356AAC0.pf
C:\windows\Prefetch\TASKMGR.EXE-39AABA37.pf
C:\windows\Prefetch\TEMPLATE.EXE-1C6C265E.pf
C:\windows\Prefetch\TEMPLATE.EXE-28ABFE14.pf
C:\windows\Prefetch\TEMPLATE.EXE-2B2ED028.pf
C:\windows\Prefetch\THUMBNAILEXTRACTIONHOST.EXE-C3FB8861.pf
C:\windows\Prefetch\TIWORKER.EXE-375F3D59.pf
C:\windows\Prefetch\TRACERPT.EXE-DCE7017F.pf
C:\windows\Prefetch\TRUSTEDINSTALLER.EXE-B018CCBF.pf
C:\windows\Prefetch\TÉLÉCHARGER LE FICHIER 174585-33B9AB00.pf
C:\windows\Prefetch\UNS.EXE-9B1279FB.pf
C:\windows\Prefetch\UPDATERSTARTUPUTILITY.EXE-F0FE65C5.pf
C:\windows\Prefetch\UPGRADE.EXE-AAFD1969.pf
C:\windows\Prefetch\UPLAUNCHER.EXE-1385FBFE.pf
C:\windows\Prefetch\USERINIT.EXE-7FD17ED1.pf
C:\windows\Prefetch\UTILMAN.EXE-3520356C.pf
C:\windows\Prefetch\UTORRENT.EXE-472A50FB.pf
C:\windows\Prefetch\VAVSTOREAPPV2.EXE-2164E4E7.pf
C:\windows\Prefetch\VENDORAPIRUN64.EXE-358606D0.pf
C:\windows\Prefetch\VIRTUALDRIVE.EXE-018D4C1C.pf
C:\windows\Prefetch\VSSVC.EXE-206E55B3.pf
C:\windows\Prefetch\WAJAMUPDATER.EXE-2C92FC91.pf
C:\windows\Prefetch\WEBCAM.EXE-B7318C33.pf
C:\windows\Prefetch\WERFAULT.EXE-94CE7668.pf
C:\windows\Prefetch\WERMGR.EXE-D948C216.pf
C:\windows\Prefetch\WIN64SHELLLINK.EXE-6B51BEED.pf
C:\windows\Prefetch\WINRAR.EXE-72513729.pf
C:\windows\Prefetch\WINWORD.EXE-2437DA78.pf
C:\windows\Prefetch\WLSETUP-WEB (1).EXE-CE71BD59.pf
C:\windows\Prefetch\WLXPHOTOGALLERY.EXE-55FF63A1.pf
C:\windows\Prefetch\WMIADAP.EXE-7D63BB4C.pf
C:\windows\Prefetch\WMIPRVSE.EXE-BB49B536.pf
C:\windows\Prefetch\WMPLAYER.EXE-B0AD61F0.pf
C:\windows\Prefetch\WORDPAD.EXE-505FE0CE.pf
C:\windows\Prefetch\WUAUCLT.EXE-4A7CF88B.pf
C:\windows\Prefetch\WWAHOST.EXE-043B6F98.pf
C:\windows\Prefetch\WWAHOST.EXE-05CD8EE3.pf
C:\windows\Prefetch\WWAHOST.EXE-067F4664.pf
C:\windows\Prefetch\WWAHOST.EXE-19BA9D7F.pf
C:\windows\Prefetch\WWAHOST.EXE-1F2A56BC.pf
C:\windows\Prefetch\WWAHOST.EXE-2703D307.pf
C:\windows\Prefetch\WWAHOST.EXE-2C35CB89.pf
C:\windows\Prefetch\WWAHOST.EXE-4A8148AA.pf
C:\windows\Prefetch\WWAHOST.EXE-5F7F692E.pf
C:\windows\Prefetch\WWAHOST.EXE-6E6548A4.pf
C:\windows\Prefetch\WWAHOST.EXE-7E53236E.pf
C:\windows\Prefetch\WWAHOST.EXE-8B2CC2F0.pf
C:\windows\Prefetch\WWAHOST.EXE-9178D9A9.pf
C:\windows\Prefetch\WWAHOST.EXE-A1C51F92.pf
C:\windows\Prefetch\WWAHOST.EXE-A320CB88.pf
C:\windows\Prefetch\WWAHOST.EXE-B4780785.pf
C:\windows\Prefetch\WWAHOST.EXE-B6DECB23.pf
C:\windows\Prefetch\WWAHOST.EXE-C6271F69.pf
C:\windows\Prefetch\WWAHOST.EXE-C77BA4B7.pf
C:\windows\Prefetch\WWAHOST.EXE-CA50B522.pf
C:\windows\Prefetch\WWAHOST.EXE-D42E2A4B.pf
C:\windows\Prefetch\WWAHOST.EXE-DC955048.pf
C:\windows\Prefetch\WWAHOST.EXE-ED688F6C.pf
C:\windows\Prefetch\WWAHOST.EXE-F27D27B5.pf
C:\windows\Prefetch\YOUWASHOCK.EXE-09C407BD.pf
C:\windows\Prefetch\ReadyBoot\rblayout.xin
C:\windows\Prefetch\ReadyBoot\Trace1.fx
C:\windows\Prefetch\ReadyBoot\Trace10.fx
C:\windows\Prefetch\ReadyBoot\Trace2.fx
C:\windows\Prefetch\ReadyBoot\Trace8.fx
C:\windows\Prefetch\ReadyBoot\Trace9.fx

Corbeille vidée.


Fin du rapport.
#74355
J'envoie le rapport en plusieur fois il me dise qu'il est trop long sinon ..
~ Rapport de ZHPDiag v2013.11.9.20 - Nicolas Coolman (09/11/2013)
~ Lancé par Alexis (09/11/2013 12:35:06)
~ Adresse du Site Web http://nicolascoolman.webs.com
~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16721
GCIE: Google Chrome v30.0.1599.101 (Defaut)
OPIE: Opera v12.15

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : 8QG7T
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Windows Defender W8

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Reader X

---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3795 MB (47% free)
System Restore: Activé (Enable)
System drive C: has 358 GB (80%) free of 443 GB

---\\ Mode de connexion au système
~ Computer Name: BOBOUU
~ User Name: Alexis
~ All Users Names: Alexis, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Alexis\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Alexis\AppData\Roaming\
~ %Desktop% : C:\Users\Alexis\Desktop\
~ %Favorites% : C:\Users\Alexis\Favorites\
~ %LocalAppData% : C:\Users\Alexis\AppData\Local\
~ %StartMenu% : C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 358 Go of 443 Go)
D: CD-ROM drive (Not Inserted)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 41 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.0E8E6463F81C80AFBED533E0F1F8895D] - (.Microsoft Corporation - Explorateur Windows.) (.01/06/2013 - 12:34:21.) -- C:\Windows\Explorer.exe [2391280]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.D28B35DE88D27EFB27DF4B1E8319E3C0] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.22/09/2013 - 23:55:10.) -- C:\Windows\System32\wininet.dll [2241024]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.78A5BBA3819FFFC62FFEC3E2220D102D] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.01/06/2013 - 12:26:33.) -- C:\Windows\system32\Drivers\volsnap.sys [327936]
~ Generic Processes: Scanned in 00mn 01s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/262
~ Mes Favoris (My Favorites) : 1/3
~ Mes Documents (My Documents) : 1/20865
~ Mon Bureau (My Desktop) : 1/7303
~ Menu demarrer (Programs) : 1/42
~ Hidden Files: Scanned in 00mn 29s



