Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan | 2.712 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
- ¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤
- ~ Mis à jour le 12/07/2012 | 16.20 par g3n-h@ckm@n
- ~ Informations Evolution : http://gen-hackman.forum-pro.fr/t64-historique-de-l-outil
- ~ Informations sur les switchs Pre_Script : http://gen-hackman.forum-pro.fr/t89-les-switchs
- ~ Feedback Pre_scan : http://gen-hackman.forum-pro.fr/t93-feedback-pre_scan#505
- ~ Merci à C_XX , Slyk & Saachaa pour leur apport à l'évolution de l'outil
- ~ Utilisateur : Gurvan (Administrateurs) | SID = S-1-5-21-4232414852-395253565-4101861292-1000
- ~ Ordinateur : GURVAN-PC
- ~ Système d'exploitation : Windows 7 Home Premium (64 bits) HomePremium Service Pack 1
- ~ Type d'installation : Client
- ~ Enregistré sous : Gurvan
- ~ Processeur : AMD Phenom(tm) II X4 840 Processor
- ~ Identification : AMD64 Family 16 Model 5 Stepping 3
- Pare-feu windows : Actif
- Windows Defender : Actif
- ~ Mémoire RAM = Total (KB) : 8386740 | Used (%) : 16 | Free (KB) : 6962900
- ~ Pagefile = Total (KB) : 16771640 | Free (KB) : 15153370
- ~ Virtuelle = Total (KB) : 4194180 | Free (KB) : 4025620
- ¤¤¤¤¤¤¤¤¤¤ | Scripts de boot
- ¤¤¤¤¤¤¤¤¤¤ | Drives
- c:\ -> [Fixed] | [] | Total : 238370 Mo | Free : 105880 Mo -> NTFS
- Scan : 18:44:42 | 12/07/2012
- ¤¤¤¤¤¤¤¤¤¤ | Navigateurs
- Internet Explorer : 8.0.7601.17514
- Mozilla Firefox : 11.0 (fr)
- Google Chrome : 20.0.1132.57
- ¤ Par défaut :
- [HKCR\http | command] : "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome
- ¤¤¤¤¤¤¤¤¤¤ | Frameworks
- ~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v1.0.3705
- ~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v1.1.4322
- ~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v1.0.3705
- ~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v1.1.4322
- ~ [14/07/2009 05:20:10] - C:\Windows\Microsoft.net\Framework\v2.0.50727
- ~ [14/07/2009 07:32:38] - C:\Windows\Microsoft.net\Framework\v3.0
- ~ [14/07/2009 07:32:38] - C:\Windows\Microsoft.net\Framework\v3.5
- ~ [29/12/2011 13:03:16] - C:\Windows\Microsoft.net\Framework\v4.0.30319
- ¤¤¤¤¤¤¤¤¤¤ | Windows Updates
- ¤¤¤¤¤¤¤¤¤¤ | Sessions | Profiles | Directories
- ~ [HKLM | ProfileList\S-1-5-21-4232414852-395253565-4101861292-1000]|[ProfileImagePath] : C:\Users\Gurvan
- ~ [HKLM | ProfileList\S-1-5-21-4232414852-395253565-4101861292-1000]|[RefCount] : 1
- ~ [HKLM | ProfileList\S-1-5-21-4232414852-395253565-4101861292-1000]|[State] : 256
- ~ C:\Windows\system32\config\systemprofile
- ~ C:\Windows\ServiceProfiles\LocalService
- ~ C:\Windows\ServiceProfiles\NetworkService
- ~ C:\Users\Gurvan
- [HKLM | ProfileLoader\{F5441CBB-AE7D-4495-905B-161047E58936}]|[DllName] : userenv.dll
- Nouveau point de restauration créé
- ¤¤¤¤¤¤¤¤¤¤ | Contrôle MD5
- [MD5.332FEAB1435662FC6C672E25BEB37BE3] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\explorer.exe
- [MD5.332FEAB1435662FC6C672E25BEB37BE3] - [12/07/2012 13:12:44] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\erdnt\cache86\explorer.exe
- [MD5.C235A51CB740E45FFA0EBFB9BAFCDA64] - [14/07/2009 01:56:52] - (.© Microsoft Corporation. - Explorateur Windows.) - [2801 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
- [MD5.F170B4A061C9E026437B193B4D571799] - [29/12/2011 11:54:34] - (.© Microsoft Corporation. - Explorateur Windows.) - [2801 Ko] - (6.1.7600.16404) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
- [MD5.9AAAEC8DAC27AA17B053E6352AD233AE] - [29/12/2011 11:52:04] - (.© Microsoft Corporation. - Explorateur Windows.) - [2803 Ko] - (6.1.7600.16450) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
- [MD5.0862495E0C825893DB75EF44FAEA8E93] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2803 Ko] - (6.1.7600.16768) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
- [MD5.700073016DAC1C3D2E7E2CE4223334B6] - [29/12/2011 11:54:34] - (.© Microsoft Corporation. - Explorateur Windows.) - [2801 Ko] - (6.1.7600.20500) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
- [MD5.B8EC4BD49CE8F6FC457721BFC210B67F] - [29/12/2011 11:52:04] - (.© Microsoft Corporation. - Explorateur Windows.) - [2803 Ko] - (6.1.7600.20563) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
- [MD5.E38899074D4951D31B4040E994DD7C8D] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2803.5 Ko] - (6.1.7600.20910) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
- [MD5.AC4C51EB24AA95B77F705AB159189E24] - [30/12/2011 21:01:35] - (.© Microsoft Corporation. - Explorateur Windows.) - [2805 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
- [MD5.332FEAB1435662FC6C672E25BEB37BE3] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
- [MD5.3B69712041F3D63605529BD66DC00C48] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.21669) - C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
- [MD5.15BC38A7492BEFE831966ADB477CF76F] - [14/07/2009 01:41:14] - (.© Microsoft Corporation. - Explorateur Windows.) - [2552 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
- [MD5.B95EEB0F4E5EFBF1038A35B3351CF047] - [29/12/2011 11:54:34] - (.© Microsoft Corporation. - Explorateur Windows.) - [2552 Ko] - (6.1.7600.16404) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
- [MD5.2626FC9755BE22F805D3CFA0CE3EE727] - [29/12/2011 11:52:04] - (.© Microsoft Corporation. - Explorateur Windows.) - [2553 Ko] - (6.1.7600.16450) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
- [MD5.2AF58D15EDC06EC6FDACCE1F19482BBF] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2553.5 Ko] - (6.1.7600.16768) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
- [MD5.9FF6C4C91A3711C0A3B18F87B08B518D] - [29/12/2011 11:54:34] - (.© Microsoft Corporation. - Explorateur Windows.) - [2552 Ko] - (6.1.7600.20500) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
- [MD5.C76153C7ECA00FA852BB0C193378F917] - [29/12/2011 11:52:04] - (.© Microsoft Corporation. - Explorateur Windows.) - [2553 Ko] - (6.1.7600.20563) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
- [MD5.255CF508D7CFB10E0794D6AC93280BD8] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2553.5 Ko] - (6.1.7600.20910) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
- [MD5.40D777B7A95E00593EB1568C68514493] - [30/12/2011 21:01:25] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
- [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.17567) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
- [MD5.0FB9C74046656D1579A64660AD67B746] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2555 Ko] - (6.1.7601.21669) - C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
- [MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 01:19:49] - (.© Microsoft Corporation. - Processus d’exécution client-serveur.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\csrss.exe
- [MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 01:19:49] - (.© Microsoft Corporation. - Processus d’exécution client-serveur.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-csrss_31bf3856ad364e35_6.1.7600.16385_none_b4d8d57efdc6b4f3\csrss.exe ->
- [MD5.24ACB7E5BE595468E3B9AA488B9B4FCB] - [14/07/2009 01:19:46] - (.© Microsoft Corporation. - Applications Services et Contrôleur.) - [321 Ko] - (6.1.7600.16385) - C:\Windows\System32\services.exe
- [MD5.24ACB7E5BE595468E3B9AA488B9B4FCB] - [12/07/2012 13:12:39] - (.© Microsoft Corporation. - Applications Services et Contrôleur.) - [321 Ko] - (6.1.7600.16385) - C:\Windows\erdnt\cache64\services.exe
- [MD5.24ACB7E5BE595468E3B9AA488B9B4FCB] - [14/07/2009 01:19:46] - (.© Microsoft Corporation. - Applications Services et Contrôleur.) - [321 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
- [MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Gestionnaire de sessions Windows.) - [110 Ko] - (6.1.7600.16385) - C:\Windows\System32\smss.exe
- [MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Windows Session Manager.) - [110 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe
- [MD5.BAFE84E637BF7388C96EF48D4D3FDD53] - [30/12/2011 21:00:48] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [30 Ko] - (6.1.7601.17514) - C:\Windows\System32\userinit.exe
- [MD5.61AC3EFDFACFDD3F0F11DD4FD4044223] - [30/12/2011 21:00:51] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\SysWOW64\userinit.exe
- [MD5.BAFE84E637BF7388C96EF48D4D3FDD53] - [12/07/2012 13:12:41] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [30 Ko] - (6.1.7601.17514) - C:\Windows\erdnt\cache64\userinit.exe
- [MD5.61AC3EFDFACFDD3F0F11DD4FD4044223] - [12/07/2012 13:12:44] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\erdnt\cache86\userinit.exe
- [MD5.6F8F1376A13114CC10C0E69274F5A4DE] - [14/07/2009 01:50:33] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [29.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
- [MD5.BAFE84E637BF7388C96EF48D4D3FDD53] - [30/12/2011 21:00:48] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [30 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
- [MD5.6DE80F60D7DE9CE6B8C2DDFDF79EF175] - [14/07/2009 01:34:20] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [25.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
- [MD5.61AC3EFDFACFDD3F0F11DD4FD4044223] - [30/12/2011 21:00:51] - (.© Microsoft Corporation. - Application d’ouverture de session Userinit.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
- [MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 01:52:37] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\System32\wininit.exe
- [MD5.B5C5DCAD3899512020D135600129D665] - [14/07/2009 01:36:49] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [94 Ko] - (6.1.7600.16385) - C:\Windows\SysWOW64\wininit.exe
- [MD5.94355C28C1970635A31B3FE52EB7CEBA] - [12/07/2012 13:12:42] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\erdnt\cache64\wininit.exe
- [MD5.B5C5DCAD3899512020D135600129D665] - [12/07/2012 13:12:44] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [94 Ko] - (6.1.7600.16385) - C:\Windows\erdnt\cache86\wininit.exe
- [MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 01:52:37] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_8ce7aa761e01ad49\wininit.exe
- [MD5.B5C5DCAD3899512020D135600129D665] - [14/07/2009 01:36:49] - (.© Microsoft Corporation. - Application de démarrage de Windows.) - [94 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\x86_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_30c90ef265a43c13\wininit.exe
- [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - [30/12/2011 21:01:21] - (.© Microsoft Corporation. - Application d’ouverture de session Windows.) - [381.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\winlogon.exe
- [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - [12/07/2012 13:12:40] - (.© Microsoft Corporation. - Application d’ouverture de session Windows.) - [381.5 Ko] - (6.1.7601.17514) - C:\Windows\erdnt\cache64\winlogon.exe
- [MD5.132328DF455B0028F13BF0ABEE51A63A] - [14/07/2009 01:52:48] - (.© Microsoft Corporation. - Windows Logon Application.) - [380 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
- [MD5.DA3E2A6FA9660CC75B471530CE88453A] - [29/12/2011 11:52:04] - (.© Microsoft Corporation. - Windows Logon Application.) - [380.5 Ko] - (6.1.7600.16447) - C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
- [MD5.A93D41A4D4B0D91C072D11DD8AF266DE] - [29/12/2011 11:52:04] - (.© Microsoft Corporation. - Windows Logon Application.) - [380.5 Ko] - (6.1.7600.20560) - C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
- [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - [30/12/2011 21:01:21] - (.© Microsoft Corporation. - Application d’ouverture de session Windows.) - [381.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
- [MD5.1C7857B62DE5994A75B054A9FD4C3825] - [15/02/2012 12:58:58] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487 Ko] - (6.1.7601.17752) - C:\Windows\System32\drivers\afd.sys
- [MD5.B9384E03479D2506BC924C16A3DB87BC] - [14/07/2009 01:21:44] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16385_none_33dd3439781e25f7\afd.sys
- [MD5.6EF20DDF3172E97D69F596FB90602F29] - [29/12/2011 11:52:20] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488 Ko] - (6.1.7600.16802) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16802_none_3430bc3977dfec2d\afd.sys
- [MD5.DB9D6C6B2CD95A9CA414D045B627422E] - [15/02/2012 12:58:58] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7600.16937) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16937_none_34154fcd77f3bbda\afd.sys
- [MD5.FBFF8B7C9D116229E9208A0D1CAEB49B] - [29/12/2011 11:52:20] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488 Ko] - (6.1.7600.20951) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.20951_none_3483491e9126fe55\afd.sys
- [MD5.CCA39961E76B491DDF44B1E90FC8971D] - [15/02/2012 12:58:58] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7600.21115) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.21115_none_34b263fe91032456\afd.sys
- [MD5.D31DC7A16DEA4A9BAF179F3D6FBDB38C] - [30/12/2011 21:01:28] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [488 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17514_none_360e4801750ca991\afd.sys
- [MD5.D5B031C308A409A0A576BFF4CF083D30] - [29/12/2011 11:52:20] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7601.17603) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17603_none_3618198975057170\afd.sys
- [MD5.1C7857B62DE5994A75B054A9FD4C3825] - [15/02/2012 12:58:58] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487 Ko] - (6.1.7601.17752) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17752_none_35e10b89752ee0f5\afd.sys
- [MD5.F4AD06143EAC303F55D0E86C40802976] - [29/12/2011 11:52:20] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487.5 Ko] - (6.1.7601.21712) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21712_none_3695e61e8e2c13d4\afd.sys
- [MD5.36A14FD1A23F57046361733B792CA8DB] - [15/02/2012 12:58:58] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [486.5 Ko] - (6.1.7601.21887) - C:\Windows\winsxs\amd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21887_none_364f3a028e605345\afd.sys
- [MD5.02062C0B390B7729EDC9E69C680A6F3C] - [12/07/2012 13:12:39] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\erdnt\cache64\atapi.sys
- [MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\drivers\atapi.sys
- [MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
- [MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
- [MD5.F036CE71586E93D94DAB220D7BDF4416] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\cdrom.sys
- [MD5.83D2D75E1EFB81B3450C18131443F7DB] - [14/07/2009 01:19:54] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
- [MD5.F036CE71586E93D94DAB220D7BDF4416] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys
- [MD5.09594D1089C523423B32A4229263F068] - [30/12/2011 21:01:23] - (.© Microsoft Corporation. - MBT Transport driver.) - [255.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\netbt.sys
- [MD5.9162B273A44AB9DCE5B44362731D062A] - [14/07/2009 01:21:29] - (.© Microsoft Corporation. - MBT Transport driver.) - [253 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-netbt_31bf3856ad364e35_6.1.7600.16385_none_bc59ba0910f52e0c\netbt.sys
- [MD5.09594D1089C523423B32A4229263F068] - [30/12/2011 21:01:23] - (.© Microsoft Corporation. - MBT Transport driver.) - [255.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-netbt_31bf3856ad364e35_6.1.7601.17514_none_be8acdd10de3b1a6\netbt.sys
- [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [12/07/2012 13:12:39] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\erdnt\cache64\tdx.sys
- [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [30/12/2011 21:01:23] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\tdx.sys
- [MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - [14/07/2009 01:21:15] - (.© Microsoft Corporation. - TDI Translation Driver.) - [97.5 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_microsoft-windows-tdi-over-tcpip_31bf3856ad364e35_6.1.7600.16385_none_4632b9f2f5c6af5e\tdx.sys
- [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [30/12/2011 21:01:23] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_microsoft-windows-tdi-over-tcpip_31bf3856ad364e35_6.1.7601.17514_none_4863cdbaf2b532f8\tdx.sys
- [MD5.0D08D2F3B3FF84E433346669B5E0F639] - [30/12/2011 21:01:13] - (.© Microsoft Corporation. - Pilote de cliché instantané du volume.) - [288.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\drivers\volsnap.sys
- [MD5.58F82EED8CA24B461441F9C3E4F0BF5C] - [14/07/2009 01:20:09] - (.© Microsoft Corporation. - Volume Shadow Copy Driver.) - [288.08 Ko] - (6.1.7600.16385) - C:\Windows\winsxs\amd64_volume.inf_31bf3856ad364e35_6.1.7600.16385_none_71aba92815c60174\volsnap.sys
- [MD5.0D08D2F3B3FF84E433346669B5E0F639] - [30/12/2011 21:01:13] - (.© Microsoft Corporation. - Volume Shadow Copy Driver.) - [288.88 Ko] - (6.1.7601.17514) - C:\Windows\winsxs\amd64_volume.inf_31bf3856ad364e35_6.1.7601.17514_none_73dcbcf012b4850e\volsnap.sys
- 18:45:40
- ¤¤¤¤¤¤¤¤¤¤ | Processus
- atiesrxx.exe (896) -> Processus stoppé
- atieclxx.exe (1092) -> Processus stoppé
- spoolsv.exe (1344) -> Processus stoppé
- taskhost.exe (1512) -> Processus stoppé
- armsvc.exe (1728) -> Processus stoppé
- explorer.exe (1844) -> Processus stoppé
- Fuel.Service.exe (1912) -> Processus stoppé
- AppleMobileDeviceService.exe (2004) -> Processus stoppé
- hamachi-2.exe (1068) -> Processus stoppé
- PnkBstrA.exe (1756) -> Processus stoppé
- TeamViewer_Service.exe (2064) -> Processus stoppé
- TuneUpUtilitiesService64.exe (2104) -> Processus stoppé
- WLIDSVC.EXE (2184) -> Processus stoppé
- hamachi-2-ui.exe (2304) -> Processus stoppé
- TuneUpUtilitiesApp64.exe (2588) -> Processus stoppé
- WLIDSVCM.EXE (2652) -> Processus stoppé
- RtkNGUI64.exe (2884) -> Processus stoppé
- Clownfish.exe (2900) -> Processus stoppé
- DTLite.exe (2920) -> Processus stoppé
- EasySetPackage.exe (3032) -> Processus stoppé
- Dropbox.exe (2132) -> Processus stoppé
- DUC30.exe (2432) -> Processus stoppé
- ONENOTEM.EXE (2176) -> Processus stoppé
- TestDDCCI.exe (992) -> Processus stoppé
- ESP64Proxy.exe (548) -> Processus stoppé
- MOM.exe (3224) -> Processus stoppé
- conhost.exe (3280) -> Processus stoppé
- SearchIndexer.exe (3416) -> Processus stoppé
- wmpnetwk.exe (4140) -> Processus stoppé
- CCC.exe (4332) -> Processus stoppé
- PresentationFontCache.exe (5516) -> Processus stoppé
- mbamservice.exe (5784) -> Processus stoppé
- Skype.exe (4588) -> Processus stoppé
- cmd.exe (3956) -> Processus stoppé
- conhost.exe (4200) -> Processus stoppé