---\\ Processus lancés
[MD5.8F0073A7F43224C640EC68775523CA11] - (.Samsung Electronics CO., LTD. - Settings.) -- C:\Program Files (x86)\Samsung\Settings\sSettings.exe [2621320] [PID.3528]
[MD5.B20364982A3CCE6211ADEF79316D2CE0] - (.Glarysoft Ltd - Glary Utilities 3.) -- C:\Program Files (x86)\Glary Utilities 3\Integrator.exe [467744] [PID.3636]
[MD5.92F0C2F900FA70F2B614FEDCD59832DA] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Alexis\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736] [PID.3644]
[MD5.AE29724E282EDBE7D0F49E9982642EFD] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [97392] [PID.1092]
[MD5.724CB7A116F7E1A67009D751BCF86586] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120] [PID.2608]
[MD5.0F288D457DEFF897C7A4037350533414] - (.PC Tools - SSDMonit Application.) -- C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe [105120] [PID.3820]
[MD5.3E399A1328181C2A352472369DE2A93A] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [844752] [PID.4848]
[MD5.60A3399135BEFC6F4BADBD6C13A4AC24] - (.Microsoft Corporation - Hôte Microsoft WWA.) -- C:\windows\syswow64\wwahost.exe [333824] [PID.3672]
[MD5.D7B653859D504DB160DC4CB9A7565067] - (.Adobe Systems Incorporated - AAM Updates Notifier Application.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe [315256] [PID.5788]
[MD5.0C3C47124215C5E566F92C3F2E31D86A] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8192512] [PID.6504]
~ Processes Running: Scanned in 00mn 00s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Alexis\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://search.conduit.com
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [kfakeonomonapccoamcmdgpoaicnpnoo] Plus-HD-2.2 v.1.25.73, (Activé) =Adware.PlusHD
G2 - GCE: Preference [User Data\Default] [lgnbhdnimikkoodkogjlcllngimhlapp] FT Downloader v.5.0 (Désactivé) =Adware.Downware
G2 - GCE: Preference [User Data\Default] [lmiagjknjjfockcklibjlfdojojaffff] Totoro Rainy Day v.1.15 (Activé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.5.0 (Activé)
G2 - GCE: Preference [User Data\Default] [pfmopbbadnfoelckkcmjjeaaegjpjjbk] GoPhoto.it v.1.4 (Désactivé) =Spyware.GophotoIt
~ Google Browser: 12 Scanned in 00mn 15s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Alexis\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js (.not file.)
C:\Users\Alexis\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0,[slws][slns]phd10\prefs.js
P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\Alexis\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
~ Firefox Browser: 1 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = aboutnoadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = aboutsecurityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = aboutnoadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = aboutsecurityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16384 (win8_rtm.120725-1247)) -- C:\Windows\SysWOW64\ieframe.dll
~ IE Browser: 12 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 0



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.dll
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} Clé orpheline
O2 - BHO: IESpeakDoc [64Bits] - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} Clé orpheline
O2 - BHO: (no name) [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} Clé orpheline
~ BHO: 5 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Adobe Reader X.lnk . (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\opera.exe
O4 - GS\Desktop [Public]: PokerStars.fr.lnk . (.PokerStars - PokerStars Update.) -- C:\Program Files (x86)\PokerStars.FR\PokerStarsUpdate.exe
O4 - GS\Desktop [Public]: RomStation.lnk . (...) -- C:\Program Files (x86)\RomStation\RomStation.exe
O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O4 - GS\Desktop [Public]: SW Update.lnk . (.Samsung Electronics CO., LTD. - SW Update Client.) -- C:\Program Files (x86)\Samsung\SW Update\sManager.exe
O4 - GS\Program [Public]: Adobe Photoshop Elements 11.lnk . (.Adobe Systems Incorporated - Adobe Photoshop Elements 11.) -- C:\Program Files (x86)\Adobe\Elements 11 Organizer\Photoshop Elements 11.0.exe
O4 - GS\Program [Public]: Adobe Reader X.lnk . (...) -- C:\windows\Installer\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}\SC_Reader.ico
O4 - GS\Program [Public]: Browser Choice.lnk . (...) -- C:\windows\BrowserChoice\html\default.html
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\opera.exe
O4 - GS\Program [Public]: Windows Store.lnk . (...) -- C:\windows\WinStore\WinStore.htm
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\windows\system32\calc.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (...) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe (.not file.)
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\windows\system32\mspaint.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\windows\system32\mstsc.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) -- C:\windows\system32\SnippingTool.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\windows\system32\SoundRecorder.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) -- C:\windows\system32\psr.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\windows\system32\StikyNot.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\windows\system32\WFS.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\windows\system32\xpsrchvw.exe =.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\windows\system32\charmap.exe =.Microsoft Corporation
O4 - GS\QuickLaunch [Alexis]: Glary Utilities 3.lnk . (.Glarysoft Ltd - Glary Utilities 3.) -- C:\Program Files (x86)\Glary Utilities 3\Integrator.exe
O4 - GS\QuickLaunch [Alexis]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Alexis]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Alexis]: PokerStars.fr.lnk . (.PokerStars - PokerStars Update.) -- C:\Program Files (x86)\PokerStars.FR\PokerStarsUpdate.exe
O4 - GS\TaskBar [Alexis]: Dofus2.lnk . (...) -- C:\Program Files (x86)\Dofus2\app\UpLauncher.exe
O4 - GS\TaskBar [Alexis]: File Explorer.lnk . (...) -- C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [Alexis]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\TaskBar [Alexis]: Skype.lnk . (...) -- C:\windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O4 - GS\Program [Alexis]: Ableton Live 9 Suite.lnk . (.Ableton - Pas de description.) -- C:\ProgramData\Ableton\Live 9 Suite\Program\Ableton Live 9 Suite.exe
O4 - GS\Program [Alexis]: FuzeZip.lnk . (.Koyote Soft - Fuze Zip.) -- C:\Program Files (x86)\FuzeZip\FuzeZip.exe
O4 - GS\Program [Alexis]: Glary Utilities 3.lnk . (.Glarysoft Ltd - Glary Utilities 3.) -- C:\Program Files (x86)\Glary Utilities 3\Integrator.exe
O4 - GS\Program [Alexis]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Program [Alexis]: S Agent.lnk . (...) -- C:\Program Files (x86)\Samsung\S Agent\CommonAgent.exe (.not file.)
O4 - GS\Program [Alexis]: SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Alexis\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =.Microsoft Corporation
O4 - GS\Program [Alexis]: Spotify.lnk . (.Spotify Ltd - Spotify.) -- C:\Users\Alexis\AppData\Roaming\Spotify\spotify.exe
O4 - GS\Accessories [Alexis]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\windows\system32\notepad.exe =.Microsoft Corporation
O4 - GS\SendTo [Alexis]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =.Skype Technologies S.A.
O4 - GS\Desktop [Alexis]: Dofus2.lnk . (...) -- C:\Program Files (x86)\Dofus2\app\UpLauncher.exe
O4 - GS\Desktop [Alexis]: Fahrenheit.lnk . (...) -- C:\Program Files (x86)\Fahrenheit\Fahrenheit.exe
O4 - GS\Desktop [Alexis]: Glary Utilities 3.lnk . (.Glarysoft Ltd - Glary Utilities 3.) -- C:\Program Files (x86)\Glary Utilities 3\Integrator.exe
O4 - GS\Desktop [Alexis]: Spotify.lnk . (.Spotify Ltd - Spotify.) -- C:\Users\Alexis\AppData\Roaming\Spotify\spotify.exe
O4 - GS\Desktop [Alexis]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =.Nicolas Coolman
O4 - GS\Desktop [Alexis]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =.Nicolas Coolman
~ Global Startup: 50 Scanned in 00mn 01s



---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Alexis]: Envoyer à OneNote.lnk . (.Microsoft Corporation - Send to OneNote Tool.) -- C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.exe
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =.Realtek Semiconductor Corp
O4 - HKLM\..\Run: [BtTray] . (.Qualcomm Atheros - BtTray.) -- C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
O4 - HKLM\..\Run: [BtvStack] . (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =.Adobe Systems Incorporated
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.)
O4 - HKLM\..\Run: [Logitech Download Assistant] . (.Logitech, Inc. - Logitech Download Assistant.) -- C:\Windows\System32\LogiLDA.dll
O4 - HKCU\..\Run: [SkyDrive] . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Alexis\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =.Microsoft Corporation
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Alexis\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
O4 - HKLM\..\Wow6432Node\Run: [CLMLServer_For_P2G8] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
O4 - HKLM\..\Wow6432Node\Run: [CLVirtualDrive] . (.CyberLink Corp. - CyberLink Virtual Drive.) -- C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [Intel AppUp(SM) center] . (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
O4 - HKLM\..\Wow6432Node\Run: [SSDMonitor] . (.PC Tools - SSDMonit Application.) -- C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
O4 - HKUS\S-1-5-21-182115508-3913688524-3247281400-1001\..\Run: [SkyDrive] . (.Microsoft Corporation - Microsoft SkyDrive.) -- C:\Users\Alexis\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =.Microsoft Corporation
O4 - HKUS\S-1-5-21-182115508-3913688524-3247281400-1001\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Alexis\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Send to OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll =.Microsoft Corporation
O9 - Extra button: Lync Click to Call [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\lync.exe (.not file.)
O9 - Extra button: Send by Bluetooth to [64Bits] - {7815BE26-237D-41A8-A98F-F7BD75F71086} -- Clé orpheline
O9 - Extra button: OneNote Linked Notes [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll =.Microsoft Corporation
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\windows\system32\napinsp.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\windows\system32\NLAapi.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\windows\system32\mswsock.dll =.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\windows\system32\wshbth.dll
~ Winsock: 7 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{EF3FD984-40A3-4E9B-A5C5-E4BEB97BB413}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{EF3FD984-40A3-4E9B-A5C5-E4BEB97BB413}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{EF3FD984-40A3-4E9B-A5C5-E4BEB97BB413}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{EF3FD984-40A3-4E9B-A5C5-E4BEB97BB413}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) . (.Adobe Systems Incorporated - Adobe Photoshop Elements 11.0 (component).) - C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: (Easy Launcher) . (.Samsung Electronics CO., LTD. - EasyLauncher.) - C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe
O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =.Google Inc
O23 - Service: Intel(R) Capability Licensing Service In (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: PC Tools Startup and Shutdown Monitor se (PCToolsSSDMonitorSvc) . (.PC Tools - StartMan Application.) - C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: SW Update Service (SWUpdateService) . (.Samsung Electronics CO., LTD. - SW Update Agent.) - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe
O23 - Service: Intel(R) Management and Security Applica (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (.not file.)
O23 - Service: ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
~ Services: 15 Scanned in 00mn 06s