- java.exe (5964) -> Processus stoppé
- chrome.exe (3900) -> Processus stoppé
- chrome.exe (2196) -> Processus stoppé
- chrome.exe (5588) -> Processus stoppé
- chrome.exe (680) -> Processus stoppé
- chrome.exe (4892) -> Processus stoppé
- ¤¤¤¤¤¤¤¤¤¤ | Processus en cours
- Demarrage : Normal
- 1372 | C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe - Système - Normal - "C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe" - 560
- 1936 | C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe - Système - Normal - "C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe" - 560
- 2248 | C:\Windows\SysWOW64\DllHost.exe - Gurvan - Normal - C:\Windows\SysWOW64\DllHost.exe /Processid:{3F6B5E16-092A-41ED-930B-0B4125D91D4E} - 736
- 1704 | C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe - Gurvan - Normal - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min - 3020
- 4632 | C:\Users\Gurvan\Downloads\winlogon.exe - Gurvan - Normal - "C:\Users\Gurvan\Downloads\winlogon.exe" - 3900
- 5560 | C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe - Système - Normal - "C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe" - 560
- 6060 | C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe - Système - Normal - "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe" - 560
- 4560 | C:\Pre_Scan\Pv.exe - Gurvan - Normal - C:\Pre_Scan\Pv.exe -o"%i | %f - %u - %p - %l - %r" - 3740
- ¤¤¤¤¤¤¤¤¤¤ | Winlogon
- ¤
- [HKLM | Winlogon]|[Shell] : Explorer.exe
- [HKLM | Winlogon]|[AutoRestartShell] : 1 -> 0
- [HKLM | Winlogon]|[userinit] : C:\Windows\system32\userinit.exe,
- [HKLM | Winlogon]|[PowerDownAfterShutdown] : -> 1
- [HKLM | Winlogon]|[System] :
- ¤¤¤¤¤¤¤¤¤¤ | Associations
- [.exe] : exefile
- [exefile | command] : "%1" %*
- [.com] : ComFile
- [comfile | command] : "%1" %*
- [.reg] : regfile
- [regfile | command] : regedit.exe "%1"
- [.scr] : scrfile
- [scrfile | command] : "%1" /S
- [.bat] : batfile
- [batfile | command] : "%1" %*
- [.cmd] : cmdfile
- [cmdfile | command] : "%1" %*
- [.pif] : piffile
- [piffile | command] : "%1" %*
- [.url] : InternetShortcut
- [InternetShortcut | command] : "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l
- [Application.Manifest | command] : rundll32.exe dfshim.dll,ShOpenVerbApplication %1
- [Application.Reference | command] : rundll32.exe dfshim.dll,ShOpenVerbShortcut %1|%2
- [Folder | command] : %SystemRoot%\Explorer.exe -> C:\Windows\explorer.exe
- ¤
- [Firefox | Command] | @ : C:\Program Files (x86)\Mozilla Firefox\firefox.exe -> "C:\Program Files (x86)\Mozilla Firefox\Firefox.exe"
- [Firefox - Safemode | Command] | @ : "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -safe-mode
- [IE | Command] | @ : "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
- [Applications | IE | Command] | @ : "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1
- [Chrome | Command] | @ : "C:\Users\Gurvan\AppData\Local\Google\Chrome\Application\chrome.exe"
- [Assoc | Applications] | @ : http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s
- ¤¤¤¤¤¤¤¤¤¤ | Corrections diverses
- [HKLM | HideDesktopIcons\ClassicStartMenu]|[{9343812e-1c37-4a49-a12e-4b2d810d956b}] : 1 -> 0
- [HKLM | HideDesktopIcons\NewStartPanel]|[{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}] : 1 -> 0
- [HKLM | HideDesktopIcons\NewStartPanel]|[{20D04FE0-3AEA-1069-A2D8-08002B30309D}] : 1 -> 0
- [HKLM | HideDesktopIcons\NewStartPanel]|[{208D2C60-3AEA-1069-A2D7-08002B30309D}] : 1 -> 0
- [HKLM | HideDesktopIcons\NewStartPanel]|[{871C5380-42A0-1069-A2EA-08002B30309D}] : 1 -> 0
- [HKLM | HideDesktopIcons\NewStartPanel]|[{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}] : 1 -> 0
- [HKLM | HideDesktopIcons\NewStartPanel]|[{59031a47-3f72-44a7-89c5-5595fe6b30ee}] : 1 -> 0
- [HKLM | HideDesktopIcons\NewStartPanel]|[{9343812e-1c37-4a49-a12e-4b2d810d956b}] : 1 -> 0
- [HKLM | Advanced\Folder\Hidden\SHOWALL]|[CheckedValue] : 1
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Explorer\Advanced]|[Start_PowerButtonAction] : 2
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Desktop]|[Wallpaper] : C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
- [HKU\S-1-5-18 | Desktop]|[Wallpaper] : (None)
- [HKU\S-1-5-19 | Policies\Explorer]|[NoDesktop] : -> 0
- [HKU\S-1-5-20 | Policies\Explorer]|[NoDesktop] : -> 0
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Policies\Explorer]|[NoDesktop] : -> 0
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000_Classes | Policies\Explorer]|[NoDesktop] : -> 0
- [HKU\S-1-5-18 | Policies\Explorer]|[NoDesktop] : -> 0
- [HKLM | CurrentVersion\Explorer]|[AlwaysUnloadDll] : -> 1
- [HKLM | policies\Explorer]|[NoDesktop] : -> 0
- [HKU\S-1-5-19 | Explorer\Advanced]|[Hidden] : -> 0
- [HKU\S-1-5-20 | Explorer\Advanced]|[Hidden] : -> 0
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Explorer\Advanced]|[Hidden] : 2 -> 0
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000_Classes | Explorer\Advanced]|[Hidden] : -> 0
- [HKU\S-1-5-18 | Explorer\Advanced]|[Hidden] : -> 0
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Policies\Explorer]|[NoDriveTypeAutoRun] : 145
- [HKLM | Policies\System] | DisableRegistryTools : 0
- [HKLM | Control\SafeBoot]|[AlternateShell] : cmd.exe
- 18:45:40
- ¤¤¤¤¤¤¤¤¤¤ | Démarrages Services
- [RPCSS] : 2 : Actif
- [Cmbatt] : 3 : Inactif
- [Compbatt] : 3 -> 0 : Inactif
- [Ndisuio] : 3 : Actif
- [Power] : 2 : Actif
- [Profsvc] : 2 : Actif
- [PlugPlay] : 2 : Actif
- [PEAUTH] : 2 : Actif
- [nsi] : 2 : Actif
- [NLASvc] : 2 : Actif
- [MPSsvc] : 2 : Actif
- [MMCSS] : 2 : Actif
- [luafv] : 2 : Actif
- [lltdio] : 2 : Actif
- [Iphlpsvc] : 2 : Actif
- [IKEEXT] : 3 -> 2 : Inactif
- [gpsvc] | Start : 2 : Actif
- [lmhosts] : 2 : Actif
- [LanmanWorkstation] : 2 : Actif
- [LanmanServer] : 2 : Actif
- [agp440] : 3 -> 2 : Inactif
- [AudioEndpointBuilder] : 2 : Actif
- [Audiosrv] : 2 : Actif
- [BFE] : 2 : Actif
- [Bits] : 3 -> 2 : Inactif
- [CryptSvc] : 2 : Actif
- [EapHost] : 3 -> 2 : Actif
- [Wlansvc] : 2 : Actif
- [SppSvc] : 2 : Inactif
- [SharedAccess] : 2 : Inactif
- [windefend] : 2 : Actif
- [wuauserv] : 2 : Actif
- [WerSvc] : 3 -> 2 : Actif
- [wscsvc] : 2 : Actif
- 18:45:40
- ¤¤¤¤¤¤¤¤¤¤ | Internet Explorer
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Main]|[Start Page] : http://google.fr/ -> http://www.google.com/
- [HKU\S-1-5-18 | Main]|[Start Page] : http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome -> http://www.google.com/
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Main]|[Local Page] : C:\Windows\system32\blank.htm
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Main]|[Search Page] : http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
- [HKU\S-1-5-18 | Main]|[Search Page] : http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
- [HKLM | Search]|[SearchAssistant] : http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm -> http://www.google.com/ie
- [HKLM | Main]|[Start Page] : http://go.microsoft.com/fwlink/?LinkId=69157
- [HKLM | Main]|[Local Page] : C:\Windows\SysWOW64\blank.htm
- [HKLM | Main]|[Default_Search_URL] : http://go.microsoft.com/fwlink/?LinkId=54896
- [HKLM | Main]|[Default_Page_URL] : http://go.microsoft.com/fwlink/?LinkId=69157
- [HKLM | Main]|[Search Page] : http://go.microsoft.com/fwlink/?LinkId=54896
- [HKLM | AboutURLs]|[Tabs] : http://www.google.com -> res://ieframe.dll/tabswelcome.htm
- ¤
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | PhishingFilter]|[Enabled] : 2
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Internet settings]|[ProxyOverride] : *.local
- [HKU\S-1-5-19 | Internet settings]|[EnableHttp1_1] : 1
- [HKU\S-1-5-20 | Internet settings]|[EnableHttp1_1] : 1
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Internet settings]|[EnableHttp1_1] : 1
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Internet settings]|[MigrateProxy] : 1
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Internet settings]|[WarnonBadCertRecving] : 1
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Internet settings]|[WarnOnHTTPSToHTTPRedirect] : 1
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Internet settings]|[WarnonZoneCrossing] : 1
- [HKU\S-1-5-19 | Internet settings]|[AutoConfigProxy] : wininet.dll
- [HKU\S-1-5-20 | Internet settings]|[AutoConfigProxy] : wininet.dll
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000 | Internet settings]|[AutoConfigProxy] : wininet.dll
- ¤
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] | (Bing) -> http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
- [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] | (@ieframe.dll,-12512) -> http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}] | () ->
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}] | () ->
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C442AC41-9200-4770-8CC0-7CDB4F245C55}] | () ->
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{000209FF-0000-0000-C000-000000000046}] | (winword.exe) -> C:\Program Files\Microsoft Office\Office14
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0002df01-0000-0000-c000-000000000046}] | (iexplore.exe) -> C:\Program Files (x86)\Internet Explorer
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{003B91A6-61E3-4591-891D-01E94C8CB11E}] | (Silverlight.Configuration.exe) -> C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{03288CB3-3893-46D1-8D58-B2F8BB6FF5BF}] | (MSACCESS.EXE) -> C:\Program Files\Microsoft Office\Office14
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{054aae20-4bea-4347-8a35-64a533254a9d}] | (tabtip.exe) -> C:\Program Files (x86)\Common Files\Microsoft Shared\Ink
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a}] | (wpcer.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{08f24d68-9087-4b24-81ad-7b34af3e3ed5}] | (Acrobat Elements.exe) -> C:\Program Files (x86)\adobe\acrobat 6.0\Acrobat Elements
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0a402d70-1f10-4ae7-bec9-286a98240695}] | (winfxdocobj.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1138506a-b949-46a7-b6c0-ee26499fdeaf}] | (wuapp.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{130c40f0-1bcb-4852-8b63-291cf90a600b}] | (msdt.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15B3FB63-66F4-4EFC-B717-BB283B85E79B}] | (AcroBroker.exe) -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{186e0934-aee9-11da-961b-0014223d2a70}] | (dfsvc.exe) -> C:\Windows\microsoft.net\framework\v2.0.50727
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ec76a37-1762-46ff-9b14-765b3e6793be}] | (agcp.exe) -> C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1F1E561D-AF17-4510-B996-351BBA0862A7}] | () ->
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2391d819-9d17-44ec-9ac1-f6aa07549469}] | (wermgr.exe) -> %systemroot%\system32
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26fe7361-bd5a-4dcb-b309-c6f42dde661c}] | (ieinstal.exe) -> C:\Program Files (x86)\Internet Explorer
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28A36D69-07EA-44CE-B298-1A8B3E8B6FE1}] | (Skype.exe) -> C:\Program Files (x86)\Skype\Phone\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2BBE903C-2776-4574-9855-EC1597ABE3D6}] | (excel.exe) -> C:\Program Files\Microsoft Office\Office14
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{358E6F10-DE8A-4602-8424-179CA217F8EE}] | (AcroRd32Info.exe) -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B9A6E32-36C9-4946-B78C-3F58E3785EC1}] | (unpack200.exe) -> C:\Program Files (x86)\Java\jre6\bin
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44D1B085-E495-4b5f-9EE6-34795C46E7E7}] | (jp2launcher.exe) -> C:\Program Files (x86)\Java\jre6\bin
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4becf16c-74f0-429b-8d3e-4fba507ac661}] | (acrord32.exe) -> C:\Program Files (x86)\adobe\acrobat 7.0\reader
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5852F5ED-8BF4-11D4-A245-0080C6F74284}] | (javaws.exe) -> C:\Program Files (x86)\Java\jre6\bin
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FBAF6E6-C64B-49DB-AB1B-F93C607EBC71}] | (onenote.exe) -> C:\Program Files\Microsoft Office\Office14\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6A7C9604-8A57-4B28-821B-BDEDF0E04788}] | (winproj.exe) -> C:\Program Files\Microsoft Office\Office14
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}] | (wmplayer.exe) -> %ProgramFiles%\Windows Media Player
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}-32] | (wmplayer.exe) -> %ProgramFiles(x86)%\Windows Media Player
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999}] | (iedw.exe) -> C:\Program Files (x86)\Internet Explorer
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76E2369A-75BA-41F9-8B9E-16059E5CF9A6}] | (AdobeARM.exe) -> C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78c7b664-c9bf-4ce9-8b3a-b05d442e451e}] | (CertEnrollCtrl.exe) -> C:\Windows\SysWOW64\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7aaae723-5fb5-4b2d-9327-75519f336825}] | () ->
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7eb01fb2-f185-445a-94e4-ec4e1ba2202c}] | (verclsid.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85fc331e-bb64-4c53-ba25-3d8a956c02fd}] | (ctfmon.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88B89B96-F7B2-469D-8F22-5F3BE33DEDDE}] | (SkypeIEPluginBroker.exe) -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8cec58ae-07a1-11d9-b15e-000d56bfe6ee}] | (helppane.exe) -> C:\Windows
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8D13E03F-8289-4c15-A84F-7A8F655C830A}] | (NAMECONTROLSERVER.EXE) -> C:\Program Files\Microsoft Office\Office14
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E1F80F4-953F-41E7-8460-E64AE5BE4ED3}] | (AdobeCollabSync.exe) -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95a4104c-1c49-4c2a-9830-1be0f47e926c}] | (acrobat.exe) -> C:\Program Files (x86)\adobe\acrobat 7.0\Acrobat
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C6A861C-B233-4994-AFB1-C158EE4FC578}] | (AcroRd32.exe) -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9da1d2cb-796d-4bec-bbaa-0aa9ccd80e15}] | (Acrobat Elements.exe) -> C:\Program Files (x86)\adobe\acrobat 7.0\Acrobat Elements
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a1ad1bbb-3b33-4260-a74c-5fd8bc1479fc}] | (splwow64.exe) -> C:\Windows
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5054EC7-B9CB-4ad5-9F95-D8171A6D6BFA}] | () ->
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a5a2d52a-4944-47c4-a3e0-8bd92e14d953}] | (xpsviewer.exe) -> C:\Windows\SysWOW64\xpsviewer
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}] | () ->
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{aff735eb-cdf9-4894-aa69-3e3131128618}] | (cmd.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B43A0C1E-B63F-4691-B68F-CD807A45DA01}] | (TSWbPrxy.exe) -> %systemroot%\system32
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD18A03F-31CC-4CC0-B52D-9E199122923D}] | () ->
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}] | (GoogleUpdateBroker.exe) -> C:\Program Files (x86)\Google\Update\1.3.21.115
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C442AC41-9200-4770-8CC0-7CDB4F245C55}] | (GoogleUpdate.exe) -> C:\Program Files (x86)\Google\Update
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8999AEC-AECE-4E27-9BCB-5358B13F9FF9}] | (dfsvc.exe) -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8999AED-AECE-4E27-9BCB-5358B13F9FF9}] | (dfsvc.exe) -> C:\Windows\Microsoft.NET\Framework64\v4.0.30319\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8FE2181-CAE7-49EE-9B04-DB7EB4DA544A}] | (ssvagent.exe) -> C:\Program Files (x86)\Java\jre6\bin
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dc6bf185-7ae4-444e-8c35-e447b0d2bd1e}] | (notepad.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD993BDC-06E0-4131-B889-DD3B9AEBE253}] | (IEContentService.exe) -> C:\Program Files\Microsoft Office\Office14\
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e5f90a07-7db7-4dcb-bd6d-d3fecd376ca3}] | (acrord32.exe) -> C:\Program Files (x86)\adobe\acrobat 6.0\reader
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eee261cc-4b3e-46e7-affb-61f297155bf2}] | (presentationhost.exe) -> C:\Windows\SysWOW64
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6A6CA96-B08E-4429-BA30-39232494F292}] | (MSPUB.EXE) -> C:\Program Files\Microsoft Office\Office14
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7629763-7562-4d3a-8468-6CA5563852B2}] | (INFOPATH.EXE) -> C:\Program Files\Microsoft Office\Office14
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fb9e068b-c612-4fa8-bdb9-d728a716a420}] | (acrobat.exe) -> C:\Program Files (x86)\adobe\acrobat 6.0\Acrobat
- [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC88B53C-9B2A-1A25-5867-C8612E79DBF6}] | (POWERPNT.EXE) -> C:\Program Files\Microsoft Office\Office14
- ¤¤¤¤¤¤¤¤¤¤ | Firefox
- Profile : qe9nz0hn.default
- user_pref("browser.startup.homepage_override.buildID", "20120312181643");
- user_pref("browser.startup.homepage_override.mstone", "rv:11.0");
- user_pref("browser.download.lastDir", "C:\\Users\\Gurvan\\Pictures\\Call Of Duty 6");
- ¤¤¤¤¤¤¤¤¤¤ | Extensions
- C:\Users\Gurvan\AppData\Roaming\Mozilla\Firefox\Profiles\qe9nz0hn.default\extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d}
- C:\Users\Gurvan\AppData\Roaming\Mozilla\Firefox\Profiles\qe9nz0hn.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
- C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- ¤¤¤¤¤¤¤¤¤¤ | Plugins
- C:\Program Files (x86)\Mozilla Firefox\searchplugins\amazon-france.xml
- C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml
- C:\Program Files (x86)\Mozilla Firefox\searchplugins\cnrtl-tlfi-fr.xml
- C:\Program Files (x86)\Mozilla Firefox\searchplugins\eBay-france.xml
- C:\Program Files (x86)\Mozilla Firefox\searchplugins\google.xml
- C:\Program Files (x86)\Mozilla Firefox\searchplugins\wikipedia-fr.xml
- C:\Program Files (x86)\Mozilla Firefox\searchplugins\yahoo-france.xml
- ¤¤¤¤¤¤¤¤¤¤ | DNS
- [HKLM\SYSTEM\ControlSet001 | Interfaces\{7CD8C22B-2041-47A8-AC4F-FF5CFE4EE4B0}]|[ DhcpNameServer] : 192.168.1.1
- [HKLM\SYSTEM\ControlSet001 | Interfaces\{D7BBBE87-DB1D-4D01-9331-472AC43EF385}]|[ DhcpNameServer] : 192.168.1.1
- [HKLM\SYSTEM\ControlSet002 | Interfaces\{7CD8C22B-2041-47A8-AC4F-FF5CFE4EE4B0}]|[ DhcpNameServer] : 192.168.1.1
- [HKLM\SYSTEM\ControlSet002 | Interfaces\{D7BBBE87-DB1D-4D01-9331-472AC43EF385}]|[ DhcpNameServer] : 192.168.1.1
- [HKLM\SYSTEM\CurrentControlSet | Interfaces\{7CD8C22B-2041-47A8-AC4F-FF5CFE4EE4B0}]|[ DhcpNameServer] : 192.168.1.1