---\\ Enumération Active Desktop MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-182115508-3913688524-3247281400-1001Core.job [924]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-182115508-3913688524-3247281400-1001UA.job [946]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GlaryInitialize 3.job [348]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1078]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1082]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\RMAutoUpdate.job [300]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\RMSchedule.job [300]
[MD5.F9C48B76DA59CF5FF2ED937B62F5ED39] [APT] [AdobeAAMUpdater-1.0-Bobouu-Alexis] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608]
[MD5.EDFDDD697D5E604490C288D978FC657E] [APT] [advRecovery] (.SEC.) -- C:\Program Files\Samsung\Recovery\WCScheduler.exe [3469432]
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-182115508-3913688524-3247281400-1001Core] (.Facebook Inc..) -- C:\Users\Alexis\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-182115508-3913688524-3247281400-1001UA] (.Facebook Inc..) -- C:\Users\Alexis\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.DCDC42D0D76A74DF5E5D757EEB42BFA4] [APT] [GlaryInitialize 3] (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities 3\Initialize.exe [94496]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.020873476E239F0A3B4F118E3590BB31] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233824]
[MD5.020873476E239F0A3B4F118E3590BB31] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233824]
[MD5.69672287D9329EB59D029D56FAED0013] [APT] [RMAutoUpdate] (.PC Tools.) -- C:\Program Files (x86)\PC Tools Registry Mechanic\SULauncher.exe [990368]
[MD5.A194B16795DA25C6126DC192DCC4AF5F] [APT] [RMSchedule] (.PC Tools.) -- C:\Program Files (x86)\PC Tools Registry Mechanic\RegMech.exe [3640480]
[MD5.8F0073A7F43224C640EC68775523CA11] [APT] [Settings] (.Samsung Electronics CO., LTD..) -- C:\Program Files (x86)\Samsung\Settings\sSettings.exe [2621320]
~ Scheduled Task: 20 Scanned in 00mn 06s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =.Microsoft Corporation
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll
~ Active Setup: 9 Scanned in 00mn 00s
#74356
---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys
O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys
O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: (CLVirtualDrive) . (.CyberLink - It is a virtual device driver which could c.) - C:\Windows\system32\DRIVERS\CLVirtualDrive.sys
O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: C:\Windows\System32\drivers\vwififlt.sys (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys
~ Drivers: 36 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: Ableton Live 9 Suite - (.Ableton.) [HKLM][64Bits] -- {2395BEE6-92D4-4D91-8665-5BAB6B78A346}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {52E225FC-FCB4-41F7-837B-6E37FB05BD7B}
O42 - Logiciel: Adobe Photoshop Elements 11 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Photoshop Elements 11
O42 - Logiciel: Adobe Reader X (10.1.8) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001}
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player
O42 - Logiciel: AmpliTube 3 version 3.10.0 - (.IK Multimedia.) [HKLM][64Bits] -- {DA5202AC-12BF-4330-B8EA-BC77F991FA1C}_is1
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: CyberLink PowerDVD 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: CyberLink PowerDVD 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: E-POP - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {F06DD8D9-9DC8-430C-835C-C9BF21E05CC1}
O42 - Logiciel: ETDWare X64 11.7.5.5_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech
O42 - Logiciel: Easy File Share - (.Samsung Electronics CO.,LTD..) [HKLM][64Bits] -- {A7C37D4B-F37A-42E8-9B6A-B28C18AD4C12}
O42 - Logiciel: Facebook Video Calling 1.2.0.287 - (.Skype Limited.) [HKLM][64Bits] -- {B92C5909-1D37-4C51-8397-A28BB28E5DC3}
O42 - Logiciel: Fahrenheit - (.Atari.) [HKLM][64Bits] -- Fahrenheit
O42 - Logiciel: FuzeZip - (.Koyote-Lab Inc..) [HKCU][64Bits] -- FuzeZip
O42 - Logiciel: Glary Utilities 3 (v3.5.0.121) - (.Glarysoft Ltd.) [HKLM][64Bits] -- Glary Utilities 3
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Help Desk - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {3D85CD3F-00E0-4E14-82D6-1F9397DDD09B}
O42 - Logiciel: IK Multimedia Authorization Manager version 1.0.9 - (.IK Multimedia.) [HKLM][64Bits] -- {85BC0DCB-69E5-4279-AA25-F108EF896588}_is1
O42 - Logiciel: Intel AppUp(SM) center - (.Intel.) [HKLM][64Bits] -- Intel AppUp(SM) center 33070
O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {A6C48A9F-694A-4234-B3AA-62590B668927}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
O42 - Logiciel: Live 8.2.2 - (...) [HKLM][64Bits] -- Live 8.2.2
O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- SkyDriveSetup.exe =.Microsoft Corporation
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE}
O42 - Logiciel: Opera 12.15 - (.Opera Software ASA.) [HKLM][64Bits] -- Opera 12.15.1748
O42 - Logiciel: PC Tools Registry Mechanic 11.1 - (.PC Tools.) [HKLM][64Bits] -- Registry Mechanic_is1
O42 - Logiciel: PSE11 STI Installer - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {98CE8819-87AA-4814-8167-ADDDD513485F}
O42 - Logiciel: Plants vs. Zombies - (.PopCap Games.) [HKLM][64Bits] -- Plants vs. Zombies =Adware.PopCap
O42 - Logiciel: PokerStars.fr - (.PokerStars.fr.) [HKLM][64Bits] -- PokerStars.fr
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros Communications.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801}
O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Recovery - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {145DE957-0679-4A2A-BB5C-1D3E9808FAB2}
O42 - Logiciel: RomStation - (.RomStation.) [HKLM][64Bits] -- {223B62A8-F6FF-4BEB-BC17-230D12723CD0}_is1
O42 - Logiciel: S Agent - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {CFEA455B-E368-45B2-A01E-1C3A6C0F06B6}
O42 - Logiciel: SW Update - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {DA06101F-FD76-4BF0-88BD-B26A197005E3}
O42 - Logiciel: Settings - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {8CB5C357-12E5-41B1-A024-D57D4E6F32D9}
O42 - Logiciel: Skype™ 6.9 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify
O42 - Logiciel: Support Center - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {3EB3E946-FB88-45C2-A19B-410D254657D9}
O42 - Logiciel: Support Center FAQ - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {9478A3AA-4C2C-4104-97D7-32C7EEB32F59}
O42 - Logiciel: Ubisoft Game Launcher - (.UBISOFT.) [HKLM][64Bits] -- {888F1505-C2B3-4FDE-835D-36353EBD4754}
O42 - Logiciel: User Guide - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {087EB114-ACEF-44D3-8C0A-27AE0CC8A8BB}
O42 - Logiciel: Waves Complete V9r12 - (.Waves.) [HKLM][64Bits] -- {91000001-C561-4E32-99EB-3C5AD3683A70}
O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: reFX Nexus VSTi RTAS v2.2.0 - (...) [HKLM][64Bits] -- reFX Nexus_is1
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
~ Logic: 93 Scanned in 00mn 00s



---\\ HKCU HKLM Software Keys
[HKCU\Software\4shared]
[HKCU\Software\Ableton]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow]
[HKCU\Software\Atheros]
[HKCU\Software\Camfrog]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\Elantech]
[HKCU\Software\Facebook]
[HKCU\Software\GlarySoft]
[HKCU\Software\Google]
[HKCU\Software\IK Multimedia]
[HKCU\Software\IM Providers]
[HKCU\Software\Intel]
[HKCU\Software\IvoSoft]
[HKCU\Software\JaboSoft]
[HKCU\Software\LogiShrd]
[HKCU\Software\Macromedia]
[HKCU\Software\MainConcept (Broadcast)]
[HKCU\Software\MainConcept]
[HKCU\Software\Mine]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\N64 Emulation]
[HKCU\Software\Native Instruments]
[HKCU\Software\Netscape]
[HKCU\Software\Norton]
[HKCU\Software\ODBC]
[HKCU\Software\Opera Software]
[HKCU\Software\PCTools]
[HKCU\Software\PalTalk]
[HKCU\Software\Policies]
[HKCU\Software\PopCap] =Adware.PopCap
[HKCU\Software\Realtek]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\SYNCJM]
[HKCU\Software\Samsung]
[HKCU\Software\Screensaver Factory]
[HKCU\Software\SecuROM]
[HKCU\Software\SightSpeed Inc]
[HKCU\Software\SkypeRS]
[HKCU\Software\Skype]
[HKCU\Software\Symantec]
[HKCU\Software\Trolltech]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\Web Solution Mart]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKCU\Software\YOU WA SHOCK !]
[HKCU\Software\Yahoo]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\fwc]
[HKCU\Software\iZotope]
[HKCU\Software\mozilla]
[HKCU\Software\reFX]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Airplane]
[HKLM\Software\Atheros]
[HKLM\Software\Bitcasa]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\DTS]
[HKLM\Software\Dolby]
[HKLM\Software\EldoS]
[HKLM\Software\IK Multimedia]
[HKLM\Software\IM Providers]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\Knowles]
[HKLM\Software\Logishrd]
[HKLM\Software\Macromedia]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\Norton]
[HKLM\Software\ODBC]
[HKLM\Software\Policies]
[HKLM\Software\Propellerhead Software]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Samsung]
[HKLM\Software\SonicFocus]
[HKLM\Software\Waves Audio]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\AppDataLow]
[HKLM\Software\Wow6432Node\Atheros]
[HKLM\Software\Wow6432Node\Bunndle]
[HKLM\Software\Wow6432Node\Cakewalk Music Software]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\Dofus2Beta]
[HKLM\Software\Wow6432Node\Dofus2]
[HKLM\Software\Wow6432Node\FuzeZip]
[HKLM\Software\Wow6432Node\GlarySoft]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\IK Multimedia]
[HKLM\Software\Wow6432Node\IM Providers]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Lake]
[HKLM\Software\Wow6432Node\Licenses]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\Netscape]
[HKLM\Software\Wow6432Node\Norton]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Opera Software]
[HKLM\Software\Wow6432Node\PCTools]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\PopCap] =Adware.PopCap
[HKLM\Software\Wow6432Node\Propellerhead Software]
[HKLM\Software\Wow6432Node\Qualcomm Atheros]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Samsung Electronics CO., LTD.]
[HKLM\Software\Wow6432Node\Samsung]
[HKLM\Software\Wow6432Node\Skype]
[HKLM\Software\Wow6432Node\Sonic]
[HKLM\Software\Wow6432Node\SuppHelpDir]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\Ubisoft]
[HKLM\Software\Wow6432Node\VST]
[HKLM\Software\Wow6432Node\Volatile]
[HKLM\Software\Wow6432Node\Waves]
[HKLM\Software\Wow6432Node\WinRAR]
[HKLM\Software\Wow6432Node\hdcode]
[HKLM\Software\Wow6432Node]
~ Key Software: 171 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 20/06/2013 - 10:55:47 - [-1935,401] ----D C:\Program Files (x86)\Ableton
O43 - CFD: 19/05/2013 - 19:00:53 - [1568,086] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 28/01/2013 - 18:11:25 - [82,621] ----D C:\Program Files (x86)\Bluetooth Suite
O43 - CFD: 04/09/2013 - 17:52:36 - [444,698] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 28/01/2013 - 18:18:56 - [426,982] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 25/06/2013 - 21:17:02 - [0] ----D C:\Program Files (x86)\Dofus
O43 - CFD: 19/05/2013 - 19:01:00 - [1312,557] ----D C:\Program Files (x86)\Dofus2
O43 - CFD: 02/07/2013 - 19:43:09 - [1189,965] ----D C:\Program Files (x86)\Dofus2Beta
O43 - CFD: 01/09/2013 - 22:26:24 - [-407,423] ----D C:\Program Files (x86)\Fahrenheit
O43 - CFD: 25/06/2013 - 00:48:29 - [5,592] ----D C:\Program Files (x86)\Fake Webcam 7.3
O43 - CFD: 09/10/2013 - 14:54:12 - [9,679] ----D C:\Program Files (x86)\FuzeZip
O43 - CFD: 08/11/2013 - 22:03:44 - [39,519] ----D C:\Program Files (x86)\Glary Utilities 3
O43 - CFD: 08/11/2013 - 22:02:24 - [427,670] ----D C:\Program Files (x86)\Google
O43 - CFD: 03/07/2013 - 10:01:58 - [48,992] ----D C:\Program Files (x86)\IK Multimedia
O43 - CFD: 25/06/2013 - 21:24:57 - [106,217] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 28/01/2013 - 18:28:53 - [295,077] ----D C:\Program Files (x86)\Intel
O43 - CFD: 11/10/2013 - 11:20:45 - [4,622] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 22/06/2013 - 07:22:58 - [5,030] ----D C:\Program Files (x86)\iZotope
O43 - CFD: 15/06/2013 - 16:02:30 - [2,472] ----D C:\Program Files (x86)\Manual
O43 - CFD: 04/09/2013 - 17:43:23 - [0,262] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 30/06/2013 - 22:28:27 - [5,710] ----D C:\Program Files (x86)\Microsoft SkyDrive =.Microsoft Corporation
O43 - CFD: 04/09/2013 - 17:52:29 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 18/08/2013 - 00:03:17 - [0] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 07/08/2012 - 13:22:54 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 01/07/2013 - 07:42:38 - [41,412] ----D C:\Program Files (x86)\Opera
O43 - CFD: 08/11/2013 - 22:03:13 - [35,666] ----D C:\Program Files (x86)\PC Tools Registry Mechanic
O43 - CFD: 20/06/2013 - 22:35:06 - [101,894] ----D C:\Program Files (x86)\PokerStars.FR
O43 - CFD: 28/01/2013 - 18:34:09 - [51,331] ----D C:\Program Files (x86)\PopCap Games =Adware.PopCap
O43 - CFD: 28/01/2013 - 17:15:20 - [0,036] ----D C:\Program Files (x86)\Qualcomm Atheros
O43 - CFD: 28/01/2013 - 17:14:20 - [6,012] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 07/08/2012 - 13:22:54 - [36,536] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 06/09/2013 - 12:45:21 - [-1093,173] ----D C:\Program Files (x86)\RomStation
O43 - CFD: 28/01/2013 - 18:42:46 - [697,551] ----D C:\Program Files (x86)\Samsung
O43 - CFD: 10/10/2013 - 21:00:35 - [19,821] R---D C:\Program Files (x86)\Skype
O43 - CFD: 22/06/2013 - 07:22:09 - [0] ----D C:\Program Files (x86)\Steinberg
O43 - CFD: 28/01/2013 - 18:33:49 - [0] ----D C:\Program Files (x86)\Symantec
O43 - CFD: 28/01/2013 - 18:51:23 - [2,444] ----D C:\Program Files (x86)\SymSilent
O43 - CFD: 28/01/2013 - 17:13:16 - [0] --H-D C:\Program Files (x86)\Temp
O43 - CFD: 20/06/2013 - 19:23:49 - [444,717] ----D C:\Program Files (x86)\Ubisoft
O43 - CFD: 15/06/2013 - 16:02:32 - [0,678] ----D C:\Program Files (x86)\Uninstall Nexus
O43 - CFD: 22/06/2013 - 07:06:57 - [0,008] ----D C:\Program Files (x86)\VstPlugIns