- [HKLM\SYSTEM\CurrentControlSet | Interfaces\{D7BBBE87-DB1D-4D01-9331-472AC43EF385}]|[ DhcpNameServer] : 192.168.1.1
- ¤¤¤¤¤¤¤¤¤¤ | Hosts
- C:\Windows\System32\Drivers\etc\hosts : Nettoyé :)
- ¤¤¤¤¤¤¤¤¤¤ | Traitement Fichiers | Dossiers | Registre
- Supprimée : [HKLM | Microsoft\RFC1156Agent]
- Supprimée : [HKLM | Tracing\regcure_RASAPI32]
- Supprimée : [HKLM | Tracing\regcure_RASMANCS]
- 18:47:11
- Mise en quarantaine : C:\Users\Gurvan\AppData\Roaming\Microsoft\Office\fbcA97F.tmp
- Mise en quarantaine : C:\Users\Gurvan\AppData\Roaming\Mozilla Firefox.exe
- Supprimée : [HKLM | standardprofile\authorizedapplications\list]|[C:\Users\Gurvan\AppData\Roaming\Mozilla Firefox.exe] : C:\Users\Gurvan\AppData\Roaming\Mozilla Firefox.exe:*:Enabled:Windows Messanger
- 18:47:20
- Mise en quarantaine : C:\Windows\KMSEmulator.exe
- Mise en quarantaine : |D| - C:\Windows\AutoKMS
- Mise en quarantaine : C:\Users\Gurvan\AppData\Local\Temp\jansi-32-git-Bukkit-1.2.5-R3.0-b2203jnks.dll
- Mise en quarantaine : |D| - C:\Users\Gurvan\AppData\Roaming\PhotoFiltre
- Mis en quarantaine : C:\Windows\Prefetch\42746.EXE-23A429E3.pf
- Mis en quarantaine : C:\Windows\Prefetch\85568.EXE-F4C8FDD8.pf
- Mis en quarantaine : C:\Windows\Prefetch\ACRORD32.EXE-97743AA9.pf
- Mis en quarantaine : C:\Windows\Prefetch\ADOBEARM.EXE-7105D3A2.pf
- Mis en quarantaine : C:\Windows\Prefetch\AITAGENT.EXE-DA3E7689.pf
- Mis en quarantaine : C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf
- Mis en quarantaine : C:\Windows\Prefetch\AVCENTER.EXE-FD66D2A7.pf
- Mis en quarantaine : C:\Windows\Prefetch\AVNOTIFY.EXE-377AF47F.pf
- Mis en quarantaine : C:\Windows\Prefetch\AVSCAN.EXE-EDA6668B.pf
- Mis en quarantaine : C:\Windows\Prefetch\AVSHADOW.EXE-04DD2548.pf
- Mis en quarantaine : C:\Windows\Prefetch\AVWSC.EXE-9DE67EBB.pf
- Mis en quarantaine : C:\Windows\Prefetch\BSSNDRPT.EXE-AC6B1F60.pf
- Mis en quarantaine : C:\Windows\Prefetch\CCC.EXE-B637C9BF.pf
- Mis en quarantaine : C:\Windows\Prefetch\CHROME.EXE-E7A724F3.pf
- Mis en quarantaine : C:\Windows\Prefetch\CLI.EXE-BB402402.pf
- Mis en quarantaine : C:\Windows\Prefetch\CMD.EXE-4A81B364.pf
- Mis en quarantaine : C:\Windows\Prefetch\CMD.EXE-AC113AA8.pf
- Mis en quarantaine : C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf
- Mis en quarantaine : C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf
- Mis en quarantaine : C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf
- Mis en quarantaine : C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf
- Mis en quarantaine : C:\Windows\Prefetch\DLLHOST.EXE-40DD444D.pf
- Mis en quarantaine : C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf
- Mis en quarantaine : C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf
- Mis en quarantaine : C:\Windows\Prefetch\DLLHOST.EXE-67751737.pf
- Mis en quarantaine : C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf
- Mis en quarantaine : C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf
- Mis en quarantaine : C:\Windows\Prefetch\DLLHOST.EXE-B2EB1806.pf
- Mis en quarantaine : C:\Windows\Prefetch\DLLHOST.EXE-ECB71776.pf
- Mis en quarantaine : C:\Windows\Prefetch\DOFUSMOD.EXE-C9F41656.pf
- Mis en quarantaine : C:\Windows\Prefetch\EHPRIVJOB.EXE-CE89B169.pf
- Mis en quarantaine : C:\Windows\Prefetch\EHREC.EXE-BFABB40F.pf
- Mis en quarantaine : C:\Windows\Prefetch\EHRECVR.EXE-96B31E37.pf
- Mis en quarantaine : C:\Windows\Prefetch\EHSCHED.EXE-7A86D5F8.pf
- Mis en quarantaine : C:\Windows\Prefetch\EHTRAY.EXE-FEBFC005.pf
- Mis en quarantaine : C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf
- Mis en quarantaine : C:\Windows\Prefetch\FIREFOX.EXE-18ACFCFF.pf
- Mis en quarantaine : C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-216D9C35.pf
- Mis en quarantaine : C:\Windows\Prefetch\GOOGLEUPDATE.EXE-69C826DE.pf
- Mis en quarantaine : C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf
- Mis en quarantaine : C:\Windows\Prefetch\GUARDGUI.EXE-BDAEFB77.pf
- Mis en quarantaine : C:\Windows\Prefetch\HEARTS.EXE-EDB3F29F.pf
- Mis en quarantaine : C:\Windows\Prefetch\HYDRADM.EXE-BDA9836C.pf
- Mis en quarantaine : C:\Windows\Prefetch\HYDRADM64.EXE-2194898E.pf
- Mis en quarantaine : C:\Windows\Prefetch\IPMGUI.EXE-F9CAB886.pf
- Mis en quarantaine : C:\Windows\Prefetch\IPODSERVICE.EXE-37C43D64.pf
- Mis en quarantaine : C:\Windows\Prefetch\JAVA.EXE-873AF69D.pf
- Mis en quarantaine : C:\Windows\Prefetch\JAVAW.EXE-2699CD1A.pf
- Mis en quarantaine : C:\Windows\Prefetch\LEAGUE OF LEGENDS.EXE-5839690A.pf
- Mis en quarantaine : C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf
- Mis en quarantaine : C:\Windows\Prefetch\LOL.LAUNCHER.EXE-4C860503.pf
- Mis en quarantaine : C:\Windows\Prefetch\LOLCLIENT.EXE-DCDC3BEF.pf
- Mis en quarantaine : C:\Windows\Prefetch\LOLLAUNCHER.EXE-6FB2AFD0.pf
- Mis en quarantaine : C:\Windows\Prefetch\LPREMOVE.EXE-284EF282.pf
- Mis en quarantaine : C:\Windows\Prefetch\MBAM.EXE-80210E2F.pf
- Mis en quarantaine : C:\Windows\Prefetch\MBAMSERVICE.EXE-B55DB80C.pf
- Mis en quarantaine : C:\Windows\Prefetch\MCGLIDHOST.EXE-E3F0E99A.pf
- Mis en quarantaine : C:\Windows\Prefetch\MCUPDATE.EXE-62E74733.pf
- Mis en quarantaine : C:\Windows\Prefetch\MINECRAFT.EXE-4788BF5B.pf
- Mis en quarantaine : C:\Windows\Prefetch\MINESWEEPER.EXE-236A9099.pf
- Mis en quarantaine : C:\Windows\Prefetch\MMLOADDRV.EXE-4072A3B8.pf
- Mis en quarantaine : C:\Windows\Prefetch\MPCMDRUN.EXE-F401FBB4.pf
- Mis en quarantaine : C:\Windows\Prefetch\MSASCUI.EXE-07E0123F.pf
- Mis en quarantaine : C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf
- Mis en quarantaine : C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf
- Mis en quarantaine : C:\Windows\Prefetch\MUMBLE.EXE-5D7B72ED.pf
- Mis en quarantaine : C:\Windows\Prefetch\NOTEPAD++.EXE-76BDBB33.pf
- Mis en quarantaine : C:\Windows\Prefetch\NOTEPAD.EXE-86E0E9B9.pf
- Mis en quarantaine : C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf
- Mis en quarantaine : C:\Windows\Prefetch\ONECLICKSTARTER.EXE-25620234.pf
- Mis en quarantaine : C:\Windows\Prefetch\PHOTOFILTRE.EXE-376E20D9.pf
- Mis en quarantaine : C:\Windows\Prefetch\PING.EXE-7E94E73E.pf
- Mis en quarantaine : C:\Windows\Prefetch\PMB.EXE-3F581971.pf
- Mis en quarantaine : C:\Windows\Prefetch\PRESENTATIONFONTCACHE.EXE-73BE9E78.pf
- Mis en quarantaine : C:\Windows\Prefetch\RADS_USER_KERNEL.EXE-9DAAF573.pf
- Mis en quarantaine : C:\Windows\Prefetch\REG.EXE-0EEAC1F1.pf
- Mis en quarantaine : C:\Windows\Prefetch\REG.EXE-4978446A.pf
- Mis en quarantaine : C:\Windows\Prefetch\REGEDIT.EXE-2023FAA8.pf
- Mis en quarantaine : C:\Windows\Prefetch\REGEDIT.EXE-D293AB50.pf
- Mis en quarantaine : C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf
- Mis en quarantaine : C:\Windows\Prefetch\RUNDLL32.EXE-02CC9EFF.pf
- Mis en quarantaine : C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf
- Mis en quarantaine : C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf
- Mis en quarantaine : C:\Windows\Prefetch\RUNDLL32.EXE-CE151BED.pf
- Mis en quarantaine : C:\Windows\Prefetch\RUNDLL32.EXE-DE9673F9.pf
- Mis en quarantaine : C:\Windows\Prefetch\SDCLT.EXE-E10B972A.pf
- Mis en quarantaine : C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf
- Mis en quarantaine : C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf
- Mis en quarantaine : C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf
- Mis en quarantaine : C:\Windows\Prefetch\SETHC.EXE-6A2DC453.pf
- Mis en quarantaine : C:\Windows\Prefetch\SKYPE.EXE-E71BF59F.pf
- Mis en quarantaine : C:\Windows\Prefetch\SLUI.EXE-724E99D9.pf
- Mis en quarantaine : C:\Windows\Prefetch\SNDVOL.EXE-5D4CC7D6.pf
- Mis en quarantaine : C:\Windows\Prefetch\SOLITAIRE.EXE-906D7E29.pf
- Mis en quarantaine : C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf
- Mis en quarantaine : C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf
- Mis en quarantaine : C:\Windows\Prefetch\SVCHOST.EXE-3AB35CA7.pf
- Mis en quarantaine : C:\Windows\Prefetch\SVCHOST.EXE-74CFB811.pf
- Mis en quarantaine : C:\Windows\Prefetch\SVCHOST.EXE-7AC6742A.pf
- Mis en quarantaine : C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf
- Mis en quarantaine : C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf
- Mis en quarantaine : C:\Windows\Prefetch\SVCHOST.EXE-E2C2633A.pf
- Mis en quarantaine : C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf
- Mis en quarantaine : C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf
- Mis en quarantaine : C:\Windows\Prefetch\TASKMGR.EXE-5F5F473D.pf
- Mis en quarantaine : C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf
- Mis en quarantaine : C:\Windows\Prefetch\TUAUTOUPDATECHECK.EXE-E342AFA2.pf
- Mis en quarantaine : C:\Windows\Prefetch\TUMESSAGES.EXE-59CDEE00.pf
- Mis en quarantaine : C:\Windows\Prefetch\TUNEUPSYSTEMSTATUSCHECK.EXE-32A203CB.pf
- Mis en quarantaine : C:\Windows\Prefetch\TUNEUPUTILITIESAPP64.EXE-E14C1173.pf
- Mis en quarantaine : C:\Windows\Prefetch\TURATINGSYNCH.EXE-70CAEDC2.pf
- Mis en quarantaine : C:\Windows\Prefetch\UPDATE.EXE-0D8A637E.pf
- Mis en quarantaine : C:\Windows\Prefetch\UPDATER.EXE-EA1310CB.pf
- Mis en quarantaine : C:\Windows\Prefetch\UPDRGUI.EXE-D0FBFF97.pf
- Mis en quarantaine : C:\Windows\Prefetch\UPLAUNCHER.EXE-96232E14.pf
- Mis en quarantaine : C:\Windows\Prefetch\VBC.EXE-7A16F53F.pf
- Mis en quarantaine : C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf
- Mis en quarantaine : C:\Windows\Prefetch\W32TM.EXE-1101AF41.pf
- Mis en quarantaine : C:\Windows\Prefetch\WATADMINSVC.EXE-082508A5.pf
- Mis en quarantaine : C:\Windows\Prefetch\WERFAULT.EXE-37549B7E.pf
- Mis en quarantaine : C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf
- Mis en quarantaine : C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf
- Mis en quarantaine : C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf
- Mis en quarantaine : C:\Windows\Prefetch\WMIPRVSE.EXE-6768A320.pf
- Mis en quarantaine : C:\Windows\Prefetch\WMPLAYER.EXE-26C72A86.pf
- Mis en quarantaine : C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf
- Mis en quarantaine : C:\Windows\Prefetch\WSCTOOL.EXE-EB22FE56.pf
- 18:48:15
- ¤¤¤¤¤¤¤¤¤¤ | SafeBoot | Contrôle | Réparation
- [HKLM | Safeboot] -> OK
- [HKLM | Safeboot\Minimal] -> OK
- [HKLM | Safeboot\Network] -> OK
- ¤
- [HKLM | Minimal\AppMgmt] : Service -> OK
- [HKLM | Minimal\Base] : Driver Group -> OK
- [HKLM | Minimal\Boot Bus Extender] : Driver Group -> OK
- [HKLM | Minimal\Boot file system] : Driver Group -> OK
- [HKLM | Minimal\CryptSvc] : Service -> OK
- [HKLM | Minimal\DcomLaunch] : Service -> OK
- [HKLM | Minimal\dmadmin] : -> Service
- [HKLM | Minimal\dmboot.sys] : -> Driver
- [HKLM | Minimal\dmio.sys] : -> Driver
- [HKLM | Minimal\dmload.sys] : -> Driver
- [HKLM | Minimal\dmserver] : -> Service
- [HKLM | Minimal\EventLog]: Service -> OK
- [HKLM | Minimal\File system] : Driver Group -> OK
- [HKLM | Minimal\Filter] : Driver Group -> OK
- [HKLM | Minimal\HelpSvc] : Service -> OK
- [HKLM | Minimal\Netlogon] : Service -> OK
- [HKLM | Minimal\PCI Configuration] : Driver Group -> OK
- [HKLM | Minimal\PlugPlay] : Service -> OK
- [HKLM | Minimal\PNP Filter] : Driver Group -> OK
- [HKLM | Minimal\Primary disk] : Driver Group -> OK
- [HKLM | Minimal\RpcSs] : Service -> OK
- [HKLM | Minimal\SCSI Class] : Driver Group -> OK
- [HKLM | Minimal\sermouse.sys] : Driver -> OK
- [HKLM | Minimal\sr.sys] : -> FSFilter System Recovery
- [HKLM | Minimal\SRService] : -> Service
- [HKLM | Minimal\System Bus Extender] : Driver Group -> OK
- [HKLM | Minimal\vds] : Service -> OK
- [HKLM | Minimal\vga.sys] : Driver -> OK
- [HKLM | Minimal\vgasave.sys] : Driver -> OK
- [HKLM | Minimal\WinMgmt] : Service -> OK
- [HKLM | Minimal\{36FC9E60-C465-11CF-8056-444553540000}] : Universal Serial Bus controllers -> OK
- [HKLM | Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}] : CD-ROM Drive -> OK
- [HKLM | Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}] : DiskDrive -> OK
- [HKLM | Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}] : Standard floppy disk controller -> OK
- [HKLM | Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}] : Hdc -> OK
- [HKLM | Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}] : Keyboard -> OK
- [HKLM | Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}] : Mouse -> OK
- [HKLM | Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}] : PCMCIA Adapters -> OK
- [HKLM | Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}] : SCSIAdapter -> OK
- [HKLM | Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}] : System -> OK
- [HKLM | Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}] : Floppy disk drive -> OK
- [HKLM | Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] : Volume shadow copy -> OK
- [HKLM | Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}] : Volume -> OK
- [HKLM | Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}] : Human Interface Devices -> OK
- ¤
- [HKLM | Network\AFD] : Service -> OK
- [HKLM | Network\AppMgmt] : Service -> OK
- [HKLM | Network\Base] : Driver Group -> OK
- [HKLM | Network\Boot Bus Extender] : Driver Group -> OK
- [HKLM | Network\Boot file system] : Driver Group -> OK
- [HKLM | Network\Browser] : Service -> OK
- [HKLM | Network\CryptSvc] : Service -> OK
- [HKLM | Network\DcomLaunch] : Service -> OK
- [HKLM | Network\Dhcp] : Service -> OK
- [HKLM | Network\dmadmin] : -> Service
- [HKLM | Network\dmboot.sys] : -> Driver
- [HKLM | Network\dmio.sys] : -> Driver
- [HKLM | Network\dmload.sys] : -> Driver
- [HKLM | Network\dmserver] : -> Service
- [HKLM | Network\DnsCache] : Service -> OK
- [HKLM | Network\EventLog] : Service -> OK
- [HKLM | Network\File system] : Driver Group -> OK
- [HKLM | Network\Filter] : Driver Group -> OK
- [HKLM | Network\HelpSvc] : Service -> OK
- [HKLM | Network\ip6fw.sys] : -> Driver
- [HKLM | Network\ipnat.sys] : Driver -> OK
- [HKLM | Network\LanmanServer] : Service -> OK
- [HKLM | Network\LanmanWorkstation] : Service -> OK
- [HKLM | Network\LmHosts] : Service -> OK
- [HKLM | Network\Messenger] : Service -> OK
- [HKLM | Network\NDIS] : Driver Group -> OK
- [HKLM | Network\NDIS Wrapper] : Driver Group -> OK
- [HKLM | Network\Ndisuio] : Service -> OK
- [HKLM | Network\NetBIOS] : Service -> OK
- [HKLM | Network\NetBIOSGroup] : Driver Group -> OK
- [HKLM | Network\NetBT] : Service -> OK
- [HKLM | Network\NetDDEGroup] : Driver Group -> OK
- [HKLM | Network\Netlogon] : Service -> OK
- [HKLM | Network\NetMan] : Service -> OK
- [HKLM | Network\Network] : Driver Group -> OK
- [HKLM | Network\NetworkProvider] : Driver Group -> OK
- [HKLM | Network\NtLmSsp] : -> Service
- [HKLM | Network\PCI Configuration] : Driver Group -> OK
- [HKLM | Network\PlugPlay] : Service -> OK
- [HKLM | Network\PNP Filter] : Driver Group -> OK
- [HKLM | Network\PNP_TDI] : Driver Group -> OK
- [HKLM | Network\Primary disk] : Driver Group -> OK
- [HKLM | Network\rdpcdd.sys] : -> Driver
- [HKLM | Network\rdpdd.sys] : -> Driver
- [HKLM | Network\rdpwd.sys] : -> Driver
- [HKLM | Network\rdsessmgr] : Service -> OK
- [HKLM | Network\RpcSs] : Service -> OK
- [HKLM | Network\SCSI Class] : Driver Group -> OK
- [HKLM | Network\sermouse.sys] : Driver -> OK
- [HKLM | Network\sharedaccess] : Service -> OK
- [HKLM | Network\sr.sys] : -> FSFilter System Recovery
- [HKLM | Network\SRService] : -> Service
- [HKLM | Network\Streams Drivers] : Driver Group -> OK
- [HKLM | Network\SYMTDI] : -> Service
- [HKLM | Network\System Bus Extender] : Driver Group -> OK
- [HKLM | Network\Tcpip] : Service -> OK
- [HKLM | Network\TDI] : Driver Group -> OK
- [HKLM | Network\tdpipe.sys] : -> Driver
- [HKLM | Network\tdtcp.sys] : -> Driver
- [HKLM | Network\termservice] : -> Service
- [HKLM | Network\UploadMgr] : -> Service
- [HKLM | Network\vga.sys] : Driver -> OK
- [HKLM | Network\vgasave.sys] : Driver -> OK
- [HKLM | Network\WinMgmt] : Service -> OK
- [HKLM | Network\Wlansvc] : Service -> OK
- [HKLM | Network\{36FC9E60-C465-11CF-8056-444553540000}] : Universal Serial Bus controllers -> OK
- [HKLM | Network\{4D36E965-E325-11CE-BFC1-08002BE10318}] : CD-ROM Drive -> OK
- [HKLM | Network\{4D36E967-E325-11CE-BFC1-08002BE10318}] : DiskDrive -> OK
- [HKLM | Network\{4D36E969-E325-11CE-BFC1-08002BE10318}] : Standard floppy disk controller -> OK
- [HKLM | Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}] : Hdc -> OK
- [HKLM | Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}] : Keyboard -> OK
- [HKLM | Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}] : Mouse -> OK
- [HKLM | Network\{4D36E972-E325-11CE-BFC1-08002BE10318}] : Net -> OK
- [HKLM | Network\{4D36E973-E325-11CE-BFC1-08002BE10318}] : NetClient -> OK
- [HKLM | Network\{4D36E974-E325-11CE-BFC1-08002BE10318}] : NetService -> OK
- [HKLM | Network\{4D36E975-E325-11CE-BFC1-08002BE10318}] : NetTrans -> OK
- [HKLM | Network\{4D36E977-E325-11CE-BFC1-08002BE10318}] : PCMCIA Adapters -> OK
- [HKLM | Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}] : SCSIAdapter -> OK
- [HKLM | Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}] : System -> OK
- [HKLM | Network\{4D36E980-E325-11CE-BFC1-08002BE10318}] : Floppy disk drive -> OK
- [HKLM | Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}] : Volume -> OK
- [HKLM | Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}] : Human Interface Devices -> OK
- ¤¤¤¤¤¤¤¤¤¤ | Heuristique | Suspect
- Suspect : HKCU\Software\MoritzSchmale
- ¤¤¤¤¤¤¤¤¤¤ | IFEO
- 18:48:25
- ¤¤¤¤¤¤¤¤¤¤ | Démarrages
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[avgnt] : "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[APSDaemon] : "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[Malwarebytes' Anti-Malware] : "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[AMD AVT] : Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[LogMeIn Hamachi Ui] : "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[StartCCC] : "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[Clownfish] : "C:\Program Files (x86)\Clownfish\Clownfish.exe"
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[ISUSPM Startup] : c:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[DAEMON Tools Lite] : "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
- ¤¤¤¤¤¤¤¤¤¤ | Autres
- [HKLM\System\CurrentControlSet\Control\SecurityProviders]|[SecurityProviders] : credssp.dll
- [HKLM\System\CurrentControlSet\Control\Terminal Server]|[AllowRemoteRPC] : 0
- [HKLM\System\CurrentControlSet\Control\Session Manager]|[BootExecute] : autocheck autochk *
- [HKLM\System\ControlSet001\Control]|[FirmwareBootDevice] : multi(0)disk(0)rdisk(0)partition(1)
- [HKLM\System\ControlSet001\Control]|[SystemBootDevice] : multi(0)disk(0)rdisk(0)partition(2)