O43 - CFD: 15/08/2013 - 03:49:23 - [1,038] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 18/08/2013 - 00:29:18 - [9,099] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 03/02/2013 - 04:13:19 - [5,466] ----D C:\Program Files (x86)\Windows Mail =.Microsoft Corporation
O43 - CFD: 28/01/2013 - 17:35:50 - [3,494] ----D C:\Program Files (x86)\Windows Media Player =.Microsoft Corporation
O43 - CFD: 26/07/2012 - 09:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 26/07/2012 - 09:12:59 - [7,243] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 20/06/2013 - 04:35:10 - [5,226] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 26/07/2012 - 09:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 26/07/2012 - 09:12:59 - [0] -SH-D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 14/06/2013 - 10:39:22 - [4,131] ----D C:\Program Files (x86)\WinRAR
O43 - CFD: 09/11/2013 - 12:34:59 - [23,620] ----D C:\Program Files (x86)\ZHPDiag =.Nicolas Coolman
O43 - CFD: 28/01/2013 - 18:39:32 - [281,503] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 10/10/2013 - 16:01:55 - [45,947] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 28/01/2013 - 18:12:30 - [0,066] ----D C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 22/06/2013 - 07:22:59 - [11,062] ----D C:\Program Files (x86)\Common Files\Avid
O43 - CFD: 28/01/2013 - 18:18:57 - [0,090] ----D C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 04/09/2013 - 17:52:36 - [0,013] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 14/06/2013 - 10:46:20 - [24,432] ----D C:\Program Files (x86)\Common Files\Digidesign
O43 - CFD: 28/01/2013 - 17:12:30 - [2,009] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 04/09/2013 - 17:52:37 - [39,348] ----D C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 25/06/2013 - 21:21:28 - [3,790] ----D C:\Program Files (x86)\Common Files\Native Instruments
O43 - CFD: 13/07/2013 - 00:10:26 - [3,115] ----D C:\Program Files (x86)\Common Files\PC Tools
O43 - CFD: 28/01/2013 - 18:08:18 - [0,185] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 18/06/2013 - 03:52:05 - [1,628] ----D C:\Program Files (x86)\Common Files\Propellerhead Software
O43 - CFD: 28/01/2013 - 18:35:58 - [4,502] ----D C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 28/01/2013 - 18:14:34 - [0,569] ----D C:\Program Files (x86)\Common Files\QCA_Bluetooth
O43 - CFD: 15/06/2013 - 14:08:54 - [0,463] ----D C:\Program Files (x86)\Common Files\reFX
O43 - CFD: 26/07/2012 - 09:13:01 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 19/06/2013 - 20:30:42 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 28/01/2013 - 18:35:58 - [0,301] ----D C:\Program Files (x86)\Common Files\Sonic Shared
O43 - CFD: 17/07/2013 - 19:54:02 - [0] ----D C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 03/02/2013 - 04:15:49 - [9,406] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 22/06/2013 - 07:56:00 - [14,361] ----D C:\Program Files (x86)\Common Files\VST3
O43 - CFD: 28/01/2013 - 18:39:47 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 20/06/2013 - 11:18:33 - [936,965] ----D C:\ProgramData\Ableton
O43 - CFD: 23/06/2013 - 01:00:06 - [1263,098] ----D C:\ProgramData\Adobe
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 16/05/2013 - 21:48:55 - [0] ----D C:\ProgramData\Atheros
O43 - CFD: 28/01/2013 - 18:15:19 - [0,764] ----D C:\ProgramData\ColorMode
O43 - CFD: 19/05/2013 - 21:10:23 - [0,051] ----D C:\ProgramData\CyberLink
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 05/07/2013 - 21:13:23 - [5,166] ----D C:\ProgramData\GlarySoft
O43 - CFD: 28/01/2013 - 18:17:55 - [0,036] ----D C:\ProgramData\install_clap
O43 - CFD: 28/01/2013 - 18:29:37 - [2,393] ----D C:\ProgramData\Intel
O43 - CFD: 22/06/2013 - 07:22:14 - [0,001] ----D C:\ProgramData\iZotope
O43 - CFD: 02/09/2013 - 22:07:10 - [582,187] -S--D C:\ProgramData\Microsoft
O43 - CFD: 30/06/2013 - 22:27:35 - [0] ----D C:\ProgramData\Microsoft SkyDrive =.Microsoft Corporation
O43 - CFD: 17/07/2013 - 19:56:06 - [4,753] ----D C:\ProgramData\Norton
O43 - CFD: 17/07/2013 - 19:50:21 - [14,995] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 16/05/2013 - 22:27:46 - [32,480] ----D C:\ProgramData\PopCap Games =Adware.PopCap
O43 - CFD: 30/05/2013 - 23:08:28 - [0,057] ----D C:\ProgramData\PRICache
O43 - CFD: 28/01/2013 - 17:14:58 - [0,021] ----D C:\ProgramData\Qualcomm Atheros
O43 - CFD: 22/06/2013 - 03:14:16 - [0,002] ----D C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 11/10/2013 - 11:42:41 - [0,004] ----D C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 21/10/2013 - 20:39:44 - [1620,762] ----D C:\ProgramData\Samsung
O43 - CFD: 10/10/2013 - 21:00:39 - [32,313] ----D C:\ProgramData\Skype
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 28/01/2013 - 18:33:49 - [0] ----D C:\ProgramData\Symantec
O43 - CFD: 08/11/2013 - 19:40:31 - [0] ---AD C:\ProgramData\Temp
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 08/11/2013 - 22:05:36 - [337,709] ----D C:\ProgramData\WinClon
O43 - CFD: 20/06/2013 - 05:53:24 - [1285,277] ----D C:\Users\Alexis\AppData\Roaming\Ableton
O43 - CFD: 22/06/2013 - 03:15:21 - [1,737] ----D C:\Users\Alexis\AppData\Roaming\Adobe
O43 - CFD: 19/05/2013 - 19:43:02 - [0,003] ----D C:\Users\Alexis\AppData\Roaming\AnkamaCertificates
O43 - CFD: 19/05/2013 - 19:42:16 - [0,005] ----D C:\Users\Alexis\AppData\Roaming\app
O43 - CFD: 16/05/2013 - 21:48:31 - [0] ----D C:\Users\Alexis\AppData\Roaming\Atheros
O43 - CFD: 19/05/2013 - 21:09:50 - [0,002] ----D C:\Users\Alexis\AppData\Roaming\CyberLink
O43 - CFD: 28/06/2013 - 17:06:29 - [0] ----D C:\Users\Alexis\AppData\Roaming\Dofus
O43 - CFD: 28/06/2013 - 17:56:10 - [0] ----D C:\Users\Alexis\AppData\Roaming\Dofus-2
O43 - CFD: 29/06/2013 - 20:05:17 - [0] ----D C:\Users\Alexis\AppData\Roaming\Dofus-3
O43 - CFD: 03/07/2013 - 02:21:32 - [0] ----D C:\Users\Alexis\AppData\Roaming\Dofus-4
O43 - CFD: 07/11/2013 - 02:40:58 - [64,404] ----D C:\Users\Alexis\AppData\Roaming\Dofus2
O43 - CFD: 03/07/2013 - 15:00:55 - [3,149] ----D C:\Users\Alexis\AppData\Roaming\Dofus2Beta
O43 - CFD: 02/07/2013 - 19:57:25 - [0] ----D C:\Users\Alexis\AppData\Roaming\DofusBeta
O43 - CFD: 03/07/2013 - 15:00:08 - [0] ----D C:\Users\Alexis\AppData\Roaming\DofusBeta-2
O43 - CFD: 20/05/2013 - 12:22:32 - [0] ----D C:\Users\Alexis\AppData\Roaming\DofusTesting
O43 - CFD: 19/05/2013 - 19:42:13 - [0] ----D C:\Users\Alexis\AppData\Roaming\DofusTesting-2
O43 - CFD: 30/05/2013 - 22:17:24 - [0] ----D C:\Users\Alexis\AppData\Roaming\DofusTesting-3
O43 - CFD: 05/07/2013 - 21:11:24 - [0,010] ----D C:\Users\Alexis\AppData\Roaming\GlarySoft
O43 - CFD: 22/06/2013 - 07:30:21 - [0] ----D C:\Users\Alexis\AppData\Roaming\IK Multimedia
O43 - CFD: 22/06/2013 - 07:23:19 - [12,243] ----D C:\Users\Alexis\AppData\Roaming\iZotope
O43 - CFD: 19/05/2013 - 17:17:37 - [13,330] ----D C:\Users\Alexis\AppData\Roaming\Macromedia
O43 - CFD: 16/09/2013 - 16:11:45 - [43,300] -S--D C:\Users\Alexis\AppData\Roaming\Microsoft
O43 - CFD: 20/06/2013 - 19:53:32 - [0,430] ----D C:\Users\Alexis\AppData\Roaming\Mozilla
O43 - CFD: 01/07/2013 - 07:43:02 - [0,240] ----D C:\Users\Alexis\AppData\Roaming\Opera
O43 - CFD: 02/08/2013 - 21:31:50 - [0] ----D C:\Users\Alexis\AppData\Roaming\Reg