- [HKLM\system\currentcontrolset\control\lsa]|[SecureBoot] : 1
- [HKLM\system\currentcontrolset\control\lsa]|[restrictanonymoussam] : 1
- [HKLM | Winlogon]|[VMApplet] : SystemPropertiesPerformance.exe /pagefile
- [HKLM | Winlogon]|[SFCDisable] : 0
- [HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]|[WebCheck] : {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]|[{B5A7F190-DDA6-4420-B3BA-52453494E6CD}] : Groove GFS Stub Execution Hook
- [HKU\S-1-5-19\Software\Microsoft\Internet Explorer\URLSearchHooks]|[{CFBFAE00-17A6-11D0-99CB-00C04FD64497}] :
- [HKU\S-1-5-20\Software\Microsoft\Internet Explorer\URLSearchHooks]|[{CFBFAE00-17A6-11D0-99CB-00C04FD64497}] :
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Explorer\URLSearchHooks]|[{CFBFAE00-17A6-11D0-99CB-00C04FD64497}] :
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Explorer\Toolbar]|[Locked] : 1
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Explorer\Toolbar]|[ShowDiscussionButton] : Yes
- ¤¤¤¤¤¤¤¤¤¤ | BHO
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] -> (Adobe PDF Link Helper) -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [04/04/2012 07:53:56]
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928}] -> (SteadyVideoBHO Class) -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [13/02/2012 17:44:52]
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] -> (Groove GFS Browser Helper) -> C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [12/06/2011 12:15:00]
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] -> (Java(tm) Plug-In SSV Helper) -> C:\Program Files (x86)\Java\jre6\bin\ssv.dll [04/03/2012 22:49:14]
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] -> (Windows Live ID Sign-in Helper) -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [18/08/2009 12:32:12]
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] -> (Skype Browser Helper) -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [17/01/2012 12:43:46]
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}] -> (Office Document Cache Handler) -> C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [21/12/2010 02:05:22]
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] -> (Java(tm) Plug-In 2 SSV Helper) -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [04/03/2012 22:49:13]
- ¤¤¤¤¤¤¤¤¤¤ | ActiveX
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> (WMPACCESS) -> Microsoft Windows Media Player
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}] -> (IEACCESS) -> Internet Explorer
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}] -> (BRANDING.CAB) -> Browser Customizations
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}] -> (JAVAVM) -> Java (Sun)
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> () -> Microsoft Windows Media Player 12.0
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] -> (Theme Component) -> Themes Setup
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{3af36230-a269-11d1-b5bf-0000f8051515}] -> (MobilePk) -> Offline Browsing Pack
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] -> (MailNews) -> Microsoft Windows
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}] -> (DirectDrawEx) -> DirectDrawEx
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{45ea75a0-a269-11d1-b5bf-0000f8051515}] -> (HelpCont) -> Internet Explorer Help
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{4f645220-306d-11d2-995d-00c04f98bbc9}] -> (MSVBScript) -> Microsoft Windows Script 5.6
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}] -> (GenSetup) -> Internet Explorer Setup Tools
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{630b1da0-b465-11d1-9948-00c04f98bbc9}] -> (ExtraPack) -> Browsing Enhancements
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] -> (Microsoft Windows Media Player) -> Microsoft Windows Media Player
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}] -> (MSN_Auth) -> MSN Site Access
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}] -> () -> Address Book 7
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}] -> (.NETFramework) -> .NET Framework
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}] -> (IE4_SHELLID) -> Windows Desktop Update
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] -> (BASEIE40_W2K) -> Web Platform Customizations
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> (DOTNETFRAMEWORKS) ->
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{9381D8F2-0288-11D0-9501-00AA00B911A5}] -> (Tridata) -> Dynamic HTML Data Binding
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}] -> (.NETFramework) -> .NET Framework
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{C9E9A340-D1F1-11D0-821E-444553540600}] -> (Fontcore) -> Internet Explorer Core Fonts
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}] -> (HTMLHelp) -> HTML Help
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}] -> (ADSI) -> Active Directory Service Interface
- [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}] -> (.NETFramework) -> .NET Framework
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}] -> () -> 8,0,7600,17136
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}] -> () -> 8,0,7600,17136
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] -> () -> 1,1,1,9
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] -> () -> 6,1,7601,17514
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] -> () -> 12,0,7601,17514
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}] -> () -> 6,1,7601,17859
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] -> () -> 8,0,7600,17136
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> () ->
- [HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}] -> Java Runtime Environment 1.6.0
- [HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}] -> Java Runtime Environment 1.6.0
- [HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}] -> Java Runtime Environment 1.6.0
- 18:48:27
- ¤¤¤¤¤¤¤¤¤¤ | HKCR\Applications
- [HKCR\Applications\ehshell.exe\Shell\open\command] -> "C:\Windows\eHome\ehshell.exe" "%1"
- [HKCR\Applications\iexplore.exe\Shell\open\command] -> "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1
- [HKCR\Applications\iTunes.exe\Shell\open\command] -> "C:\Program Files (x86)\iTunes\iTunes.exe" /open "%L"
- [HKCR\Applications\javaws.exe\Shell\open\command] -> "C:\Windows\system32\javaws.exe" "%1"
- [HKCR\Applications\notepad++.exe\Shell\open\command] -> "C:\Program Files (x86)\Notepad++\notepad++.exe" "%1"
- [HKCR\Applications\notepad.exe\Shell\open\command] -> %SystemRoot%\system32\NOTEPAD.EXE %1
- [HKCR\Applications\ois.exe\Shell\open\command] -> C:\PROGRA~1\MICROS~2\Office14\OIS.EXE /shellOpen "%1"
- [HKCR\Applications\photoviewer.dll\Shell\open\command] -> %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1
- [HKCR\Applications\wmplayer.exe\Shell\open\command] -> "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L"
- [HKCR\Applications\wordpad.exe\Shell\open\command] -> "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1"
- ¤¤¤¤¤¤¤¤¤¤ | Windows
- [HKLM | Session Manager\SubSystems]|[Windows] : %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
- [HKLM | Session Manager\SubSystems]|[Windows] : WinSrv
- ¤¤¤¤¤¤¤¤¤¤ | Svchost - Netsvc
- Audiov - :
- Tapiv - :
- Term - :
- 18:48:27
- ¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-19
- [HKU\S-1-5-19\Software\AppDataLow]
- [HKU\S-1-5-19\Software\Microsoft]
- [HKU\S-1-5-19\Software\Policies]
- [HKU\S-1-5-19\Software\Microsoft\Assistance]
- [HKU\S-1-5-19\Software\Microsoft\Command Processor]
- [HKU\S-1-5-19\Software\Microsoft\CTF]
- [HKU\S-1-5-19\Software\Microsoft\Fax]
- [HKU\S-1-5-19\Software\Microsoft\IME]
- [HKU\S-1-5-19\Software\Microsoft\IMEJP]
- [HKU\S-1-5-19\Software\Microsoft\Internet Connection Wizard]
- [HKU\S-1-5-19\Software\Microsoft\Internet Explorer]
- [HKU\S-1-5-19\Software\Microsoft\PeerNet]
- [HKU\S-1-5-19\Software\Microsoft\RAS AutoDial]
- [HKU\S-1-5-19\Software\Microsoft\Remote Assistance]
- [HKU\S-1-5-19\Software\Microsoft\SideShow]
- [HKU\S-1-5-19\Software\Microsoft\Speech]
- [HKU\S-1-5-19\Software\Microsoft\SQMClient]
- [HKU\S-1-5-19\Software\Microsoft\SystemCertificates]
- [HKU\S-1-5-19\Software\Microsoft\WAB]
- [HKU\S-1-5-19\Software\Microsoft\wfs]
- [HKU\S-1-5-19\Software\Microsoft\Windows]
- [HKU\S-1-5-19\Software\Microsoft\Windows NT]
- [HKU\S-1-5-19\Software\Microsoft\Windows Script]
- [HKU\S-1-5-19\Software\Microsoft\Wisp]
- [HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion]
- [HKU\S-1-5-19\Software\Microsoft\Windows\DWM]
- [HKU\S-1-5-19\Software\Microsoft\Windows\TabletPC]
- [HKU\S-1-5-19\Software\Microsoft\Windows\Windows Error Reporting]
- ¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-20
- [HKU\S-1-5-20\Software\AppDataLow]
- [HKU\S-1-5-20\Software\Microsoft]
- [HKU\S-1-5-20\Software\Policies]
- [HKU\S-1-5-20\Software\Microsoft\ActiveMovie]
- [HKU\S-1-5-20\Software\Microsoft\Assistance]
- [HKU\S-1-5-20\Software\Microsoft\Command Processor]
- [HKU\S-1-5-20\Software\Microsoft\CTF]
- [HKU\S-1-5-20\Software\Microsoft\Direct3D]
- [HKU\S-1-5-20\Software\Microsoft\DVR]
- [HKU\S-1-5-20\Software\Microsoft\Fax]
- [HKU\S-1-5-20\Software\Microsoft\IME]
- [HKU\S-1-5-20\Software\Microsoft\IMEJP]
- [HKU\S-1-5-20\Software\Microsoft\Internet Connection Wizard]
- [HKU\S-1-5-20\Software\Microsoft\Internet Explorer]
- [HKU\S-1-5-20\Software\Microsoft\MediaPlayer]
- [HKU\S-1-5-20\Software\Microsoft\OfficeSoftwareProtectionPlatform]
- [HKU\S-1-5-20\Software\Microsoft\PeerNet]
- [HKU\S-1-5-20\Software\Microsoft\Remote Assistance]
- [HKU\S-1-5-20\Software\Microsoft\SBE]
- [HKU\S-1-5-20\Software\Microsoft\SideShow]
- [HKU\S-1-5-20\Software\Microsoft\Speech]
- [HKU\S-1-5-20\Software\Microsoft\SystemCertificates]
- [HKU\S-1-5-20\Software\Microsoft\WAB]
- [HKU\S-1-5-20\Software\Microsoft\wfs]
- [HKU\S-1-5-20\Software\Microsoft\Windows]
- [HKU\S-1-5-20\Software\Microsoft\Windows Media]
- [HKU\S-1-5-20\Software\Microsoft\Windows NT]
- [HKU\S-1-5-20\Software\Microsoft\Wisp]
- [HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion]
- [HKU\S-1-5-20\Software\Microsoft\Windows\DWM]
- [HKU\S-1-5-20\Software\Microsoft\Windows\TabletPC]
- [HKU\S-1-5-20\Software\Microsoft\Windows\Windows Error Reporting]
- ¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-21-4232414852-395253565-4101861292-1000
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Actionaz]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Adobe]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\AppDataLow]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Apple Computer, Inc.]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Apple Inc.]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\ATI]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Avira]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Bugsplat]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\ClassesB]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Clients]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Clownfish]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\CraftBukkit]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\cybelsoft]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Dropbox]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\DT Soft]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\ej-technologies]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Fraps3]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\g3n-h@ckm@n]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Genie™]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Google]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\InstallShield]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\JavaSoft]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\LG Soft India]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Local AppWizard-Generated Applications]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Macromedia]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Malwarebytes' Anti-Malware]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\MoritzSchmale]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Mozilla]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\MozillaPlugins]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Mumble]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Netscape]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\ODBC]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Pando Networks]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\PhotoFiltre]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Pipix]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Policies]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Realtek]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\redsn0w]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Reimage]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\SecuROM]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Skype]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Soft Lemon]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\SUPERAntiSpyware.com]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Sysinternals]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\TeamSpeak 3 Client]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\TeamViewer]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Texas Instruments]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Trolltech]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\TuneUp]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Ubisoft]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Valve]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\VB and VBA Program Settings]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Vitalwerks]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Wget]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\WinRAR]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\WinRAR SFX]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Wow6432Node]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\YourFileDownloader]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Classes]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Active Setup]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\ActiveMovie]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\AntiPhishing]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\ASF Stream Descriptor File]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Assistance]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Calc]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Command Processor]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\CTF]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Direct3D]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\DirectInput]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\DVR]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Ease of Access]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\EventSystem]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Fax]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Feeds]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\FTP]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\GDIPlus]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\IAM]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\IdentityCRL]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\IME]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\IMEJP]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\IMEMIP]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Installer]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Connection Wizard]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Explorer]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Internet Mail and News]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Java VM]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Keyboard]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\MediaPlayer]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Microsoft Management Console]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\MPEG2Demultiplexer]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\MS Design Tools]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\MSDAIPP]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\MSF]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Multimedia]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Notepad]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Office]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\OLE]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\PeerNet]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Protected Storage System Provider]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\RAS AutoDial]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\RAS Phonebook]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Remote Assistance]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\SBE]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\ScreenMagnifier]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Security Center]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Sensors]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Shared]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Shared Tools]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\SideShow]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Silverlight]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Speech]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\SQMClient]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\SystemCertificates]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\TPG]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\VBA]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Visual Basic]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\WAB]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Web Service Providers]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\wfs]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows Mail]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows Media]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows Media Player NSS]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows NT]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows Photo Viewer]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows Script]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows Script Host]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows Search]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows Sidebar]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Wisp]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows\CurrentVersion]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows\DWM]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows\Shell]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows\TabletPC]
- [HKU\S-1-5-21-4232414852-395253565-4101861292-1000\Software\Microsoft\Windows\Windows Error Reporting]
- ¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-18
- [HKU\S-1-5-18\Software\AMD]
- [HKU\S-1-5-18\Software\Apple Inc.]
- [HKU\S-1-5-18\Software\ATI]
- [HKU\S-1-5-18\Software\Classes]
- [HKU\S-1-5-18\Software\JavaSoft]
- [HKU\S-1-5-18\Software\LogMeIn Hamachi]
- [HKU\S-1-5-18\Software\Malwarebytes' Anti-Malware]
- [HKU\S-1-5-18\Software\Microsoft]
- [HKU\S-1-5-18\Software\Policies]
- [HKU\S-1-5-18\Software\Wise Solutions]
- [HKU\S-1-5-18\Software\Microsoft\Advanced INF Setup]
- [HKU\S-1-5-18\Software\Microsoft\Command Processor]
- [HKU\S-1-5-18\Software\Microsoft\Cryptography]
- [HKU\S-1-5-18\Software\Microsoft\CTF]
- [HKU\S-1-5-18\Software\Microsoft\Direct3D]
- [HKU\S-1-5-18\Software\Microsoft\Fix it]
- [HKU\S-1-5-18\Software\Microsoft\IdentityCRL]
- [HKU\S-1-5-18\Software\Microsoft\Installer]
- [HKU\S-1-5-18\Software\Microsoft\Internet Connection Wizard]
- [HKU\S-1-5-18\Software\Microsoft\Internet Explorer]
- [HKU\S-1-5-18\Software\Microsoft\Java VM]
- [HKU\S-1-5-18\Software\Microsoft\MediaPlayer]
- [HKU\S-1-5-18\Software\Microsoft\Multimedia]
- [HKU\S-1-5-18\Software\Microsoft\RAS AutoDial]
- [HKU\S-1-5-18\Software\Microsoft\SBE]
- [HKU\S-1-5-18\Software\Microsoft\SQMClient]
- [HKU\S-1-5-18\Software\Microsoft\SystemCertificates]
- [HKU\S-1-5-18\Software\Microsoft\Windows]
- [HKU\S-1-5-18\Software\Microsoft\Windows NT]
- [HKU\S-1-5-18\Software\Microsoft\Windows Script]
- [HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion]
- [HKU\S-1-5-18\Software\Microsoft\Windows\DWM]
- [HKU\S-1-5-18\Software\Microsoft\Windows\Windows Error Reporting]
- ¤¤¤¤¤¤¤¤¤¤ | HKCU\Software\M$\Windows NT\CurrentVersion
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Accessibility]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Devices]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\EFS]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Font Management]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\MsiCorruptedFileRecovery]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Network]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\PeerNet]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\PrinterPorts]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\TaskManager]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Terminal Server]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows Messaging Subsystem]
- [HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
- ¤¤¤¤¤¤¤¤¤¤ | HKLM\Software
- [HKLM\Software\Adobe]
- [HKLM\Software\AdwCleaner]
- [HKLM\Software\AMD]
- [HKLM\Software\Apple Computer, Inc.]
- [HKLM\Software\Apple Inc.]
- [HKLM\Software\ATI]
- [HKLM\Software\ATI Technologies]
- [HKLM\Software\Avira]
- [HKLM\Software\Caphyon]
- [HKLM\Software\Clownfish]
- [HKLM\Software\cybelsoft]
- [HKLM\Software\Dofus2]
- [HKLM\Software\DT Soft]
- [HKLM\Software\FileZilla 3]
- [HKLM\Software\FileZilla Client]
- [HKLM\Software\Fraps]
- [HKLM\Software\Fraps2]
- [HKLM\Software\Google]
- [HKLM\Software\InstallShield]
- [HKLM\Software\Intel]
- [HKLM\Software\JavaSoft]
- [HKLM\Software\JreMetrics]
- [HKLM\Software\Khronos]
- [HKLM\Software\LG]
- [HKLM\Software\LG Soft India]
- [HKLM\Software\LGDDCIStack]
- [HKLM\Software\LogMeIn Hamachi]
- [HKLM\Software\Macromedia]
- [HKLM\Software\Malwarebytes' Anti-Malware]
- [HKLM\Software\Malwarebytes' Anti-Malware (Trial)]
- [HKLM\Software\Microsoft]
- [HKLM\Software\Mozilla]
- [HKLM\Software\mozilla.org]
- [HKLM\Software\MozillaPlugins]
- [HKLM\Software\MSI]
- [HKLM\Software\Notepad++]
- [HKLM\Software\ODBC]
- [HKLM\Software\Pando Networks]
- [HKLM\Software\Realtek]
- [HKLM\Software\Realtek Semiconductor Corp.]
- [HKLM\Software\Riot Games]
- [HKLM\Software\Rockstar Games]
- [HKLM\Software\Skype]
- [HKLM\Software\Sports Interactive Ltd]
- [HKLM\Software\Swearware]
- [HKLM\Software\TeamSpeak 3 Client]
- [HKLM\Software\TeamViewer]
- [HKLM\Software\Texas Instruments]
- [HKLM\Software\TuneUp]
- [HKLM\Software\Ubisoft]
- [HKLM\Software\Valve]
- [HKLM\Software\Wow6432Node]
- [HKLM\Software\X-AVCSD]
- [HKLM\Software\YourFileDownloader]
- [HKLM\Software\Classes]
- [HKLM\Software\Clients]
- [HKLM\Software\Even Balance]
- [HKLM\Software\Policies]
- [HKLM\Software\RegisteredApplications]
- [HKLM\Software\Microsoft\.NETFramework]
- [HKLM\Software\Microsoft\Active Setup]
- [HKLM\Software\Microsoft\ADs]
- [HKLM\Software\Microsoft\Advanced INF Setup]
- [HKLM\Software\Microsoft\ASP.NET]
- [HKLM\Software\Microsoft\Assistance]
- [HKLM\Software\Microsoft\AudioCompressionManager]
- [HKLM\Software\Microsoft\BidInterface]
- [HKLM\Software\Microsoft\Code Store Database]
- [HKLM\Software\Microsoft\Command Processor]
- [HKLM\Software\Microsoft\Cryptography]
- [HKLM\Software\Microsoft\CTF]
- [HKLM\Software\Microsoft\DataAccess]
- [HKLM\Software\Microsoft\DataFactory]
- [HKLM\Software\Microsoft\DevDiv]
- [HKLM\Software\Microsoft\Direct3D]
- [HKLM\Software\Microsoft\DirectDraw]
- [HKLM\Software\Microsoft\DirectInput]
- [HKLM\Software\Microsoft\DirectMusic]
- [HKLM\Software\Microsoft\DirectPlay]
- [HKLM\Software\Microsoft\DirectPlay8]
- [HKLM\Software\Microsoft\DirectPlayNATHelp]
- [HKLM\Software\Microsoft\DirectShow]
- [HKLM\Software\Microsoft\DirectX]
- [HKLM\Software\Microsoft\DownloadManager]
- [HKLM\Software\Microsoft\DRM]
- [HKLM\Software\Microsoft\DVR]
- [HKLM\Software\Microsoft\Exchange]
- [HKLM\Software\Microsoft\Fax]
- [HKLM\Software\Microsoft\Feeds]
- [HKLM\Software\Microsoft\FlashConfig]
- [HKLM\Software\Microsoft\FTH]
- [HKLM\Software\Microsoft\Function Discovery]
- [HKLM\Software\Microsoft\Fusion]
- [HKLM\Software\Microsoft\HTMLHelp]
- [HKLM\Software\Microsoft\IdentityCRL]
- [HKLM\Software\Microsoft\IdentityStore]
- [HKLM\Software\Microsoft\IE4]
- [HKLM\Software\Microsoft\IMAPI]
- [HKLM\Software\Microsoft\IMEJP]
- [HKLM\Software\Microsoft\IMEKR]
- [HKLM\Software\Microsoft\IMETC]
- [HKLM\Software\Microsoft\Internet Account Manager]
- [HKLM\Software\Microsoft\Internet Domains]
- [HKLM\Software\Microsoft\Internet Explorer]
- [HKLM\Software\Microsoft\IsoBurn]
- [HKLM\Software\Microsoft\Jet]
- [HKLM\Software\Microsoft\MediaCenterPeripheral]
- [HKLM\Software\Microsoft\MediaPlayer]
- [HKLM\Software\Microsoft\MessengerService]
- [HKLM\Software\Microsoft\Microsoft Sync Framework]
- [HKLM\Software\Microsoft\Migwiz]
- [HKLM\Software\Microsoft\MMC]
- [HKLM\Software\Microsoft\Mobile]
- [HKLM\Software\Microsoft\MSBuild]
- [HKLM\Software\Microsoft\MSDE]
- [HKLM\Software\Microsoft\MSDTC]
- [HKLM\Software\Microsoft\MSF]
- [HKLM\Software\Microsoft\MSLicensing]
- [HKLM\Software\Microsoft\MSN Apps]
- [HKLM\Software\Microsoft\Multimedia]
- [HKLM\Software\Microsoft\NapServer]
- [HKLM\Software\Microsoft\NET Framework Setup]
- [HKLM\Software\Microsoft\NetSh]
- [HKLM\Software\Microsoft\Network]
- [HKLM\Software\Microsoft\NetworkAccessProtection]
- [HKLM\Software\Microsoft\Notepad]
- [HKLM\Software\Microsoft\ODBC]
- [HKLM\Software\Microsoft\Office]
- [HKLM\Software\Microsoft\OnlineProviders]
- [HKLM\Software\Microsoft\Outlook Express]
- [HKLM\Software\Microsoft\PCHealth]
- [HKLM\Software\Microsoft\PLA]
- [HKLM\Software\Microsoft\PowerShell]
- [HKLM\Software\Microsoft\Preinstall]
- [HKLM\Software\Microsoft\Print]
- [HKLM\Software\Microsoft\RADAR]
- [HKLM\Software\Microsoft\Reliability Analysis]
- [HKLM\Software\Microsoft\RendezvousApps]
- [HKLM\Software\Microsoft\SchedulingAgent]
- [HKLM\Software\Microsoft\Schema Library]
- [HKLM\Software\Microsoft\Security Center]
- [HKLM\Software\Microsoft\Sensors]
- [HKLM\Software\Microsoft\Shared Tools]
- [HKLM\Software\Microsoft\Shared Tools Location]
- [HKLM\Software\Microsoft\SideShow]
- [HKLM\Software\Microsoft\Silverlight]
- [HKLM\Software\Microsoft\SLP Services]
- [HKLM\Software\Microsoft\Software]
- [HKLM\Software\Microsoft\Speech]
- [HKLM\Software\Microsoft\SQMClient]
- [HKLM\Software\Microsoft\Sync Framework]
- [HKLM\Software\Microsoft\TableTextService]
- [HKLM\Software\Microsoft\TabletTip]
- [HKLM\Software\Microsoft\Tcpip]
- [HKLM\Software\Microsoft\Terminal Server Client]
- [HKLM\Software\Microsoft\TIP Shared]
- [HKLM\Software\Microsoft\TPG]
- [HKLM\Software\Microsoft\Tpm]
- [HKLM\Software\Microsoft\Tracing]
- [HKLM\Software\Microsoft\TV System Services]
- [HKLM\Software\Microsoft\uDRM]
- [HKLM\Software\Microsoft\Updates]
- [HKLM\Software\Microsoft\UPnP Device Host]
- [HKLM\Software\Microsoft\VisualStudio]
- [HKLM\Software\Microsoft\VSTA]
- [HKLM\Software\Microsoft\VSTA Runtime Setup]
- [HKLM\Software\Microsoft\VSTAHost]
- [HKLM\Software\Microsoft\VSTAHostConfig]
- [HKLM\Software\Microsoft\VSTO Runtime Setup]
- [HKLM\Software\Microsoft\WAB]
- [HKLM\Software\Microsoft\WBEM]
- [HKLM\Software\Microsoft\WIMMount]
- [HKLM\Software\Microsoft\Windows]
- [HKLM\Software\Microsoft\Windows CE Services]
- [HKLM\Software\Microsoft\Windows Defender]
- [HKLM\Software\Microsoft\Windows Desktop Search]
- [HKLM\Software\Microsoft\Windows Mail]
- [HKLM\Software\Microsoft\Windows Media Device Manager]
- [HKLM\Software\Microsoft\Windows Media Foundation]
- [HKLM\Software\Microsoft\Windows Media Player NSS]
- [HKLM\Software\Microsoft\Windows Messaging Subsystem]
- [HKLM\Software\Microsoft\Windows NT]
- [HKLM\Software\Microsoft\Windows Photo Viewer]
- [HKLM\Software\Microsoft\Windows Portable Devices]
- [HKLM\Software\Microsoft\Windows Script Host]
- [HKLM\Software\Microsoft\Windows Search]
- [HKLM\Software\Microsoft\Workspaces]
- [HKLM\Software\Microsoft\COM3]
- [HKLM\Software\Microsoft\DFS]
- [HKLM\Software\Microsoft\Driver Signing]
- [HKLM\Software\Microsoft\EnterpriseCertificates]
- [HKLM\Software\Microsoft\EventSystem]
- [HKLM\Software\Microsoft\MSMQ]
- [HKLM\Software\Microsoft\Non-Driver Signing]
- [HKLM\Software\Microsoft\Ole]
- [HKLM\Software\Microsoft\Ras]
- [HKLM\Software\Microsoft\Rpc]
- [HKLM\Software\Microsoft\SystemCertificates]
- [HKLM\Software\Microsoft\TermServLicensing]
- [HKLM\Software\Microsoft\Transaction Server]
- [HKLM\Software\Microsoft\Windows\CurrentVersion]
- [HKLM\Software\Microsoft\Windows\HTML Help]
- [HKLM\Software\Microsoft\Windows\ITStorage]
- [HKLM\Software\Microsoft\Windows\ScriptedDiagnosticsProvider]
- [HKLM\Software\Microsoft\Windows\Windows Error Reporting]
- [HKLM\Software\Microsoft\Windows\Windows Search]
- [HKLM\Software\Microsoft\Windows\Tablet PC]
- ¤¤¤¤¤¤¤¤¤¤ | HKLM\Software\M$\Windows NT\CurrentVersion
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Accessibility]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\AdaptiveDisplayBrightness]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\AeDebug]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\APITracing]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\ASR]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\BootMgr]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Compatibility32]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\DeviceDisplayObjects]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\drivers.desc]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\EFS]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Event Viewer]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Font Drivers]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\ICM]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\IniFileMapping]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\KnownFunctionTableDlls]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\KnownManagedDebuggingDlls]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\MCI Extensions]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\MCI32]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\MiniDumpAuxiliaryDlls]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Network]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\NetworkList]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\NtVdm64]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\OpenGLDrivers]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\PeerNet]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\PerHwIdStorage]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileLoader]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileNotification]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\SeCEdit]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Svchost]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\SystemRestore]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Tracing]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\UnattendSettings]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\WbemPerf]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winsat]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\WinSATAPI]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Console]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontDPI]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontLink]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontMapper]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Fonts]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontSubstitutes]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\LanguagePack]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\NetworkCards]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Perflib]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Ports]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Print]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList]
- [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Time Zones]
- ¤¤¤¤¤¤¤¤¤¤ | Derniers créés/modifiés
- [12/07/2012 02:24:09] - |D| - C:\Program Files (x86)\ReImageCompanion
- [05/07/2012 22:31:03] - |D| - C:\Windows\erdnt
- [12/07/2012 12:43:40] - |A| - C:\Windows\grep.exe
- [12/07/2012 12:43:40] - |A| - C:\Windows\MBR.exe
- [05/07/2012 22:32:06] - |A| - C:\Windows\MEMORY.DMP
- [05/07/2012 22:32:11] - |D| - C:\Windows\Minidump
- [12/07/2012 12:43:40] - |A| - C:\Windows\NIRCMD.exe
- [05/07/2012 22:32:07] - |A| - C:\Windows\ntbtlog.txt
- [12/07/2012 12:43:40] - |A| - C:\Windows\PEV.exe
- [12/07/2012 18:47:22] - |D| - C:\Windows\Pre_Scan
- [12/07/2012 02:24:54] - |A| - C:\Windows\reimage.ini
- [12/07/2012 12:43:40] - |A| - C:\Windows\sed.exe
- [12/07/2012 12:43:40] - |A| - C:\Windows\SWREG.exe
- [12/07/2012 12:43:40] - |A| - C:\Windows\SWSC.exe
- [12/07/2012 14:37:22] - |D| - C:\Windows\temp
- [12/07/2012 12:43:40] - |A| - C:\Windows\zip.exe
- [10/07/2012 00:26:31] - |A| - (...) - C:\Windows\Installer\34a59c7.msi
- [07/07/2012 11:26:57] - |A| - (...) - C:\Windows\Installer\6e73b.msi
- [11/07/2012 13:03:30] - |A| - (...) - C:\Windows\Installer\e29f4.msi
- [10/07/2012 00:27:12] - |D| - C:\Windows\Installer\{6037B8AD-7D5B-4D50-9BCA-A586C44EEF34}
- [07/07/2012 11:27:05] - |D| - C:\Windows\Installer\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
- [11/07/2012 13:18:20] - |A| - C:\Windows\system32\cdosys.dll
- [11/07/2012 13:20:31] - |A| - C:\Windows\system32\msxml3.dll
- [11/07/2012 13:20:30] - |A| - C:\Windows\system32\msxml3r.dll
- [11/07/2012 13:20:31] - |A| - C:\Windows\system32\msxml6.dll
- [11/07/2012 13:18:24] - |A| - C:\Windows\system32\ncrypt.dll
- [11/07/2012 13:18:24] - |A| - C:\Windows\system32\schannel.dll
- [11/07/2012 13:20:27] - |A| - C:\Windows\system32\shell32.dll
- [12/07/2012 02:53:21] - |A| - C:\Windows\system32\win32k.sys
- [11/07/2012 13:18:24] - |A| - C:\Windows\system32\Drivers\cng.sys
- [11/07/2012 13:18:23] - |A| - C:\Windows\system32\Drivers\ksecdd.sys
- [11/07/2012 13:18:24] - |A| - C:\Windows\system32\Drivers\ksecpkg.sys
- ¤¤¤¤¤¤¤¤¤¤ | Non signés Microsoft | System32 (Not Necessary Malware)
- [MD5.617C69B5516281992C1F84564557A951] - |A| - [11/06/2012 19:25:06] - (.Copyright (C) 2009 Advanced Micro Devices, Inc. - atiapfxx Application.) - [160 Ko] - (6.14.10.1001) - C:\Windows\system32\atiapfxx.exe
- [MD5.749584902AE80A53EFDA4F8FA03E1713] - |A| - [11/05/2009 23:35:28] - (.Copyright (C) 2008 Advanced Micro Devices, Inc. - ATIBRTMON.) - [116 Ko] - (2.0.0.0) - C:\Windows\system32\atibtmon.exe
- [MD5.B1DC08F9D2016B86CE15BED68BA6757B] - |A| - [11/06/2012 19:19:58] - (.Copyright © 2008-2009 AMD - AMD External Events Client Module.) - [520.5 Ko] - (6.14.11.1126) - C:\Windows\system32\atieclxx.exe
- [MD5.9C616BA191B80F5CD1A1B9553E107100] - |A| - [11/06/2012 19:19:14] - (.Copyright © 2008-2009 AMD - AMD External Events Service Module.) - [234 Ko] - (6.14.11.1126) - C:\Windows\system32\atiesrxx.exe
- [MD5.A6BAAA6608A9B00220E9D5C023FC53D1] - |A| - [22/06/2009 17:34:36] - (.Copyright (C) 2008 - ATIODCLI Application.) - [50 Ko] - (1.0.0.1) - C:\Windows\system32\ATIODCLI.exe
- [MD5.463FFBD3350E3EB57F7D5746EBD233CA] - |A| - [27/08/2010 20:33:08] - (.Copyright (C) 2008 - ATIODE Application.) - [325 Ko] - (1.0.0.1) - C:\Windows\system32\ATIODE.exe
- [MD5.9519A87DBCAE6212081F66DE87CACD37] - |A| - [11/06/2012 13:50:46] - (. - .) - [183 Ko] - (0.0.0.0) - C:\Windows\system32\clinfo.exe
- [MD5.A5FF9AAFAB59D3C732191F57D52F5F0D] - |A| - [31/08/2011 00:05:32] - (.Copyright (C) 2003-2011 Apple Inc. - Bonjour Console Utility.) - [93.85 Ko] - (3.0.0.10) - C:\Windows\system32\dns-sd.exe
- [MD5.A4C44CE5D2971091BD1D2C4157D19F81] - |A| - [25/03/2012 02:18:44] - (.Copyright © 2012 - Java(TM) Platform SE binary.) - [184.38 Ko] - (7.0.30.5) - C:\Windows\system32\java.exe
- [MD5.F37191B895A21B12DAC85B7185486177] - |A| - [25/03/2012 02:18:44] - (.Copyright © 2012 - Java(TM) Platform SE binary.) - [184.38 Ko] - (7.0.30.5) - C:\Windows\system32\javaw.exe
- [MD5.94143DEFF5F0DCCB92F90965948E8FEA] - |A| - [25/03/2012 02:18:44] - (.Copyright © 2012 - Java(TM) Web Start Launcher.) - [258.88 Ko] - (10.3.1.255) - C:\Windows\system32\javaws.exe
- [MD5.A405CE4E0B9B8C6438E5ADAA2063E7DC] - |A| - [29/12/2011 21:48:49] - (. - TuneUp Registry Optimization Boot Application.) - [33.81 Ko] - (12.0.2120.7) - C:\Windows\system32\TURegOpt.exe
- ¤¤¤¤¤¤¤¤¤¤ | Drives
- ¤¤¤¤¤¤¤¤¤¤ | Homedrive
- [12/07/2012 14:24:57] - |SHD| - C:\$RECYCLE.BIN
- [10/07/2012 00:27:11] - |D| - C:\Ace of Spades
- [12/07/2012 15:11:04] - |A| - C:\AdwCleaner[R1].txt
- [12/07/2012 15:12:30] - |A| - C:\AdwCleaner[S1].txt
- [08/02/2012 13:05:40] - |D| - C:\AMD