O43 - CFD: 19/05/2013 - 19:42:16 - [0] ----D C:\Users\Alexis\AppData\Roaming\Reg.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O43 - CFD: 02/07/2013 - 19:57:29 - [0] ----D C:\Users\Alexis\AppData\Roaming\RegBeta.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O43 - CFD: 10/09/2013 - 23:51:20 - [0,006] R-H-D C:\Users\Alexis\AppData\Roaming\SecuROM
O43 - CFD: 07/11/2013 - 15:07:14 - [9,938] ----D C:\Users\Alexis\AppData\Roaming\Skype
O43 - CFD: 04/11/2013 - 20:54:47 - [68,534] ----D C:\Users\Alexis\AppData\Roaming\Spotify
O43 - CFD: 08/11/2013 - 21:25:57 - [0] ----D C:\Users\Alexis\AppData\Roaming\uTorrent =P2P.µTorrent
O43 - CFD: 22/06/2013 - 08:25:15 - [0,190] ----D C:\Users\Alexis\AppData\Roaming\Waves Audio
O43 - CFD: 19/05/2013 - 22:38:46 - [0] ----D C:\Users\Alexis\AppData\Roaming\WebApp
O43 - CFD: 14/06/2013 - 10:39:41 - [0] ----D C:\Users\Alexis\AppData\Roaming\WinRAR
O43 - CFD: 18/06/2013 - 12:54:52 - [0] ----D C:\Users\Alexis\AppData\Roaming\Youtube Downloader HD =PUP.Dealio
O43 - CFD: 09/11/2013 - 12:36:12 - [0,035] ----D C:\Users\Alexis\AppData\Roaming\ZHP =.Nicolas Coolman
O43 - CFD: 22/06/2013 - 03:29:29 - [13,026] ----D C:\Users\Alexis\AppData\Local\Adobe
O43 - CFD: 16/05/2013 - 21:42:46 - [0] -SH-D C:\Users\Alexis\AppData\Local\Application Data
O43 - CFD: 30/05/2013 - 23:10:10 - [3,173] ----D C:\Users\Alexis\AppData\Local\Apps
O43 - CFD: 18/08/2013 - 00:03:32 - [0,142] ----D C:\Users\Alexis\AppData\Local\avgchrome
O43 - CFD: 17/05/2013 - 22:27:58 - [0,001] ----D C:\Users\Alexis\AppData\Local\bitcasa
O43 - CFD: 16/05/2013 - 21:48:55 - [0] ----D C:\Users\Alexis\AppData\Local\BMExplorer
O43 - CFD: 06/11/2013 - 19:09:47 - [105,712] ----D C:\Users\Alexis\AppData\Local\CrashDumps
O43 - CFD: 18/08/2013 - 00:46:36 - [0] ----D C:\Users\Alexis\AppData\Local\Deployment
O43 - CFD: 25/09/2013 - 18:56:47 - [0] ----D C:\Users\Alexis\AppData\Local\Diagnostics
O43 - CFD: 25/09/2013 - 18:56:48 - [0] ----D C:\Users\Alexis\AppData\Local\ElevatedDiagnostics
O43 - CFD: 19/05/2013 - 20:28:13 - [7,450] ----D C:\Users\Alexis\AppData\Local\Facebook
O43 - CFD: 09/10/2013 - 14:53:47 - [0] ----D C:\Users\Alexis\AppData\Local\FuzeZip
O43 - CFD: 08/11/2013 - 21:24:26 - [1366,152] ----D C:\Users\Alexis\AppData\Local\Google
O43 - CFD: 16/05/2013 - 21:42:46 - [0] -SH-D C:\Users\Alexis\AppData\Local\Historique
O43 - CFD: 15/08/2013 - 04:09:07 - [560,911] ----D C:\Users\Alexis\AppData\Local\Microsoft
O43 - CFD: 30/06/2013 - 22:59:32 - [0,062] ----D C:\Users\Alexis\AppData\Local\Microsoft Help
O43 - CFD: 22/06/2013 - 07:11:08 - [0,169] ----D C:\Users\Alexis\AppData\Local\Native Instruments
O43 - CFD: 01/09/2013 - 21:20:18 - [0,253] ----D C:\Users\Alexis\AppData\Local\Nexway
O43 - CFD: 01/07/2013 - 07:43:02 - [1,803] ----D C:\Users\Alexis\AppData\Local\Opera
O43 - CFD: 30/09/2013 - 23:10:58 - [545,592] ----D C:\Users\Alexis\AppData\Local\Packages
O43 - CFD: 20/06/2013 - 22:35:20 - [0,749] ----D C:\Users\Alexis\AppData\Local\PokerStars.FR
O43 - CFD: 16/05/2013 - 21:48:37 - [0,039] ----D C:\Users\Alexis\AppData\Local\Power2Go8
O43 - CFD: 16/05/2013 - 21:47:30 - [0] ----D C:\Users\Alexis\AppData\Local\Samsung
O43 - CFD: 04/11/2013 - 16:57:43 - [169,535] ----D C:\Users\Alexis\AppData\Local\Spotify
O43 - CFD: 09/11/2013 - 12:34:47 - [0,018] ----D C:\Users\Alexis\AppData\Local\Temp
O43 - CFD: 16/05/2013 - 21:42:46 - [0] -SH-D C:\Users\Alexis\AppData\Local\Temporary Internet Files
O43 - CFD: 20/06/2013 - 19:51:36 - [0] ----D C:\Users\Alexis\AppData\Local\Ubisoft Game Launcher
O43 - CFD: 30/06/2013 - 22:03:15 - [0,009] ----D C:\Users\Alexis\AppData\Local\VirtualStore
O43 - CFD: 18/08/2013 - 00:30:30 - [0,066] ----D C:\Users\Alexis\AppData\Local\Windows Live
O43 - CFD: 26/07/2012 - 09:13:00 - [0,004] R---D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 26/07/2012 - 09:13:00 - [0,001] R---D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 16/10/2013 - 21:11:31 - [0] R---D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 08/11/2013 - 22:03:59 - [0] R---D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
O43 - CFD: 19/05/2013 - 19:01:00 - [0] ----D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dofus2
O43 - CFD: 02/07/2013 - 19:43:08 - [0] ----D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dofus2Beta
O43 - CFD: 01/09/2013 - 22:26:35 - [0,013] ----D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fahrenheit
O43 - CFD: 24/07/2013 - 04:03:00 - [0] ----D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 05/07/2013 - 21:11:27 - [0,003] ----D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Glary Utilities 3
O43 - CFD: 26/07/2012 - 09:13:00 - [0] ----D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 24/10/2013 - 00:40:31 - [0,001] ----D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokémon Gemme
O43 - CFD: 16/10/2013 - 21:11:31 - [0,001] R---D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 26/07/2012 - 09:13:00 - [0,005] R---D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 14/06/2013 - 10:39:25 - [0,003] ----D C:\Users\Alexis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
~ Program Folder: 182 Scanned in 00mn 26s
#74357
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.24C747DE82DB658E50FCF1A1EA7C3482] - 08/11/2013 - 22:02:26 ---A- . (...) -- C:\Windows\PFRO.log [762506]
O44 - LFC:[MD5.17E6FCC08D1C9211BB349890C7272EDE] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1793362]
O44 - LFC:[MD5.6112AD483F3B8EB0BBF4180E72557E3F] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [132614]
O44 - LFC:[MD5.AAD97C2035BCB8847E808E6ED3A4FCEE] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [155650]
O44 - LFC:[MD5.AC7F07AEA252F2954C1A01AB35758053] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [710244]
O44 - LFC:[MD5.663802563B7A0F044D034F1193E32EBE] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [800978]
O44 - LFC:[MD5.17E6FCC08D1C9211BB349890C7272EDE] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1793362]
O44 - LFC:[MD5.6112AD483F3B8EB0BBF4180E72557E3F] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\System32\perfc009.dat [132614]
O44 - LFC:[MD5.AAD97C2035BCB8847E808E6ED3A4FCEE] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [155650]
O44 - LFC:[MD5.AC7F07AEA252F2954C1A01AB35758053] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\System32\perfh009.dat [710244]
O44 - LFC:[MD5.663802563B7A0F044D034F1193E32EBE] - 08/11/2013 - 22:07:41 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [800978]
O44 - LFC:[MD5.C36C531ACBD2673DFAF5B283812DB168] - 09/11/2013 - 12:33:43 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.FB4E1819A10B200D34740938E1F5E8CC] - 09/11/2013 - 12:35:59 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1892192]
~ Files: 13 Scanned in 00mn 08s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.5A6EDA07FABD9761C734C5348026A38D] - 08/11/2013 - 22:44:43 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-F0516D55.pf
O45 - LFCP:[MD5.9C29843EF3E4FC359345FF21D9E9BE9F] - 08/11/2013 - 22:45:32 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E6E6216F.pf
O45 - LFCP:[MD5.7D32A9A7B71DFE14248D39E8A3996DD0] - 08/11/2013 - 22:48:12 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-BA1E321E.pf
O45 - LFCP:[MD5.B1B4B3FAE302E55A3B2925E85D9ABEC9] - 08/11/2013 - 22:48:21 ---A- - C:\Windows\Prefetch\TASKENG.EXE-23205583.pf