- [11/01/2012 15:44:31] - |D| - C:\ATI
- [01/01/2012 17:02:15] - |D| - C:\BraCa Soft
- [12/07/2012 14:37:09] - |A| - C:\ComboFix.txt
- [14/07/2009 07:08:56] - |SHD| - C:\Documents and Settings
- [22/01/2012 04:16:15] - |D| - C:\FM Genie Scout 12
- [25/01/2012 15:42:05] - |D| - C:\Fraps
- [29/12/2011 06:10:18] - |ASH| - C:\hiberfil.sys
- [30/12/2011 03:41:09] - |RD| - C:\MSOCache
- [29/12/2011 06:10:22] - |ASH| - C:\pagefile.sys
- [14/07/2009 05:20:08] - |D| - C:\PerfLogs
- [12/07/2012 18:44:39] - |D| - C:\Pre_Scan
- [12/07/2012 18:44:42] - |A| - C:\Pre_Scan.txt
- [17/02/2012 15:15:42] - |A| - C:\ProcasterInstaller.log
- [14/07/2009 05:20:08] - |RD| - C:\Program Files
- [14/07/2009 05:20:08] - |RD| - C:\Program Files (x86)
- [14/07/2009 05:20:08] - |D| - C:\ProgramData
- [12/07/2012 12:43:35] - |AD| - C:\Qoobox
- [28/12/2011 23:16:20] - |D| - C:\Recovery
- [28/06/2012 12:25:25] - |D| - C:\Riot Games
- [29/12/2011 06:10:18] - |SHD| - C:\System Volume Information
- [11/06/2012 20:17:53] - |A| - C:\user.js
- [14/07/2009 05:20:08] - |RD| - C:\Users
- [12/07/2012 01:28:58] - |D| - C:\VundoFix Backups
- [12/07/2012 01:28:58] - |A| - C:\VundoFix.txt
- [14/07/2009 05:20:08] - |D| - C:\Windows
- [27/06/2012 00:31:33] - |A| - C:\zxss.jpg
- ¤¤¤¤¤¤¤¤¤¤ | Systemroot
- [14/07/2009 07:32:38] - |D| - C:\Windows\addins
- [14/07/2009 05:20:08] - |D| - C:\Windows\AppCompat
- [14/07/2009 05:20:08] - |D| - C:\Windows\AppPatch
- [14/07/2009 05:20:08] - |RSD| - C:\Windows\assembly
- [13/03/2012 01:10:30] - |A| - C:\Windows\atiogl.xml
- [28/12/2011 23:27:13] - |A| - C:\Windows\ativpsrm.bin
- [28/12/2011 23:40:49] - |A| - C:\Windows\AutoTuneScript.dll
- [30/12/2011 21:00:37] - |A| - C:\Windows\bfsvc.exe
- [14/07/2009 05:20:09] - |D| - C:\Windows\Boot
- [14/07/2009 07:38:36] - |AS| - C:\Windows\bootstat.dat
- [14/07/2009 05:20:09] - |D| - C:\Windows\Branding
- [14/07/2009 05:20:09] - |D| - C:\Windows\Cursors
- [14/07/2009 06:45:54] - |D| - C:\Windows\debug
- [14/07/2009 07:32:38] - |D| - C:\Windows\diagnostics
- [14/07/2009 07:37:46] - |D| - C:\Windows\DigitalLocker
- [14/07/2009 07:32:38] - |D| - C:\Windows\Downloaded Program Files
- [14/07/2009 17:35:13] - |D| - C:\Windows\ehome
- [14/07/2009 07:37:46] - |D| - C:\Windows\en-US
- [05/07/2012 22:31:03] - |D| - C:\Windows\erdnt
- [29/12/2011 11:52:01] - |A| - C:\Windows\explorer.exe
- [14/07/2009 05:20:09] - |RSD| - C:\Windows\Fonts
- [14/07/2009 17:24:08] - |D| - C:\Windows\fr-FR
- [14/07/2009 01:22:13] - |A| - C:\Windows\fveupdate.exe
- [14/07/2009 05:20:09] - |D| - C:\Windows\Globalization
- [12/07/2012 12:43:40] - |A| - C:\Windows\grep.exe
- [14/07/2009 05:20:09] - |D| - C:\Windows\Help
- [14/07/2009 02:29:53] - |A| - C:\Windows\HelpPane.exe
- [14/07/2009 02:29:03] - |A| - C:\Windows\hh.exe
- [14/07/2009 17:35:58] - |A| - C:\Windows\HomePremium.xml
- [14/07/2009 05:20:09] - |D| - C:\Windows\IME
- [14/07/2009 05:20:10] - |D| - C:\Windows\inf
- [28/12/2011 23:24:54] - |SHD| - C:\Windows\Installer
- [14/07/2009 05:20:10] - |D| - C:\Windows\L2Schemas
- [14/08/2003 19:10:54] - |A| - C:\Windows\lfbmp12n.dll
- [14/08/2003 19:10:56] - |A| - C:\Windows\LFCMP12n.DLL
- [14/08/2003 19:10:56] - |A| - C:\Windows\lffax12n.dll
- [14/08/2003 19:10:56] - |A| - C:\Windows\lfjbg12n.dll
- [14/08/2003 19:10:56] - |A| - C:\Windows\lflmb12n.dll
- [14/08/2003 19:10:58] - |A| - C:\Windows\lfpcx12n.dll
- [14/08/2003 19:10:58] - |A| - C:\Windows\lftif12n.dll
- [14/07/2009 05:20:10] - |D| - C:\Windows\LiveKernelReports
- [14/07/2009 05:20:10] - |D| - C:\Windows\Logs
- [14/08/2003 19:11:24] - |A| - C:\Windows\LTDIS12n.dll
- [14/08/2003 19:11:28] - |A| - C:\Windows\ltfil12n.DLL
- [14/08/2003 19:11:32] - |A| - C:\Windows\ltkrn12n.dll
- [14/08/2003 19:11:40] - |A| - C:\Windows\Ltwvc12n.dll
- [12/07/2012 12:43:40] - |A| - C:\Windows\MBR.exe
- [14/07/2009 05:20:10] - |RSD| - C:\Windows\Media
- [05/07/2012 22:32:06] - |A| - C:\Windows\MEMORY.DMP
- [28/12/2011 23:40:49] - |A| - C:\Windows\MFC71.dll
- [14/07/2009 02:10:29] - |A| - C:\Windows\mib.bin
- [14/07/2009 05:20:10] - |D| - C:\Windows\Microsoft.NET
- [05/07/2012 22:32:11] - |D| - C:\Windows\Minidump
- [14/07/2009 05:20:10] - |D| - C:\Windows\ModemLogs
- [14/07/2009 04:35:42] - |A| - C:\Windows\msdfmap.ini
- [28/12/2011 23:40:49] - |A| - C:\Windows\msvcp71.dll
- [28/12/2011 23:40:49] - |A| - C:\Windows\msvcr71.dll
- [12/07/2012 12:43:40] - |A| - C:\Windows\NIRCMD.exe
- [14/07/2009 01:56:36] - |A| - C:\Windows\notepad.exe
- [05/07/2012 22:32:07] - |A| - C:\Windows\ntbtlog.txt
- [28/12/2011 23:40:49] - |A| - C:\Windows\NTuneGpu.dll
- [28/12/2011 23:40:49] - |A| - C:\Windows\ntuneoem.dll
- [28/12/2011 23:40:49] - |A| - C:\Windows\NVBenchMarks.dll
- [28/12/2011 23:40:49] - |A| - C:\Windows\NVGfxOgl.dll
- [28/12/2011 23:40:49] - |A| - C:\Windows\Nvgpio.dll
- [28/12/2011 23:40:49] - |A| - C:\Windows\nvoclk64.sys
- [28/12/2011 23:40:49] - |A| - C:\Windows\nvoclock.sys
- [28/12/2011 23:40:49] - |A| - C:\Windows\nvsulib.dll
- [14/07/2009 07:32:38] - |D| - C:\Windows\Offline Web Pages
- [29/12/2011 06:08:20] - |D| - C:\Windows\Panther
- [30/12/2011 03:44:43] - |D| - C:\Windows\PCHEALTH
- [14/07/2009 07:32:38] - |D| - C:\Windows\Performance
- [12/07/2012 12:43:40] - |A| - C:\Windows\PEV.exe
- [17/04/2012 00:59:31] - |A| - C:\Windows\PFRO.log
- [14/07/2009 05:20:10] - |D| - C:\Windows\PLA
- [14/07/2009 05:20:10] - |D| - C:\Windows\PolicyDefinitions
- [29/12/2011 06:10:58] - |D| - C:\Windows\Prefetch
- [12/07/2012 18:47:22] - |D| - C:\Windows\Pre_Scan
- [14/07/2009 01:27:10] - |A| - C:\Windows\regedit.exe
- [14/07/2009 05:20:10] - |D| - C:\Windows\Registration
- [12/07/2012 02:24:54] - |A| - C:\Windows\reimage.ini
- [14/07/2009 05:20:10] - |D| - C:\Windows\rescache
- [14/07/2009 05:20:10] - |D| - C:\Windows\Resources
- [28/12/2011 23:39:26] - |R| - C:\Windows\RtlExUpd.dll
- [14/07/2009 05:20:10] - |D| - C:\Windows\SchCache
- [14/07/2009 05:20:10] - |D| - C:\Windows\schemas
- [14/07/2009 05:20:10] - |D| - C:\Windows\security
- [12/07/2012 12:43:40] - |A| - C:\Windows\sed.exe
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles
- [14/07/2009 05:20:10] - |D| - C:\Windows\servicing
- [14/07/2009 06:45:50] - |D| - C:\Windows\Setup
- [19/03/2012 19:09:31] - |A| - C:\Windows\setupact.log
- [14/07/2009 06:51:00] - |A| - C:\Windows\setuperr.log
- [14/07/2009 17:35:13] - |D| - C:\Windows\ShellNew
- [29/12/2011 06:13:05] - |D| - C:\Windows\SoftwareDistribution
- [14/07/2009 05:20:10] - |D| - C:\Windows\Speech
- [30/12/2011 21:01:08] - |A| - C:\Windows\splwow64.exe
- [14/07/2009 07:28:38] - |A| - C:\Windows\Starter.xml
- [12/07/2012 12:43:40] - |A| - C:\Windows\SWREG.exe
- [12/07/2012 12:43:40] - |A| - C:\Windows\SWSC.exe
- [31/08/2000 02:00:00] - |A| - C:\Windows\SWXCACLS.exe
- [14/07/2009 05:20:10] - |D| - C:\Windows\system
- [14/07/2009 04:34:57] - |A| - C:\Windows\system.ini
- [14/07/2009 05:20:10] - |D| - C:\Windows\System32
- [14/07/2009 05:20:14] - |D| - C:\Windows\SysWOW64
- [14/07/2009 05:20:14] - |D| - C:\Windows\TAPI
- [14/07/2009 05:20:14] - |D| - C:\Windows\Tasks
- [12/07/2012 14:37:22] - |D| - C:\Windows\temp
- [14/07/2009 05:20:14] - |D| - C:\Windows\tracing
- [10/06/2009 23:41:17] - |A| - C:\Windows\twain.dll
- [14/07/2009 07:32:38] - |D| - C:\Windows\twain_32
- [30/12/2011 21:00:39] - |A| - C:\Windows\twain_32.dll
- [14/07/2009 00:47:26] - |A| - C:\Windows\twunk_16.exe
- [14/07/2009 02:14:40] - |A| - C:\Windows\twunk_32.exe
- [28/12/2011 23:40:49] - |A| - C:\Windows\ver5.5.14.0.txt
- [14/07/2009 05:20:14] - |D| - C:\Windows\Vss
- [14/07/2009 05:20:14] - |D| - C:\Windows\Web
- [14/07/2009 04:34:57] - |A| - C:\Windows\win.ini
- [14/07/2009 06:54:24] - |RAH| - C:\Windows\WindowsShell.Manifest
- [29/12/2011 06:13:04] - |A| - C:\Windows\WindowsUpdate.log
- [14/07/2009 02:12:29] - |A| - C:\Windows\winhlp32.exe
- [14/07/2009 05:20:14] - |D| - C:\Windows\winsxs
- [15/03/2012 20:30:11] - |A| - C:\Windows\Wlink83p.ini
- [10/06/2009 22:52:44] - |A| - C:\Windows\WMSysPr9.prx
- [14/07/2009 01:56:28] - |A| - C:\Windows\write.exe
- [12/07/2012 12:43:40] - |A| - C:\Windows\zip.exe
- ¤¤¤¤¤¤¤¤¤¤ | signature des fichiers à la racine du dossier Windows
- [MD5.317CD1CE327B6520BF4EE007BCD39E61] - [30/12/2011 21:00:37] - (.© Microsoft Corporation. - Utilitaire de service de fichier de démarrage.) - [69.5 Ko] - (6.1.7601.17514) - C:\Windows\bfsvc.exe
- [MD5.332FEAB1435662FC6C672E25BEB37BE3] - [29/12/2011 11:52:01] - (.© Microsoft Corporation. - Explorateur Windows.) - [2804.5 Ko] - (6.1.7601.17567) - C:\Windows\explorer.exe
- [MD5.92BB2E9AA28542C685C59EFCBAC2490B] - [14/07/2009 01:22:13] - (.© Microsoft Corporation. - Utilitaire de service de chiffrement de lecteur BitLocker.) - [15 Ko] - (6.1.7600.16385) - C:\Windows\fveupdate.exe
- [MD5.9E05A9C264C8A908A8E79450FCBFF047] - [12/07/2012 12:43:40] - (. - .) - [78.53 Ko] - (0.0.0.0) - C:\Windows\grep.exe
- [MD5.CD47548A52B02D254BF6D7F7A5F2BFD3] - [14/07/2009 02:29:53] - (.© Microsoft Corporation. - Aide et support Microsoft.) - [716.5 Ko] - (6.1.7600.16385) - C:\Windows\HelpPane.exe
- [MD5.3D0B9EA79BF1F828324447D84AA9DCE2] - [14/07/2009 02:29:03] - (.© Microsoft Corporation. - Exécutable de l’aide HTML Microsoft®.) - [16.5 Ko] - (6.1.7600.16385) - C:\Windows\hh.exe
- [MD5.0277C027A26428DB64EF4F64F52BB4FD] - [12/07/2012 12:43:40] - (. - .) - [204 Ko] - (0.0.0.0) - C:\Windows\MBR.exe
- [MD5.753BC16326FEE4A421ACB636CCD602F4] - [12/07/2012 12:43:40] - (.Copyright © 2003 - 2009 Nir Sofer - NirCmd.) - [59 Ko] - (2.3.5.189) - C:\Windows\NIRCMD.exe
- [MD5.F2C7BB8ACC97F92E987A2D4087D021B1] - [14/07/2009 01:56:36] - (.© Microsoft Corporation. - Bloc-notes.) - [189 Ko] - (6.1.7600.16385) - C:\Windows\notepad.exe
- [MD5.F042EE4C8D66248D9B86DCF52ABAE416] - [12/07/2012 12:43:40] - (. - .) - [250 Ko] - (0.0.0.0) - C:\Windows\PEV.exe
- [MD5.2E2C937846A0B8789E5E91739284D17A] - [14/07/2009 01:27:10] - (.© Microsoft Corporation. - Éditeur du Registre.) - [417 Ko] - (6.1.7600.16385) - C:\Windows\regedit.exe
- [MD5.2B657A67AEBB84AEA5632C53E61E23BF] - [12/07/2012 12:43:40] - (. - .) - [96.5 Ko] - (0.0.0.0) - C:\Windows\sed.exe
- [MD5.D01628AF9F7FB3F415B357D446FBE6D9] - [30/12/2011 21:01:08] - (.© Microsoft Corporation. - Print driver host for 32bit applications.) - [65.5 Ko] - (6.1.7601.17514) - C:\Windows\splwow64.exe
- [MD5.A46842C9B0C567A5A9584E83A163560C] - [12/07/2012 12:43:40] - (.Copyright © Frank Staal 1999-2008 - Freeware implementation of REG.EXE.) - [506 Ko] - (3.0.0.0) - C:\Windows\SWREG.exe
- [MD5.0297C72529807322B152F517FDB0A9FC] - [12/07/2012 12:43:40] - (.Copyright © Frank Staal 1999-2006 - Freeware implementation of SC.EXE.) - [397 Ko] - (2.0.0.5) - C:\Windows\SWSC.exe
- [MD5.B1A9CF0B6F80611D31987C247EC630B4] - [31/08/2000 02:00:00] - (.Copyright © Frank Staal 1999-2006 - Freeware implementation of XCACLS.) - [207.5 Ko] - (1.0.1.1) - C:\Windows\SWXCACLS.exe
- [MD5.F36A271706EDD23C94956AFB56981184] - [14/07/2009 00:47:26] - (. - Twain_32.dll Client's 16-Bit Thunking Server.) - [48.52 Ko] - (1.7.0.0) - C:\Windows\twunk_16.exe
- [MD5.0BD6E68F3EA0DD62CD86283D86895381] - [14/07/2009 02:14:40] - (. - Twain.dll Client's 32-Bit Thunking Server.) - [30.5 Ko] - (1.7.1.0) - C:\Windows\twunk_32.exe
- [MD5.1D420D66250BCAAAED05724FB34008CF] - [14/07/2009 02:12:29] - (.© Microsoft Corporation. - Relais Windows Winhlp32.) - [9.5 Ko] - (6.1.7600.16385) - C:\Windows\winhlp32.exe
- [MD5.F8ED3B4B209E2CB49028E36CF06CA851] - [14/07/2009 01:56:28] - (.© Microsoft Corporation. - Windows Write.) - [10 Ko] - (6.1.7600.16385) - C:\Windows\write.exe
- [MD5.5E832F4FAF5F481F2EAF3B3A48F603B8] - [12/07/2012 12:43:40] - (. - .) - [66.5 Ko] - (0.0.0.0) - C:\Windows\zip.exe
- ¤¤¤¤¤¤¤¤¤¤ | Systemroot\System
- ¤¤¤¤¤¤¤¤¤¤ | Systemroot\Installer
- [21/01/2012 14:17:18] - C:\Windows\Installer\{048298C9-A4D3-490B-9FF9-AB023A9238F3}\Icon048298C92.url
- [11/01/2012 15:45:35] - C:\Windows\Installer\{0BD776F3-057D-4C11-020C-4FA9B13D04F9}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
- [11/01/2012 15:45:35] - C:\Windows\Installer\{0BD776F3-057D-4C11-020C-4FA9B13D04F9}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
- [11/01/2012 15:45:35] - C:\Windows\Installer\{0BD776F3-057D-4C11-020C-4FA9B13D04F9}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
- [11/01/2012 15:45:35] - C:\Windows\Installer\{0BD776F3-057D-4C11-020C-4FA9B13D04F9}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
- [29/06/2012 11:19:43] - C:\Windows\Installer\{0CB2E2BC-A312-5821-C5C7-A295A1BEFD08}\1036.mst
- [29/06/2012 11:19:43] - C:\Windows\Installer\{0CB2E2BC-A312-5821-C5C7-A295A1BEFD08}\ARPPRODUCTICON.exe
- [29/06/2012 11:19:43] - C:\Windows\Installer\{0CB2E2BC-A312-5821-C5C7-A295A1BEFD08}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
- [29/06/2012 11:19:43] - C:\Windows\Installer\{0CB2E2BC-A312-5821-C5C7-A295A1BEFD08}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
- [29/06/2012 11:19:43] - C:\Windows\Installer\{0CB2E2BC-A312-5821-C5C7-A295A1BEFD08}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
- [29/06/2012 11:19:43] - C:\Windows\Installer\{0CB2E2BC-A312-5821-C5C7-A295A1BEFD08}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
- [04/05/2012 16:45:27] - C:\Windows\Installer\{119B2F5A-2A06-DB96-FF28-992EC2A10BDF}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:36] - C:\Windows\Installer\{14DDF23F-414A-46DB-4762-56569080292C}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:23] - C:\Windows\Installer\{21D0374C-C358-0748-CAF9-7CBE65EB6FFF}\1036.mst
- [29/06/2012 11:21:23] - C:\Windows\Installer\{21D0374C-C358-0748-CAF9-7CBE65EB6FFF}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:41] - C:\Windows\Installer\{21D6A73A-48E6-2195-C408-2158273A914E}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:47] - C:\Windows\Installer\{2596DB11-997F-FC5B-F5C2-737623D9D8B6}\1036.mst
- [29/06/2012 11:21:46] - C:\Windows\Installer\{2596DB11-997F-FC5B-F5C2-737623D9D8B6}\ARPPRODUCTICON.exe
- [04/03/2012 22:49:13] - C:\Windows\Installer\{26A24AE4-039D-4CA4-87B4-2F83216031FF}\sp1036.MST
- [17/04/2012 12:34:04] - C:\Windows\Installer\{26A24AE4-039D-4CA4-87B4-2F86417003FF}\jre1036.MST
- [29/06/2012 11:21:34] - C:\Windows\Installer\{28904D9A-13A6-ECA2-48D8-21542759D998}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:27] - C:\Windows\Installer\{2C8BBDA6-79A7-B2DE-3E5B-287E7F667C67}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:36] - C:\Windows\Installer\{2E119961-E99B-C147-9AC3-A93683172DC1}\ARPPRODUCTICON.exe
- [30/04/2012 21:55:01] - C:\Windows\Installer\{33286280-8617-11E1-8FF6-B8AC6F97B88E}\ARPPRODUCTICON.exe
- [30/04/2012 21:55:01] - C:\Windows\Installer\{33286280-8617-11E1-8FF6-B8AC6F97B88E}\UNINST_Uninstall_G_F6A848FB884248E6A4CDCBDCF41F6A74_1.exe
- [21/03/2012 13:49:17] - C:\Windows\Installer\{353D1262-B2D2-AD87-EB5E-6B1395AF9FAE}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
- [21/03/2012 13:49:17] - C:\Windows\Installer\{353D1262-B2D2-AD87-EB5E-6B1395AF9FAE}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
- [21/03/2012 13:49:17] - C:\Windows\Installer\{353D1262-B2D2-AD87-EB5E-6B1395AF9FAE}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
- [21/03/2012 13:49:17] - C:\Windows\Installer\{353D1262-B2D2-AD87-EB5E-6B1395AF9FAE}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
- [29/06/2012 11:21:37] - C:\Windows\Installer\{44ED90A1-453B-5C9A-D9ED-80D8AB0258B8}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:38] - C:\Windows\Installer\{45E00595-897E-64B6-28F9-5D0927EBA4A5}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:29] - C:\Windows\Installer\{46DE5F4E-BA8B-AC9E-0EED-05B7D93AD215}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:42] - C:\Windows\Installer\{4E021D2A-16ED-4FFF-87CB-774F4F62A1A1}\ARPPRODUCTICON.exe
- [29/06/2012 11:22:02] - C:\Windows\Installer\{503F672D-6C84-448A-8F8F-4BC35AC83441}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:59] - C:\Windows\Installer\{572788F2-0AB7-FA0E-6E91-B98044F4B7E6}\ARPPRODUCTICON.exe
- [04/05/2012 16:42:46] - C:\Windows\Installer\{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
- [04/05/2012 16:42:46] - C:\Windows\Installer\{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
- [04/05/2012 16:42:46] - C:\Windows\Installer\{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
- [04/05/2012 16:42:46] - C:\Windows\Installer\{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
- [29/06/2012 11:21:27] - C:\Windows\Installer\{5B04E832-4530-B8FF-F742-8BE25ADD43BD}\ARPPRODUCTICON.exe
- [29/06/2012 11:19:40] - C:\Windows\Installer\{5D58EACA-0317-4CFF-9E13-53CCD525DE32}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:33] - C:\Windows\Installer\{5ED93D68-5EAA-9343-9B74-B1E276217264}\ARPPRODUCTICON.exe
- [10/07/2012 00:27:12] - C:\Windows\Installer\{6037B8AD-7D5B-4D50-9BCA-A586C44EEF34}\aos.exe
- [10/07/2012 00:27:12] - C:\Windows\Installer\{6037B8AD-7D5B-4D50-9BCA-A586C44EEF34}\SystemFolder_msiexec.exe
- [17/02/2012 15:32:53] - C:\Windows\Installer\{662CFD19-EA80-4EFE-A0D8-EE10EFEB3C83}\SystemFolder_msiexec.exe
- [29/06/2012 11:21:39] - C:\Windows\Installer\{6D185295-DE89-9C39-18E6-310C148836EB}\ARPPRODUCTICON.exe
- [03/01/2012 17:27:12] - C:\Windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico
- [03/01/2012 17:27:12] - C:\Windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\RichText.ico
- [29/06/2012 11:21:30] - C:\Windows\Installer\{71A8F958-D272-E262-7C9A-7B8F713EE0C3}\ARPPRODUCTICON.exe
- [28/12/2011 23:26:16] - C:\Windows\Installer\{73FFC7D9-3D8F-D20B-502E-587CEBD8AF3A}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:31] - C:\Windows\Installer\{7513D3F0-55BC-273C-7A53-488394EDBFCC}\ARPPRODUCTICON.exe
- [03/01/2012 17:27:39] - C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe
- [03/01/2012 17:27:39] - C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico
- [29/06/2012 11:21:35] - C:\Windows\Installer\{79AA9BFA-F962-A1E9-71CE-D0887A92444C}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:29] - C:\Windows\Installer\{7ACEF1BF-9306-5AD7-5F30-ECE72A81E924}\ARPPRODUCTICON.exe
- [28/06/2012 09:57:10] - C:\Windows\Installer\{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}\UninstallIcon.ico
- [30/06/2012 04:11:57] - C:\Windows\Installer\{812489B5-A2A9-474B-9BE7-55410E0E1DB4}\maconfico
- [30/06/2012 04:11:57] - C:\Windows\Installer\{812489B5-A2A9-474B-9BE7-55410E0E1DB4}\mcsetupfr.mst
- [18/02/2012 00:58:46] - C:\Windows\Installer\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}\GameForWindowsLiveRedist.exe
- [16/06/2012 11:25:14] - C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
- [16/06/2012 11:25:14] - C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIconDll
- [16/06/2012 11:25:14] - C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIconDLL_64
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\accicons.exe
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\cagicon.exe
- [30/12/2011 03:45:52] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\graph.ico
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\grvicons.exe
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\inficon.exe
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\joticon.exe
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\misc.exe
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\msouc.exe
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\oisicon.exe
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\outicon.exe
- [30/12/2011 03:45:52] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\pptico.exe
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\pubs.exe
- [30/12/2011 03:47:43] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\ShellUI.MST
- [30/12/2011 03:45:53] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\wordicon.exe
- [30/12/2011 03:45:52] - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\xlicons.exe
- [30/12/2011 03:43:57] - C:\Windows\Installer\{90140000-0043-0000-1000-0000000FF1CE}\ShellUI.MST
- [31/12/2011 19:51:55] - C:\Windows\Installer\{90140000-006E-040C-1000-0000000FF1CE}\misc.exe
- [18/02/2012 00:58:21] - C:\Windows\Installer\{9B48B0AC-C813-4174-9042-476A887592C7}\prodicon.ico
- [29/06/2012 11:21:25] - C:\Windows\Installer\{9C1EC871-05B9-03B7-96F6-9BD5C0D8F41D}\ARPPRODUCTICON.exe
- [15/03/2012 19:17:37] - C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\APIFile_8.ico
- [15/03/2012 19:17:37] - C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\FDFFile_8.ico
- [15/03/2012 19:17:37] - C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\PDFFile_8.ico
- [15/03/2012 19:17:37] - C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\PDXFile_8.ico
- [15/03/2012 19:17:37] - C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SC_Reader.ico
- [15/03/2012 19:17:37] - C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SecStoreFile.ico
- [15/03/2012 19:17:37] - C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\XDPFile_8.ico
- [15/03/2012 19:17:37] - C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\XFDFFile_8.ico
- [24/03/2012 12:15:03] - C:\Windows\Installer\{B6CF2967-C81E-40C0-9815-C05774FEF120}\IconUninstallIco
- [17/03/2012 11:24:49] - C:\Windows\Installer\{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}\Installer.ico
- [28/12/2011 23:25:32] - C:\Windows\Installer\{BC915A04-93BD-A74E-F90D-4BC84D88F087}\ARPPRODUCTICON.exe
- [08/02/2012 13:07:48] - C:\Windows\Installer\{BE882A12-5A45-3DFF-9FD0-306DE65EB8A5}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
- [08/02/2012 13:07:48] - C:\Windows\Installer\{BE882A12-5A45-3DFF-9FD0-306DE65EB8A5}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
- [08/02/2012 13:07:49] - C:\Windows\Installer\{BE882A12-5A45-3DFF-9FD0-306DE65EB8A5}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
- [08/02/2012 13:07:49] - C:\Windows\Installer\{BE882A12-5A45-3DFF-9FD0-306DE65EB8A5}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
- [28/12/2011 23:25:02] - C:\Windows\Installer\{C27D5B91-DA53-3AEB-5CD5-5F6E0C87459A}\NewShortcut2_3B1A0823966A48909E77539C330FBF6E.exe
- [28/12/2011 23:25:02] - C:\Windows\Installer\{C27D5B91-DA53-3AEB-5CD5-5F6E0C87459A}\NewShortcut3_3B1A0823966A48909E77539C330FBF6E.exe
- [28/12/2011 23:25:02] - C:\Windows\Installer\{C27D5B91-DA53-3AEB-5CD5-5F6E0C87459A}\NewShortcut4_3B1A0823966A48909E77539C330FBF6E.exe
- [28/12/2011 23:25:02] - C:\Windows\Installer\{C27D5B91-DA53-3AEB-5CD5-5F6E0C87459A}\NewShortcut5_3B1A0823966A48909E77539C330FBF6E.exe
- [29/06/2012 11:21:28] - C:\Windows\Installer\{C4129D57-5C83-3BF0-A11A-3798C008C6C7}\ARPPRODUCTICON.exe
- [28/12/2011 23:26:18] - C:\Windows\Installer\{CEA9C4D2-67B3-4518-EC70-865A7EFD40FD}\ARPPRODUCTICON.exe
- [31/05/2012 22:26:31] - C:\Windows\Installer\{CF8FFD12-602B-422D-AF1D-511B411E7632}\Installer.ico
- [31/05/2012 22:26:31] - C:\Windows\Installer\{CF8FFD12-602B-422D-AF1D-511B411E7632}\iTunesIco.exe
- [31/05/2012 22:26:31] - C:\Windows\Installer\{CF8FFD12-602B-422D-AF1D-511B411E7632}\RichText.ico
- [29/06/2012 11:21:26] - C:\Windows\Installer\{D0BC4101-6C30-ECFF-F693-63408134F29B}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:32] - C:\Windows\Installer\{D2402DAD-B180-A4A0-261D-4A8933BFBFEE}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:30] - C:\Windows\Installer\{DA7E8D81-2B14-415B-8FC5-02CE4CF9F839}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:37] - C:\Windows\Installer\{DB3FBD3C-A061-34C9-0A2B-6CCDD8C96640}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:32] - C:\Windows\Installer\{E086E914-2928-48F9-364B-0C715DFF6A45}\ARPPRODUCTICON.exe
- [08/02/2012 23:42:59] - C:\Windows\Installer\{E1019541-10A2-464F-A23E-A4F23DA65160}\mumble.ico
- [08/02/2012 23:42:59] - C:\Windows\Installer\{E1019541-10A2-464F-A23E-A4F23DA65160}\murmur.ico
- [29/06/2012 11:21:21] - C:\Windows\Installer\{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:34] - C:\Windows\Installer\{E8F30BD6-ABAB-C24E-E9A7-BF67EB96152C}\ARPPRODUCTICON.exe
- [29/06/2012 11:21:28] - C:\Windows\Installer\{E9A5B6CD-7ABB-F295-2E11-F25BC322FF80}\ARPPRODUCTICON.exe
- [17/03/2012 11:24:26] - C:\Windows\Installer\{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}\WinInstall.ico
- [07/07/2012 11:27:05] - C:\Windows\Installer\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeIcon.exe
- ¤¤¤¤¤¤¤¤¤¤ | %System%\*.ini
- [14/07/2009 06:57:09] - |ASH| - C:\Windows\System32\desktop.ini
- [14/07/2009 07:13:15] - |A| - C:\Windows\System32\PerfStringBackup.INI
- [10/06/2009 23:01:25] - |A| - C:\Windows\System32\tcpmon.ini
- ¤¤¤¤¤¤¤¤¤¤ | Profiles
- [14/07/2009 05:20:10] - |SD| - C:\Windows\system32\config\systemprofile\AppData
- [14/07/2009 07:38:14] - |A| - C:\Windows\system32\config\systemprofile\ntuser.dat
- [14/07/2009 17:25:08] - |AH| - C:\Windows\system32\config\systemprofile\ntuser.dat.LOG
- [14/07/2009 07:38:14] - |ASH| - C:\Windows\system32\config\systemprofile\ntuser.dat.LOG1
- [14/07/2009 07:38:14] - |ASH| - C:\Windows\system32\config\systemprofile\ntuser.dat.LOG2
- [14/07/2009 06:45:47] - |HD| - C:\Windows\ServiceProfiles\LocalService\AppData
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\LocalService\Desktop
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\LocalService\Documents
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\LocalService\Downloads
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\LocalService\Favorites
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\LocalService\Links
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\LocalService\Music
- [14/07/2009 06:45:47] - |ASH| - C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
- [14/07/2009 17:25:08] - |AH| - C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG
- [14/07/2009 06:45:47] - |AH| - C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG1
- [14/07/2009 06:45:47] - |AH| - C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG2
- [14/07/2009 06:45:47] - |HD| - C:\Windows\ServiceProfiles\NetworkService\AppData
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\NetworkService\Desktop
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\NetworkService\Documents
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\NetworkService\Downloads
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\NetworkService\Favorites
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\NetworkService\Links
- [14/07/2009 06:45:47] - |RD| - C:\Windows\ServiceProfiles\NetworkService\Music
- [14/07/2009 06:45:47] - |ASH| - C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
- [14/07/2009 17:25:08] - |AH| - C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG
- [14/07/2009 06:45:47] - |AH| - C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG1
- [14/07/2009 06:45:47] - |AH| - C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG2
- [21/04/2012 16:25:40] - |D| - C:\Users\Gurvan\.gimp-2.6
- [24/03/2012 15:59:56] - |D| - C:\Users\Gurvan\.m2
- [21/01/2012 16:52:16] - |D| - C:\Users\Gurvan\.MinecraftStructurePlanner
- [08/06/2012 22:49:30] - |A| - C:\Users\Gurvan\.recently-used.xbel
- [11/02/2012 13:57:25] - |D| - C:\Users\Gurvan\.shsh
- [21/04/2012 16:27:17] - |D| - C:\Users\Gurvan\.thumbnails
- [31/03/2012 00:37:46] - |D| - C:\Users\Gurvan\.worldpainter
- [28/12/2011 23:16:31] - |HD| - C:\Users\Gurvan\AppData
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\Application Data
- [19/04/2012 15:42:55] - |D| - C:\Users\Gurvan\Client
- [28/12/2011 23:16:43] - |RD| - C:\Users\Gurvan\Contacts
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\Cookies
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\Desktop
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\Documents
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\Downloads
- [24/03/2012 16:51:02] - |RD| - C:\Users\Gurvan\Dropbox
- [24/03/2012 16:14:32] - |D| - C:\Users\Gurvan\eclipse
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\Favorites
- [24/03/2012 15:57:43] - |D| - C:\Users\Gurvan\git
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\Links
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\Local Settings
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\Menu Démarrer
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\Mes documents
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\Modèles
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\Music
- [28/12/2011 23:16:31] - |ASH| - C:\Users\Gurvan\NTUSER.DAT
- [28/12/2011 23:16:31] - |ASH| - C:\Users\Gurvan\ntuser.dat.LOG1
- [28/12/2011 23:16:31] - |ASH| - C:\Users\Gurvan\ntuser.dat.LOG2
- [14/07/2009 05:20:08] - |HD| - C:\Users\Default\AppData
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\Application Data
- [14/07/2009 05:20:08] - |RD| - C:\Users\Default\Desktop
- [14/07/2009 05:20:08] - |RD| - C:\Users\Default\Documents
- [14/07/2009 05:20:08] - |RD| - C:\Users\Default\Downloads
- [14/07/2009 05:20:08] - |RD| - C:\Users\Default\Favorites
- [14/07/2009 05:20:08] - |RD| - C:\Users\Default\Links
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\Local Settings
- [28/12/2011 23:16:20] - |SHD| - C:\Users\Default\Menu Démarrer
- [28/12/2011 23:16:20] - |SHD| - C:\Users\Default\Mes documents
- [28/12/2011 23:16:20] - |SHD| - C:\Users\Default\Modèles
- [14/07/2009 05:20:08] - |RD| - C:\Users\Default\Music
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\My Documents
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\NetHood
- [14/07/2009 04:34:08] - |ASH| - C:\Users\Default\NTUSER.DAT
- [14/07/2009 17:20:00] - |AH| - C:\Users\Default\NTUSER.DAT.LOG
- [14/07/2009 04:34:08] - |AH| - C:\Users\Default\NTUSER.DAT.LOG1
- [14/07/2009 04:34:08] - |AH| - C:\Users\Default\NTUSER.DAT.LOG2
- [14/07/2009 06:45:54] - |ASH| - C:\Users\Default\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf
- [14/07/2009 06:45:54] - |ASH| - C:\Users\Default\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms
- [14/07/2009 06:45:54] - |ASH| - C:\Users\Default\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms
- [14/07/2009 05:20:08] - |RD| - C:\Users\Default\Pictures
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\PrintHood
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\Recent
- [14/07/2009 05:20:08] - |D| - C:\Users\Default\Saved Games
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\SendTo
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\Start Menu
- [14/07/2009 07:08:56] - |SHD| - C:\Users\Default\Templates
- [14/07/2009 05:20:08] - |RD| - C:\Users\Default\Videos
- [28/12/2011 23:16:20] - |SHD| - C:\Users\Default\Voisinage d'impression
- [28/12/2011 23:16:20] - |SHD| - C:\Users\Default\Voisinage réseau
- ¤¤¤¤¤¤¤¤¤¤ | Desktop
- [30/03/2012 23:07:04] - |A| - C:\Users\Gurvan\Desktop\.minecraft - Raccourci.lnk
- [12/07/2012 12:40:27] - |R| - C:\Users\Gurvan\Desktop\AntiBackdoor.exe
- [29/12/2011 23:06:31] - |A| - C:\Users\Gurvan\Desktop\Assassin's Creed Revelations.lnk
- [19/06/2012 21:47:23] - |D| - C:\Users\Gurvan\Desktop\BuildCraft
- [17/04/2012 13:02:10] - |D| - C:\Users\Gurvan\Desktop\Client
- [25/05/2012 22:10:58] - |A| - C:\Users\Gurvan\Desktop\Coordonnées Factions.txt
- [28/12/2011 23:16:53] - |ASH| - C:\Users\Gurvan\Desktop\desktop.ini
- [08/04/2012 12:46:45] - |A| - C:\Users\Gurvan\Desktop\Dofus2.lnk
- [24/03/2012 16:51:02] - |A| - C:\Users\Gurvan\Desktop\Dropbox.lnk
- [01/02/2012 19:08:33] - |D| - C:\Users\Gurvan\Desktop\eclipse
- [24/03/2012 16:15:15] - |A| - C:\Users\Gurvan\Desktop\eclipse - Raccourci.lnk
- [29/12/2011 12:44:03] - |A| - C:\Users\Gurvan\Desktop\Far Cry 2.lnk
- [18/04/2012 21:29:17] - |D| - C:\Users\Gurvan\Desktop\forge
- [25/01/2012 15:42:05] - |A| - C:\Users\Gurvan\Desktop\Fraps.lnk
- [18/05/2012 13:58:09] - |D| - C:\Users\Gurvan\Desktop\FrozenWay 1.4.1 x86
- [29/12/2011 21:27:47] - |A| - C:\Users\Gurvan\Desktop\Google Chrome.lnk
- [08/07/2012 16:47:18] - |D| - C:\Users\Gurvan\Desktop\Heatlan
- [28/06/2012 01:51:35] - |D| - C:\Users\Gurvan\Desktop\League of Legends
- [02/01/2012 18:54:52] - |A| - C:\Users\Gurvan\Desktop\MCEdit.lnk
- [27/06/2012 00:57:50] - |A| - C:\Users\Gurvan\Desktop\MDP.docx
- [13/04/2012 12:38:46] - |A| - C:\Users\Gurvan\Desktop\messages_fr.properties
- [29/12/2011 20:18:57] - |A| - C:\Users\Gurvan\Desktop\Minecraft.exe
- [04/06/2012 20:14:58] - |A| - C:\Users\Gurvan\Desktop\Modo.txt
- [01/02/2012 12:55:28] - |A| - C:\Users\Gurvan\Desktop\Notepad++.lnk
- [17/04/2012 16:49:49] - |D| - C:\Users\Gurvan\Desktop\ObsidianIngots
- [01/02/2012 12:49:40] - |D| - C:\Users\Gurvan\Desktop\Serveur
- [19/06/2012 20:53:50] - |D| - C:\Users\Gurvan\Desktop\Serveur_BuildCraft
- [19/06/2012 20:53:24] - |A| - C:\Users\Gurvan\Desktop\Serveur_BuildCraft.rar
- [08/02/2012 19:00:29] - |A| - C:\Users\Gurvan\Desktop\Son.lnk
- [21/01/2012 14:28:31] - |A| - C:\Users\Gurvan\Desktop\Team Fortress 2.url
- [27/06/2012 17:12:46] - |A| - C:\Users\Gurvan\Desktop\team mine-tox sur TF2 2.jpg
- [27/06/2012 17:21:59] - |A| - C:\Users\Gurvan\Desktop\team mine-tox sur TF2 3.jpg
- [27/06/2012 16:54:40] - |A| - C:\Users\Gurvan\Desktop\team mine-tox sur TF2.jpg
- [17/06/2012 01:42:04] - |AH| - C:\Users\Gurvan\Desktop\~$rticipants.docx
- [10/07/2012 00:27:12] - |A| - C:\Users\Public\Desktop\Ace of Spades.url
- [29/12/2011 11:52:34] - |A| - C:\Users\Public\Desktop\Avira Control Center.lnk
- [14/07/2009 06:54:23] - |SH| - C:\Users\Public\Desktop\desktop.ini
- [30/06/2012 04:11:57] - |A| - C:\Users\Public\Desktop\Démarrer la détection.lnk
- [22/01/2012 04:16:17] - |A| - C:\Users\Public\Desktop\FM Genie Scout 12.lnk
- [01/01/2012 17:02:26] - |A| - C:\Users\Public\Desktop\FMRTE v5.lnk
- [30/12/2011 17:38:39] - |A| - C:\Users\Public\Desktop\Football Manager 2012.lnk
- [21/04/2012 16:25:32] - |A| - C:\Users\Public\Desktop\GIMP 2.lnk
- [18/02/2012 00:19:09] - |A| - C:\Users\Public\Desktop\Grand Theft Auto IV.lnk
- [31/05/2012 22:26:31] - |A| - C:\Users\Public\Desktop\iTunes.lnk
- [28/06/2012 12:28:50] - |A| - C:\Users\Public\Desktop\League of Legends.lnk
- [17/02/2012 15:32:54] - |A| - C:\Users\Public\Desktop\Livestream Procaster.lnk
- [16/04/2012 23:40:25] - |A| - C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
- [29/12/2011 11:45:16] - |A| - C:\Users\Public\Desktop\Mozilla Firefox.lnk
- [08/02/2012 23:42:59] - |A| - C:\Users\Public\Desktop\Mumble.lnk
- [02/01/2012 19:36:18] - |A| - C:\Users\Public\Desktop\Skype.lnk
- [21/01/2012 14:17:20] - |A| - C:\Users\Public\Desktop\Steam.lnk
- [29/12/2011 20:24:24] - |A| - C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
- [02/05/2012 15:48:21] - |A| - C:\Users\Public\Desktop\TeamViewer 7.lnk
- [15/03/2012 20:57:38] - |A| - C:\Users\Public\Desktop\TI Connect.lnk
- [29/12/2011 21:48:47] - |A| - C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
- [29/12/2011 21:48:47] - |A| - C:\Users\Public\Desktop\TuneUp Utilities 2012.lnk
- ¤¤¤¤¤¤¤¤¤¤ | Downloads
- [16/02/2012 00:31:15] - |A| - C:\Users\Gurvan\Downloads\03-mister_you-jregarde_en_lair.mp3
- [16/02/2012 00:31:15] - |A| - C:\Users\Gurvan\Downloads\10-mister_you-funk_you_feat_dj_abdel_et_francisco.mp3
- [16/02/2012 00:31:15] - |A| - C:\Users\Gurvan\Downloads\11-mister_you-mets_toi_a_laise_feat_colonel_reyel.mp3
- [27/03/2012 19:07:01] - |A| - C:\Users\Gurvan\Downloads\120327-190542.jpg
- [27/03/2012 20:10:34] - |A| - C:\Users\Gurvan\Downloads\120327-200922.jpg
- [27/03/2012 20:11:28] - |A| - C:\Users\Gurvan\Downloads\120327-201010.jpg
- [29/03/2012 20:57:20] - |A| - C:\Users\Gurvan\Downloads\120329-205621.jpg
- [29/03/2012 21:06:15] - |A| - C:\Users\Gurvan\Downloads\120329-210518.jpg
- [29/03/2012 21:09:46] - |A| - C:\Users\Gurvan\Downloads\120329-210834.jpg
- [13/05/2012 21:05:12] - |A| - C:\Users\Gurvan\Downloads\120513-210311.jpg
- [23/04/2012 19:57:06] - |A| - C:\Users\Gurvan\Downloads\1273-1341__www_mes-cours_fr.pdf
- [23/04/2012 19:42:02] - |A| - C:\Users\Gurvan\Downloads\1273-1342__www_mes-cours_fr.pdf
- [17/04/2012 13:54:31] - |A| - C:\Users\Gurvan\Downloads\181 ObsidianPlus v30.zip
- [08/05/2012 20:45:28] - |A| - C:\Users\Gurvan\Downloads\2.jpg
- [23/04/2012 20:19:28] - |A| - C:\Users\Gurvan\Downloads\2012-04-23_20.17.43.png
- [23/04/2012 20:19:24] - |A| - C:\Users\Gurvan\Downloads\2012-04-23_20.17.53.png
- [23/04/2012 20:19:21] - |A| - C:\Users\Gurvan\Downloads\2012-04-23_20.17.56.png
- [23/04/2012 23:20:10] - |A| - C:\Users\Gurvan\Downloads\2012-04-23_23.16.56.png
- [27/04/2012 22:29:11] - |A| - C:\Users\Gurvan\Downloads\2012-04-27_22.19.36.png
- [04/05/2012 18:18:46] - |A| - C:\Users\Gurvan\Downloads\2012-05-04_18.18.14.png
- [09/05/2012 21:44:29] - |A| - C:\Users\Gurvan\Downloads\2012-05-09_21.26.41.png
- [17/05/2012 12:22:42] - |A| - C:\Users\Gurvan\Downloads\2012-05-16_22.50.53.png
- [17/05/2012 12:22:42] - |A| - C:\Users\Gurvan\Downloads\2012-05-16_22.51.03.png
- [17/05/2012 12:22:42] - |A| - C:\Users\Gurvan\Downloads\2012-05-16_22.54.03.png
- [17/05/2012 12:22:42] - |A| - C:\Users\Gurvan\Downloads\2012-05-16_23.01.54.png
- [17/05/2012 12:22:42] - |A| - C:\Users\Gurvan\Downloads\2012-05-16_23.02.43.png
- [17/05/2012 16:39:08] - |A| - C:\Users\Gurvan\Downloads\2012-05-17_16.29.39.png
- [17/05/2012 16:39:05] - |A| - C:\Users\Gurvan\Downloads\2012-05-17_16.29.43.png
- [18/05/2012 12:08:10] - |A| - C:\Users\Gurvan\Downloads\2012-05-18_11.58.36.png