O45 - LFCP:[MD5.B493F2DD8C59DDE2DF0DD4DE8D150FD0] - 08/11/2013 - 23:59:50 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx
O45 - LFCP:[MD5.7D5035C97DA719D381B30FDFA55A03A0] - 08/11/2013 - 23:59:55 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-19311FF5.pf
O45 - LFCP:[MD5.6943FED634B3D72B555BA8AA7ACCF7A6] - 09/11/2013 - 00:00:50 ---A- - C:\Windows\Prefetch\AgCx_SC1.db
O45 - LFCP:[MD5.B8FFF7FB09BC9EBB9F0ACF254AF2BF7E] - 09/11/2013 - 00:02:07 ---A- - C:\Windows\Prefetch\AgAppLaunch.db
O45 - LFCP:[MD5.1FF39B4C16B3E87F363E8017753BBEFF] - 09/11/2013 - 00:03:35 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-6520183E.pf
O45 - LFCP:[MD5.D0C60EE844C62D5847DE298CF7D83DD9] - 09/11/2013 - 00:04:53 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-A02EAF81.pf
O45 - LFCP:[MD5.3F61E3148E3302834A377C8CB5AA1166] - 09/11/2013 - 00:04:55 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-2AF233C9.pf
O45 - LFCP:[MD5.1172ECB4FA4163BDD787352664EDD363] - 09/11/2013 - 00:04:56 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-6F5956CA.pf
O45 - LFCP:[MD5.6E937103EA2F203EC597CD6F1F7D254F] - 09/11/2013 - 00:07:07 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.9634057B7C8EC934981C21B09B41AE45] - 09/11/2013 - 00:07:08 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.F3702C48AE23B0AC4EEB468F6F4282E0] - 09/11/2013 - 00:07:09 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.D1E871881EA3D123B5975F273CDF552F] - 09/11/2013 - 00:07:09 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.4FEE2CF647715BD66EDA5CA9C6D63261] - 09/11/2013 - 00:12:40 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-8162C2FA.pf
O45 - LFCP:[MD5.3A679A138E64208B76FF6DA5D2DDCD43] - 09/11/2013 - 00:12:44 ---A- - C:\Windows\Prefetch\ZHPFIX.EXE-AFDB3DAC.pf
O45 - LFCP:[MD5.1405D22493E1591C779E79EB0E6E4572] - 09/11/2013 - 00:12:49 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-9848A323.pf
O45 - LFCP:[MD5.7FC939A945316251E07D961BD12DD4DA] - 09/11/2013 - 00:13:25 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-A81D648B.pf
O45 - LFCP:[MD5.615138A80AC9764CFD80A98D41FE5827] - 09/11/2013 - 00:13:26 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-846E8A51.pf
O45 - LFCP:[MD5.2110026426CE9F8C334D17D6D7698D95] - 09/11/2013 - 00:13:52 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-CE99ACA7.pf
O45 - LFCP:[MD5.F8541FA411CBA39539F64AA65285DC4C] - 09/11/2013 - 00:14:29 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-210D3DBE.pf
O45 - LFCP:[MD5.0F27BBBBC772C9AAF2D3CE19EB304571] - 09/11/2013 - 00:19:32 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-29D61DAB.pf
O45 - LFCP:[MD5.D39FEAF4A903A463FD4D53680DC2FCDF] - 09/11/2013 - 12:33:46 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-E35F76FB.pf
O45 - LFCP:[MD5.BD1FF0625C0B510EDB45097E925DA2D0] - 09/11/2013 - 12:33:49 ---A- - C:\Windows\Prefetch\VENDORAPIRUN64.EXE-358606D0.pf
O45 - LFCP:[MD5.2C2220E27D2DE44D0561E0D0C89D8336] - 09/11/2013 - 12:33:52 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-F2C7AEBC.pf
O45 - LFCP:[MD5.4CA91C935B96F8E25A241A16E47BA0B2] - 09/11/2013 - 12:33:53 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-05B3EDF6.pf
O45 - LFCP:[MD5.F3D9F773FE7709FFDEC469BC8BB16874] - 09/11/2013 - 12:34:02 ---A- - C:\Windows\Prefetch\THUMBNAILEXTRACTIONHOST.EXE-C3FB8861.pf
O45 - LFCP:[MD5.3B8FAD93828DCFDEA133624C812A9687] - 09/11/2013 - 12:34:03 ---A- - C:\Windows\Prefetch\IGFXSRVC.EXE-F41E6E8E.pf
O45 - LFCP:[MD5.691840EBC09CF26B006A9DC3AA13A5C3] - 09/11/2013 - 12:34:05 ---A- - C:\Windows\Prefetch\CHROME.EXE-CCF9F3F4.pf
O45 - LFCP:[MD5.06E30526763258DB20DEFB61B1CCC2E2] - 09/11/2013 - 12:34:18 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-00AD1665.pf
O45 - LFCP:[MD5.2B98A59B50CB2C00A29C27C8BB76EF7F] - 09/11/2013 - 12:34:30 ---A- - C:\Windows\Prefetch\SETTOUCHPADCONTROL64.EXE-CAF017E2.pf
O45 - LFCP:[MD5.DEC992B2DC8AA7B5436410FDFECCCD27] - 09/11/2013 - 12:34:31 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-5A956D1E.pf
O45 - LFCP:[MD5.CEEDDB2679983F52FCCE369B42E4735A] - 09/11/2013 - 12:34:31 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-94CE7668.pf
O45 - LFCP:[MD5.9DFED508267272C748513F430BA5599C] - 09/11/2013 - 12:34:57 ---A- - C:\Windows\Prefetch\CONSENT.EXE-2D674CE4.pf
O45 - LFCP:[MD5.6230DFE1F2D7229ED08CF898DE92E4A0] - 09/11/2013 - 12:34:57 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-5F2753B1.pf
O45 - LFCP:[MD5.1CFFAAA009A171954C7029AB75CAA317] - 09/11/2013 - 12:35:02 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E6B64B6C.pf
O45 - LFCP:[MD5.4928EE8EEACAD1BC6AC3281214C01BC3] - 09/11/2013 - 12:35:07 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-C7289479.pf
O45 - LFCP:[MD5.7A3FD1937C5E50F19B2AA15DD39E1132] - 09/11/2013 - 12:35:14 ---A- - C:\Windows\Prefetch\CMD.EXE-2EB3E6E2.pf
O45 - LFCP:[MD5.0A9125848ECCF741CA1EEAEAA688E9EF] - 09/11/2013 - 12:35:14 ---A- - C:\Windows\Prefetch\CONHOST.EXE-F98A1078.pf
O45 - LFCP:[MD5.AE30DCB6CE51C7E25DD83673D30CB1BF] - 09/11/2013 - 12:35:14 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-E9FF6526.pf
O45 - LFCP:[MD5.8EF041CD6F73DFBA8318F033C052BD45] - 09/11/2013 - 12:35:15 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-10E4267C.pf
O45 - LFCP:[MD5.2425F3316631FEF2DC3BFA1065D499F3] - 09/11/2013 - 12:35:15 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-C6CFE2A8.pf
O45 - LFCP:[MD5.953FD78F888A311D782063BC9271FBB2] - 09/11/2013 - 12:35:18 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-7B160CA5.pf
O45 - LFCP:[MD5.FE84EF6387553523F701FE27CFB7A0DA] - 09/11/2013 - 12:35:18 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-0C8A533A.pf
O45 - LFCP:[MD5.DBE2C94CE961563729EFCF4918F2469D] - 09/11/2013 - 12:35:45 ---A- - C:\Windows\Prefetch\AgCx_SC2.db
O45 - LFCP:[MD5.FCB0F00BB2BE46AE823D5CEB26D71F56] - 09/11/2013 - 12:35:45 ---A- - C:\Windows\Prefetch\PV.EXE-D9D90B9C.pf
O45 - LFCP:[MD5.C90D0054AC4703260B001C4805942402] - 09/11/2013 - 12:36:06 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-D08B2113.pf
O45 - LFCP:[MD5.D1FA4C80F2E5199EC9FCBF3ABBCD2D5E] - 09/11/2013 - 12:36:11 ---A- - C:\Windows\Prefetch\TIWORKER.EXE-375F3D59.pf
O45 - LFCP:[MD5.5BE2A610B483EEADEB32E5398FF0CC2F] - 09/11/2013 - 12:36:11 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-B018CCBF.pf
O45 - LFCP:[MD5.C7EC17E48075273D8DDFD60D5CA3A28F] - 09/11/2013 - 12:36:18 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-0AD36442.pf
O45 - LFCP:[MD5.E11B08EAD24045BABE8F5776DE98DFF2] - 09/11/2013 - 12:36:43 ---A- - C:\Windows\Prefetch\TASKHOSTEX.EXE-7356AAC0.pf
O45 - LFCP:[MD5.6AE3F14AEAD94B2A3E275A7BD7B04280] - 09/11/2013 - 12:36:52 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-985C34E6.pf
~ Prefetcher: 54 Scanned in 00mn 00s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Live Security Package.) -- C:\Windows\System32\livessp.dll
~ LSA: 9 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 17 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ TDSD: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s
#74375
Rapport de ZHPFix 2013.11.4.1 par Nicolas Coolman, Update du 03/11/2013
Fichier d'export Registre : C:\Users\Alexis\AppData\Roaming\ZHP\ZHPExportRegistry-09-11-2013-14-29-41.txt
Run by Alexis at 09/11/2013 14:19:40
High Elevated Privileges : OK
Windows 8 Home Premium Edition, 64-bit (Build 9200)

Corbeille vidée (10mn 01s)

========== Logiciels ==========
SUPPRIMÉ: Plants vs. Zombies

========== Clés du Registre ==========
SUPPRIMÉ: HKCU\Software\PopCap
SUPPRIMÉ: HKLM\Software\Wow6432Node\PopCap
SUPPRIMÉ: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\eSafeSvc
SUPPRIMÉ: Service: PCToolsSSDMonitorSvc
SUPPRIMÉ: HKCU\Software\PCTools
SUPPRIMÉ: HKLM\Software\Wow6432Node\PCTools

========== Valeurs du Registre ==========
SUPPRIMÉ RunValue: SSDMonitor
SUPPRIMÉ: Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F}
SUPPRIMÉ RunValue: Adobe Reader Speed Launcher

========== Eléments de donnée du Registre ==========
SUPPRIMÉ: StartMenuInternet: C:\Program Files (x86)\Opera\Opera.exe" http://www.delta-homes.com

========== Dossiers ==========
Aucun dossiers CLSID Local utilisateur vide

========== Fichiers ==========
SUPPRIMÉ: c:\users\alexis\appdata\local\google\chrome\user data\default\preferences
SUPPRIMÉ: c:\users\alexis\appdata\local\google\chrome\user data\default\databases\chrome-extension_kfakeonomonapccoamcmdgpoaicnpnoo_0\7
SUPPRIMÉ: c:\users\alexis\appdata\local\google\chrome\user data\default\local extension settings\kfakeonomonapccoamcmdgpoaicnpnoo\current
SUPPRIMÉ: c:\users\alexis\appdata\local\google\chrome\user data\default\local extension settings\kfakeonomonapccoamcmdgpoaicnpnoo\log
SUPPRIMÉ: c:\users\alexis\appdata\local\google\chrome\user data\default\local extension settings\kfakeonomonapccoamcmdgpoaicnpnoo\log.old
SUPPRIMÉ: c:\users\alexis\appdata\local\google\chrome\user data\default\local extension settings\kfakeonomonapccoamcmdgpoaicnpnoo\manifest-000768
SUPPRIMÉ: C:\Users\Alexis\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\gophoto@gophoto.it.xpi
SUPPRIMÉ Redémarrage: c:\program files (x86)\common files\pc tools\smonitor\ssdmonitor.exe
SUPPRIMÉ: c:\windows\prefetch\vendorapirun64.exe-358606d0.pf
SUPPRIMÉ: c:\windows\prefetch\settouchpadcontrol64.exe-caf017e2.pf
SUPPRIMÉS Temporaires Windows (0) (0 octets)
SUPPRIMÉS Flash Cookies (0) (0 octets)

========== Restauration Système ==========
Point de restauration du système créé avec succès


========== Récapitulatif ==========
6 : Clés du Registre
3 : Valeurs du Registre
1 : Eléments de donnée du Registre
1 : Dossiers
12 : Fichiers
1 : Logiciels
1 : Restauration Système


End of clean in 11mn 07s

========== Chemin de fichier rapport ==========
C:\Users\Alexis\AppData\Roaming\ZHP\ZHPFix[R1].txt - 09/11/2013 14:29:41 [2651]
#74450
Malwarebytes Anti-Malware (Essai) 1.75.0.1300
http://www.malwarebytes.org

Version de la base de données: v2013.11.09.05

Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16721
Alexis :: BOBOUU [limité]

Protection: Activé

09/11/2013 15:21:02
mbam-log-2013-11-09 (15-21-02).txt

Type d'examen: Examen complet (C:\|D:\|)
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 490013
Temps écoulé: 2 heure(s), 7 minute(s), 31 seconde(s)

Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)

Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)

Fichier(s) détecté(s): 21
C:\$Recycle.Bin\S-1-5-18\$RUV6JGF\AudioTest.exe (Trojan.PWS.Zbot.AI) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\FTdownloader V4.0\FTdownloader V4.0-helper.exe.vir (PUP.Optional.CrossRider) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\FTDownloader.com\FLTextsetup.exe.vir (PUP.Optional.CrossRider) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\FTDownloader.com\FTDownloaderIE.exe.vir (PUP.Optional.CrossRider) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-bg.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-bho.dll.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-buttonutil.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-buttonutil64.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-chromeinstaller.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-codedownloader.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-enabler.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-firefoxinstaller.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-updater.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-2.2\Uninstall.exe.vir (PUP.Optional.PlusHD.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Wajam\IE\priam_bho.dll.vir (PUP.Optional.Wajam.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Wajam\Updater\WajamUpdater.exe.vir (PUP.Optional.Wajam.A) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Users\Alexis\AppData\Roaming\eIntaller\EAF778C3D5C9414d8D0218A2BDF40299\Desk365.exe.vir (PUP.Optional.E7) - Mis en quarantaine et supprimé avec succès.
C:\AdwCleaner\Quarantine\C\Users\Alexis\AppData\Roaming\file scout\filescout.exe.vir (PUP.Optional.FileScout.A) - Mis en quarantaine et supprimé avec succès.
C:\Users\Alexis\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000000 (PUP.Optional.Somoto) - Mis en quarantaine et supprimé avec succès.
C:\Users\Alexis\Downloads\7Zip-1fNiATV.exe (PUP.Optional.Somoto) - Mis en quarantaine et supprimé avec succès.
C:\Users\Alexis\Downloads\Setup.exe (PUP.Optional.DomaIQ) - Mis en quarantaine et supprimé avec succès.

(fin)
#74872
Super gentil a toi (:
Voila le rapport !
Results of screen317's Security Check version 0.99.76
x64 (UAC is enabled)
Internet Explorer 10
``````````````Antivirus/Firewall Check:``````````````
Windows Defender
WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
Malwarebytes Anti-Malware version 1.75.0.1300
Adobe Reader XI
Google Chrome 30.0.1599.101
Google Chrome 30.0.1599.69
````````Process Check: objlist.exe by Laurent````````
Windows Defender MSMpEng.exe
Malwarebytes Anti-Malware mbamservice.exe
Malwarebytes Anti-Malware mbamgui.exe
Malwarebytes' Anti-Malware mbamscheduler.exe
Windows Defender MsMpEng.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: %
````````````````````End of Log``````````````````````
Problème de téléchargement

Bonjour Suivez les indications de KAV, si vous n'[…]

Présentation

Hello :hello: , Merci pour l'accueil

New crash game Plinko

Oh, great. Crash games are a good choice if you wa[…]

Site officiel du casino Vavada

C'est un vieux casino, ce n'est pas du tout int&ea[…]