- [23/05/2012 21:38:45] - |A| - C:\Users\Gurvan\Downloads\2012-05-23_21.37.27.png
- [26/05/2012 18:57:21] - |A| - C:\Users\Gurvan\Downloads\2012-05-26_11.10.15.png
- [07/06/2012 18:42:05] - |A| - C:\Users\Gurvan\Downloads\2012-06-07_18.18.18.png
- [07/06/2012 18:42:10] - |A| - C:\Users\Gurvan\Downloads\2012-06-07_18.22.08.png
- [10/06/2012 18:53:42] - |A| - C:\Users\Gurvan\Downloads\2012-06-10_18.40.31.png
- [12/06/2012 20:44:46] - |A| - C:\Users\Gurvan\Downloads\2012-06-12_20.44.13.png
- [15/06/2012 00:10:21] - |A| - C:\Users\Gurvan\Downloads\2012-06-14_09.41.38.png
- [15/06/2012 00:10:21] - |A| - C:\Users\Gurvan\Downloads\2012-06-14_09.41.45.png
- [15/06/2012 00:10:21] - |A| - C:\Users\Gurvan\Downloads\2012-06-14_09.41.50.png
- [15/06/2012 00:10:21] - |A| - C:\Users\Gurvan\Downloads\2012-06-14_09.43.21.png
- [15/06/2012 00:10:21] - |A| - C:\Users\Gurvan\Downloads\2012-06-14_09.51.33.png
- [15/06/2012 00:10:21] - |A| - C:\Users\Gurvan\Downloads\2012-06-14_09.55.46.png
- [15/06/2012 00:10:21] - |A| - C:\Users\Gurvan\Downloads\2012-06-14_09.56.04.png
- [15/06/2012 00:10:21] - |A| - C:\Users\Gurvan\Downloads\2012-06-14_09.56.10.png
- [28/06/2012 23:08:06] - |A| - C:\Users\Gurvan\Downloads\2012-06-16_20.27.14.png
- [22/06/2012 19:50:05] - |A| - C:\Users\Gurvan\Downloads\2012-06-22_19.46.30.png
- [29/06/2012 16:28:07] - |A| - C:\Users\Gurvan\Downloads\2012-06-29_16.27.27.png
- [04/07/2012 22:05:52] - |A| - C:\Users\Gurvan\Downloads\2012-07-02_12.27.02.png
- [03/07/2012 14:52:27] - |A| - C:\Users\Gurvan\Downloads\2012-07-03_14.19.24.png
- [08/07/2012 15:14:28] - |A| - C:\Users\Gurvan\Downloads\2012-07-08_15.14.05.png
- [09/07/2012 12:44:48] - |A| - C:\Users\Gurvan\Downloads\2012-07-09_09.02.37.png
- [09/07/2012 11:21:08] - |A| - C:\Users\Gurvan\Downloads\2012-07-09_11.03.37.png
- [09/07/2012 12:44:31] - |A| - C:\Users\Gurvan\Downloads\2012-07-09_12.44.02.png
- [09/07/2012 12:44:52] - |A| - C:\Users\Gurvan\Downloads\2012-07-09_12.44.03.png
- [11/07/2012 17:26:34] - |A| - C:\Users\Gurvan\Downloads\2012-07-11_17.15.50.png
- [10/02/2012 19:47:33] - |A| - C:\Users\Gurvan\Downloads\20120210163042989.pdf
- [08/05/2012 20:45:28] - |A| - C:\Users\Gurvan\Downloads\3.jpg
- [27/06/2012 03:26:53] - |A| - C:\Users\Gurvan\Downloads\303591_3486860413031_899271342_n.jpg
- [24/02/2012 16:13:43] - |A| - C:\Users\Gurvan\Downloads\403204_377250518953506_244975925514300_1546339_159483876_n[1].jpg
- [24/02/2012 16:15:04] - |A| - C:\Users\Gurvan\Downloads\418767_371831962827687_363539040323646_1481484_117358552_n[1].jpg
- [12/02/2012 21:42:10] - |A| - C:\Users\Gurvan\Downloads\419237_340678295971954_282900378416413_1050307_1622279181_n.jpg
- [27/06/2012 03:05:22] - |A| - C:\Users\Gurvan\Downloads\466363_359201594112559_1961618375_o.jpg
- [30/05/2012 22:36:25] - |A| - C:\Users\Gurvan\Downloads\471332_390962830936435_100000681636684_1167951_1153779336_o.jpg
- [19/03/2012 12:20:01] - |A| - C:\Users\Gurvan\Downloads\4amt.sets.rar
- [06/05/2012 22:43:16] - |A| - C:\Users\Gurvan\Downloads\500JumpsToSucces.rar
- [28/06/2012 21:43:47] - |A| - C:\Users\Gurvan\Downloads\600069_242057135913679_2117884202_n[1].jpg
- [17/04/2012 15:09:14] - |A| - C:\Users\Gurvan\Downloads\a placer dans minecraft.jar.rar
- [02/07/2012 23:57:13] - |A| - C:\Users\Gurvan\Downloads\Accueil.htm
- [02/07/2012 23:57:14] - |D| - C:\Users\Gurvan\Downloads\Accueil_files
- [27/06/2012 00:15:49] - |A| - C:\Users\Gurvan\Downloads\actionaz-3.4.2-win64.exe
- [12/03/2012 19:15:44] - |A| - C:\Users\Gurvan\Downloads\AdminShop source.rar
- [12/07/2012 15:10:57] - |A| - C:\Users\Gurvan\Downloads\adwcleaner.exe
- [02/01/2012 17:22:31] - |SH| - C:\Users\Gurvan\Downloads\AlbumArtSmall.jpg
- [27/06/2012 00:36:15] - |A| - C:\Users\Gurvan\Downloads\AltairBot x64.exe
- [10/07/2012 00:26:08] - |A| - C:\Users\Gurvan\Downloads\aos075install.msi
- [06/02/2012 23:05:13] - |A| - C:\Users\Gurvan\Downloads\Auto Shutdown.exe
- [13/02/2012 14:21:36] - |A| - C:\Users\Gurvan\Downloads\AvantQuElleParte.mp3
- [16/06/2012 01:59:59] - |A| - C:\Users\Gurvan\Downloads\AypierreEp40.zip
- [03/03/2012 02:34:01] - |A| - C:\Users\Gurvan\Downloads\Background WorldCraftors.png
- [20/06/2012 21:45:45] - |A| - C:\Users\Gurvan\Downloads\Birdy - Bird - BY - JUJU50.rar
- [19/05/2012 19:45:25] - |A| - C:\Users\Gurvan\Downloads\Blueprints of Pagoda.PNG
- [26/05/2012 14:51:57] - |A| - C:\Users\Gurvan\Downloads\brutus-aet2.zip
- [18/06/2012 03:18:34] - |A| - C:\Users\Gurvan\Downloads\BTM (V 3.0).zip
- [16/04/2012 21:42:38] - |A| - C:\Users\Gurvan\Downloads\bukkit.zip
- [15/03/2012 21:04:51] - |D| - C:\Users\Gurvan\Downloads\Calculatrice
- [09/02/2012 22:00:28] - |A| - C:\Users\Gurvan\Downloads\Carte de Visite Cap Arvor.bmp
- [16/05/2012 12:04:17] - |A| - C:\Users\Gurvan\Downloads\Cartograph.zip
- [02/06/2012 23:44:46] - |A| - C:\Users\Gurvan\Downloads\Castle-keep-2.zip
- [23/04/2012 21:29:19] - |A| - C:\Users\Gurvan\Downloads\CFSetup270.exe
- [09/05/2012 11:35:42] - |A| - C:\Users\Gurvan\Downloads\CFSetup275.exe
- [11/06/2012 14:33:37] - |A| - C:\Users\Gurvan\Downloads\CFSetup280.exe
- [03/07/2012 12:19:04] - |A| - C:\Users\Gurvan\Downloads\CFSetup281.exe
- [24/06/2012 11:58:35] - |A| - C:\Users\Gurvan\Downloads\cheat.png
- [22/02/2012 16:45:19] - |A| - C:\Users\Gurvan\Downloads\CheatEngine61.exe
- [04/03/2012 22:47:15] - |A| - C:\Users\Gurvan\Downloads\chromeinstall-6u31.exe
- [29/03/2012 21:04:59] - |A| - C:\Users\Gurvan\Downloads\Cirano_d_Bergerak.avi
- [04/03/2012 14:42:38] - |A| - C:\Users\Gurvan\Downloads\CJBMods110.zip
- [17/03/2012 17:11:11] - |A| - C:\Users\Gurvan\Downloads\CJBMods123.zip
- [29/04/2012 12:03:54] - |A| - C:\Users\Gurvan\Downloads\CJBMods125.zip
- [23/03/2012 20:44:36] - |A| - C:\Users\Gurvan\Downloads\Coeur de pirate - B.rar
- [05/07/2012 22:25:25] - |R| - C:\Users\Gurvan\Downloads\ComboFix.exe
- [24/06/2012 12:55:13] - |A| - C:\Users\Gurvan\Downloads\Communes_of_France.png
- [08/04/2012 13:06:11] - |A| - C:\Users\Gurvan\Downloads\config.xml
- [18/04/2012 16:57:48] - |A| - C:\Users\Gurvan\Downloads\config.yml
- [06/05/2012 14:59:02] - |A| - C:\Users\Gurvan\Downloads\Constitution de la Première République.doc
- [24/06/2012 11:58:43] - |A| - C:\Users\Gurvan\Downloads\coord tehfayth.png
- [03/03/2012 21:27:39] - |A| - C:\Users\Gurvan\Downloads\Coterie-Craft-242_1594032.zip
- [22/03/2012 15:28:06] - |A| - C:\Users\Gurvan\Downloads\CraftManiak.exe
- [06/07/2012 00:07:27] - |A| - C:\Users\Gurvan\Downloads\cureit-201207052251.exe
- [24/05/2012 18:26:09] - |A| - C:\Users\Gurvan\Downloads\CYRANO -Tableau des personnages (PROF).doc
- [24/05/2012 18:24:07] - |A| - C:\Users\Gurvan\Downloads\CYRANO I,4.doc
- [22/02/2012 21:00:47] - |A| - C:\Users\Gurvan\Downloads\decibel.zip
- [12/07/2012 12:39:37] - |A| - C:\Users\Gurvan\Downloads\Defogger.exe
- [12/07/2012 12:41:00] - |A| - C:\Users\Gurvan\Downloads\defogger_disable.log
- [12/07/2012 13:23:16] - |A| - C:\Users\Gurvan\Downloads\defogger_enable.log
- [28/12/2011 23:16:53] - |ASH| - C:\Users\Gurvan\Downloads\desktop.ini
- [02/05/2012 13:37:08] - |A| - C:\Users\Gurvan\Downloads\document.doc
- [08/04/2012 12:46:35] - |A| - C:\Users\Gurvan\Downloads\DofusInstaller_v1_29_0.exe
- [31/05/2012 22:38:49] - |A| - C:\Users\Gurvan\Downloads\Drake_-_Take_Care_ft_Rihanna.mp3
- [24/03/2012 16:46:47] - |A| - C:\Users\Gurvan\Downloads\Dropbox 1.2.52.exe
- [06/07/2012 00:07:41] - |A| - C:\Users\Gurvan\Downloads\drweb-700-win-space-201206071424.exe
- [02/05/2012 16:14:56] - |A| - C:\Users\Gurvan\Downloads\ducsetup.exe
- [01/02/2012 12:43:09] - |A| - C:\Users\Gurvan\Downloads\eclipse-java-indigo-SR1-win32.zip
- [24/03/2012 16:03:55] - |A| - C:\Users\Gurvan\Downloads\eclipse-java-indigo-SR2-win32-x86_64.zip
- [25/03/2012 01:51:12] - |A| - C:\Users\Gurvan\Downloads\eclipse-SDK-3.7.2-win32-x86_64.zip
- [17/05/2012 22:03:37] - |A| - C:\Users\Gurvan\Downloads\Eldorla.jpg
- [16/06/2012 16:50:17] - |A| - C:\Users\Gurvan\Downloads\Factions_1.6.7.zip
- [07/04/2012 22:39:28] - |A| - C:\Users\Gurvan\Downloads\FallenKingdomsSaison01.zip
- [18/06/2012 15:36:53] - |A| - C:\Users\Gurvan\Downloads\Fiche-croquis-et-schémas-1ère-S1.doc
- [26/05/2012 15:34:23] - |A| - C:\Users\Gurvan\Downloads\FileZilla_3.5.3_win32-setup.exe
- [13/03/2012 20:11:11] - |A| - C:\Users\Gurvan\Downloads\Firefox Setup 10.0.2.exe
- [14/02/2012 00:24:15] - |A| - C:\Users\Gurvan\Downloads\flying-sheep-Texture-Pack-Customizer-981cd6c.zip
- [02/01/2012 17:22:32] - |SH| - C:\Users\Gurvan\Downloads\Folder.jpg
- [28/05/2012 15:07:39] - |A| - C:\Users\Gurvan\Downloads\fr-minecraft_skin_9P9M_king.png
- [29/04/2012 17:18:25] - |A| - C:\Users\Gurvan\Downloads\Fraps 3.4.7 - By Throkx.rar
- [18/05/2012 13:57:16] - |A| - C:\Users\Gurvan\Downloads\FrozenWay 1.4.1 x86.zip
- [08/04/2012 17:17:59] - |A| - C:\Users\Gurvan\Downloads\gatter.msi
- [21/04/2012 16:04:14] - |A| - C:\Users\Gurvan\Downloads\gimp-2.6.12-i686-setup-1.exe
- [30/04/2012 21:53:15] - |A| - C:\Users\Gurvan\Downloads\GoogleEarthPluginSetup.exe
- [24/02/2012 17:27:03] - |A| - C:\Users\Gurvan\Downloads\Groupement de textes complémentaires - les grandes batailles.doc
- [29/04/2012 15:30:56] - |A| - C:\Users\Gurvan\Downloads\Gurvan777.mp4
- [19/01/2012 20:37:02] - |A| - C:\Users\Gurvan\Downloads\Géographie - Corentin Ogier, Gurvan Lechapelier.odt
- [08/07/2012 16:45:36] - |A| - C:\Users\Gurvan\Downloads\Heatlan 2.zip
- [13/06/2012 14:03:03] - |A| - C:\Users\Gurvan\Downloads\his1__texo96.doc
- [13/02/2012 14:20:06] - |A| - C:\Users\Gurvan\Downloads\IKnow.mp3
- [24/02/2012 15:38:24] - |A| - C:\Users\Gurvan\Downloads\img307.jpg
- [01/05/2012 22:18:32] - |A| - C:\Users\Gurvan\Downloads\IMG_01052012_221652.png
- [01/05/2012 22:19:52] - |A| - C:\Users\Gurvan\Downloads\IMG_01052012_221847.png
- [01/05/2012 22:24:02] - |A| - C:\Users\Gurvan\Downloads\IMG_01052012_222257.png
- [01/05/2012 22:59:28] - |A| - C:\Users\Gurvan\Downloads\IMG_01052012_225821.png
- [02/05/2012 15:49:23] - |A| - C:\Users\Gurvan\Downloads\IMG_02052012_154918.png
- [08/07/2012 03:11:27] - |A| - C:\Users\Gurvan\Downloads\IMG_08072012_031115.png
- [09/04/2012 16:59:17] - |A| - C:\Users\Gurvan\Downloads\IMG_09042012_165822.png
- [10/07/2012 12:54:26] - |A| - C:\Users\Gurvan\Downloads\IMG_10072012_125417.png
- [10/07/2012 12:55:12] - |A| - C:\Users\Gurvan\Downloads\IMG_10072012_125447.png
- [10/07/2012 12:55:15] - |A| - C:\Users\Gurvan\Downloads\IMG_10072012_125502.png
- [10/07/2012 12:55:48] - |A| - C:\Users\Gurvan\Downloads\IMG_10072012_125531.png
- [10/07/2012 12:58:19] - |A| - C:\Users\Gurvan\Downloads\IMG_10072012_125813.png
- [10/07/2012 23:25:59] - |A| - C:\Users\Gurvan\Downloads\IMG_10072012_232549.png
- [10/07/2012 23:33:55] - |A| - C:\Users\Gurvan\Downloads\IMG_10072012_233344.png
- [17/05/2012 19:53:08] - |A| - C:\Users\Gurvan\Downloads\IMG_17052012_195156.png
- [17/05/2012 20:07:04] - |A| - C:\Users\Gurvan\Downloads\IMG_17052012_200550.png
- [20/04/2012 22:46:09] - |A| - C:\Users\Gurvan\Downloads\IMG_20042012_224504.png
- [20/05/2012 19:44:22] - |A| - C:\Users\Gurvan\Downloads\IMG_20052012_194254.png
- [22/04/2012 03:55:21] - |A| - C:\Users\Gurvan\Downloads\IMG_22042012_035414.png
- [22/06/2012 16:56:59] - |A| - C:\Users\Gurvan\Downloads\IMG_22062012_164623.png
- [22/06/2012 16:57:02] - |A| - C:\Users\Gurvan\Downloads\IMG_22062012_165503.png
- [30/04/2012 23:20:42] - |A| - C:\Users\Gurvan\Downloads\IMG_30042012_231848.png
- [30/05/2012 20:50:17] - |A| - C:\Users\Gurvan\Downloads\IMG_30052012_204956.png
- [10/05/2012 19:42:46] - |A| - C:\Users\Gurvan\Downloads\ImprovedChat.zip
- [31/05/2012 22:06:22] - |A| - C:\Users\Gurvan\Downloads\iTunes64Setup.exe
- [16/04/2012 22:29:28] - |A| - C:\Users\Gurvan\Downloads\javafx_sdk-2_0_3-windows-x64.exe
- [25/03/2012 13:23:27] - |A| - C:\Users\Gurvan\Downloads\jd-gui-0.3.3.windows.zip
- [25/03/2012 02:11:53] - |A| - C:\Users\Gurvan\Downloads\jdk-6u30-windows-x64.exe
- [17/04/2012 01:10:59] - |A| - C:\Users\Gurvan\Downloads\jdk-7u3-windows-i586.exe
- [17/04/2012 12:35:54] - |A| - C:\Users\Gurvan\Downloads\jdk-7u3-windows-x64.exe
- [13/01/2012 23:35:55] - |D| - C:\Users\Gurvan\Downloads\Jeu
- [17/04/2012 12:29:21] - |A| - C:\Users\Gurvan\Downloads\jre-7u3-windows-x64.exe
- [13/05/2012 18:52:35] - |A| - C:\Users\Gurvan\Downloads\Kytzurack 1.zip
- [23/03/2012 16:52:25] - |A| - C:\Users\Gurvan\Downloads\Launcher Amadora.exe
- [28/02/2012 18:48:43] - |A| - C:\Users\Gurvan\Downloads\Launcher minecraft tuto.docx
- [28/02/2012 18:48:49] - |A| - C:\Users\Gurvan\Downloads\Launcher minecraft tuto2.docx
- [18/03/2012 12:31:53] - |A| - C:\Users\Gurvan\Downloads\Launcher.exe
- [09/04/2012 17:06:20] - |A| - C:\Users\Gurvan\Downloads\Le roux.png
- [28/06/2012 01:50:29] - |A| - C:\Users\Gurvan\Downloads\LeagueofLegends.exe
- [16/02/2012 22:40:02] - |A| - C:\Users\Gurvan\Downloads\LeJeuS'AppelleMinecraft.jpg
- [04/06/2012 00:02:12] - |A| - C:\Users\Gurvan\Downloads\LOIC-1.0.7.42-binary.zip
- [30/06/2012 04:09:32] - |A| - C:\Users\Gurvan\Downloads\MaConfigx64_5_2_2_0.exe
- [16/01/2012 20:06:22] - |D| - C:\Users\Gurvan\Downloads\map minecraft
- [09/04/2012 11:17:05] - |A| - C:\Users\Gurvan\Downloads\MAtmos__1_2_4_r12__WithWeaponInteractions.zip
- [14/02/2012 14:27:35] - |A| - C:\Users\Gurvan\Downloads\MAtmos__1__1_0_r10__WithWeaponInteractions.zip
- [16/04/2012 23:34:15] - |A| - C:\Users\Gurvan\Downloads\mbam-setup-1.61.0.1400.exe
- [04/03/2012 14:43:25] - |A| - C:\Users\Gurvan\Downloads\MC 1.1 - Player API client 1.2.zip
- [17/03/2012 17:11:30] - |A| - C:\Users\Gurvan\Downloads\MC 1.2.3 - Player API client 1.1.zip
- [29/04/2012 12:04:22] - |A| - C:\Users\Gurvan\Downloads\MC 1.2.5 - Player API client 1.0.zip
- [20/04/2012 18:43:27] - |A| - C:\Users\Gurvan\Downloads\MCEdit-0.1.1.win32.zip
- [04/03/2012 00:30:05] - |A| - C:\Users\Gurvan\Downloads\MCNostalgia2.1.0.zip
- [15/04/2012 22:27:16] - |A| - C:\Users\Gurvan\Downloads\mcp62.zip
- [09/01/2012 21:18:40] - |A| - C:\Users\Gurvan\Downloads\mcpatcher-2.3.0_01.exe
- [28/01/2012 19:18:07] - |A| - C:\Users\Gurvan\Downloads\mcpatcher-2.3.2.jar
- [03/03/2012 23:39:23] - |A| - C:\Users\Gurvan\Downloads\mcpatcher-2.3.4.exe
- [17/03/2012 17:13:55] - |A| - C:\Users\Gurvan\Downloads\mcpatcher-2.3.4_01.exe
- [05/04/2012 18:10:28] - |A| - C:\Users\Gurvan\Downloads\mcpatcher-2.3.5_01.exe
- [11/06/2012 20:16:12] - |A| - C:\Users\Gurvan\Downloads\mc_Hacking_tool_v4.7.rar_downloader_224a.exe
- [04/07/2012 00:53:35] - |A| - C:\Users\Gurvan\Downloads\mdr.png
- [20/03/2012 20:16:57] - |A| - C:\Users\Gurvan\Downloads\Menu_du_26.03.2012_au_30.03.2012.pdf
- [17/05/2012 18:51:13] - |A| - C:\Users\Gurvan\Downloads\Mine-ToX.png
- [19/02/2012 15:20:56] - |A| - C:\Users\Gurvan\Downloads\Minecraft Forever.rar
- [11/02/2012 02:47:29] - |A| - C:\Users\Gurvan\Downloads\Minecraft Forums Avatar Generator.exe
- [25/05/2012 20:10:41] - |A| - C:\Users\Gurvan\Downloads\Minecraft Forums Avatar Generator.zip
- [26/01/2012 19:51:01] - |A| - C:\Users\Gurvan\Downloads\Minecraft Gametype Changer.jar
- [01/02/2012 12:45:21] - |D| - C:\Users\Gurvan\Downloads\Minecraft serveur
- [29/12/2011 21:44:37] - |A| - C:\Users\Gurvan\Downloads\Minecraft-wallpaper(fr-minecraft.net)17.png
- [04/04/2012 17:01:43] - |A| - C:\Users\Gurvan\Downloads\minecraft.jar
- [18/04/2012 21:28:10] - |A| - C:\Users\Gurvan\Downloads\MinecraftForge-3.0.1.84-Source.zip
- [31/01/2012 21:17:43] - |A| - C:\Users\Gurvan\Downloads\MinecraftSP Beta.rar
- [13/06/2012 17:57:11] - |A| - C:\Users\Gurvan\Downloads\MinecraftStructurePlanner (1).jar
- [21/01/2012 16:51:18] - |A| - C:\Users\Gurvan\Downloads\MinecraftStructurePlanner.jar
- [17/03/2012 00:42:48] - |A| - C:\Users\Gurvan\Downloads\Minefield.exe
- [24/03/2012 16:54:10] - |A| - C:\Users\Gurvan\Downloads\Mineland7 - Launcher.jar
- [13/02/2012 15:05:34] - |A| - C:\Users\Gurvan\Downloads\Mister.You_Dans_Ma_Grotte.rar
- [17/04/2012 13:36:32] - |D| - C:\Users\Gurvan\Downloads\Modding
- [04/03/2012 14:43:48] - |A| - C:\Users\Gurvan\Downloads\ModLoader 1.1.zip
- [29/04/2012 12:04:10] - |A| - C:\Users\Gurvan\Downloads\ModLoader.zip
- [25/06/2012 22:52:25] - |A| - C:\Users\Gurvan\Downloads\mooki1_v2.gif
- [08/02/2012 23:40:49] - |A| - C:\Users\Gurvan\Downloads\mumble_mumble_1.2.3_francais_43179.msi
- [03/01/2012 17:27:49] - |D| - C:\Users\Gurvan\Downloads\Musique
- [15/06/2012 15:34:16] - |A| - C:\Users\Gurvan\Downloads\NBTedit.zip
- [13/05/2012 22:43:03] - |A| - C:\Users\Gurvan\Downloads\New Providence.zip
- [06/02/2012 23:01:24] - |A| - C:\Users\Gurvan\Downloads\Nolwenn Leroy - Bretonne.zip
- [27/06/2012 20:52:06] - |A| - C:\Users\Gurvan\Downloads\Nouveau dossier.rar
- [01/02/2012 12:53:04] - |A| - C:\Users\Gurvan\Downloads\npp.5.9.8.Installer.exe
- [09/02/2012 20:41:15] - |A| - C:\Users\Gurvan\Downloads\numérisation0001.pdf
- [17/04/2012 13:56:54] - |A| - C:\Users\Gurvan\Downloads\Obsidian Ingots 2.7.zip
- [18/05/2012 13:41:24] - |A| - C:\Users\Gurvan\Downloads\OppsCrasher.exe
- [14/02/2012 14:27:12] - |A| - C:\Users\Gurvan\Downloads\OptiFine_1.1_HD_A4.zip
- [13/02/2012 17:44:23] - |A| - C:\Users\Gurvan\Downloads\Orelsan+la+Terre+est+ronde.mp3
- [10/04/2012 00:51:07] - |D| - C:\Users\Gurvan\Downloads\Pack_Launcher_by_fisher01
- [10/04/2012 00:43:46] - |A| - C:\Users\Gurvan\Downloads\Pack_Launcher_by_fisher01.rar
- [09/02/2012 20:12:01] - |A| - C:\Users\Gurvan\Downloads\photofiltre_photofiltre_6.5.2_avec_toolbar_francais_10731.exe
- [26/04/2012 18:42:54] - |A| - C:\Users\Gurvan\Downloads\physique.zip
- [24/05/2012 18:26:03] - |A| - C:\Users\Gurvan\Downloads\Pieter Bruegel - La Chute d'Icare.docx
- [17/03/2012 17:25:46] - |A| - C:\Users\Gurvan\Downloads\Pipix v2.1.exe
- [09/01/2012 21:12:22] - |A| - C:\Users\Gurvan\Downloads\Pipix v2.2.exe
- [02/05/2012 17:34:15] - |A| - C:\Users\Gurvan\Downloads\Pipix v2.3.exe
- [17/02/2012 15:11:35] - |A| - C:\Users\Gurvan\Downloads\Procaster.exe
- [18/06/2012 01:32:57] - |A| - C:\Users\Gurvan\Downloads\PvPArena.zip
- [11/07/2012 00:19:37] - |A| - C:\Users\Gurvan\Downloads\pytii.bmp
- [10/02/2012 17:11:00] - |A| - C:\Users\Gurvan\Downloads\redsn0w_win_0.9.10b5.zip
- [12/07/2012 01:51:53] - |A| - C:\Users\Gurvan\Downloads\RegCureSetup_CB.exe
- [12/07/2012 02:23:04] - |A| - C:\Users\Gurvan\Downloads\ReimageRepair.exe
- [24/02/2012 16:47:10] - |A| - C:\Users\Gurvan\Downloads\répartition parole.docx
- [24/06/2012 11:58:31] - |A| - C:\Users\Gurvan\Downloads\Sans titre.png
- [02/01/2012 18:55:26] - |D| - C:\Users\Gurvan\Downloads\Schematic
- [03/06/2012 19:27:16] - |A| - C:\Users\Gurvan\Downloads\Screen cheat stelp.zip
- [24/02/2012 01:52:51] - |A| - C:\Users\Gurvan\Downloads\serv minecraft.rar
- [08/04/2012 12:45:12] - |A| - C:\Users\Gurvan\Downloads\setup.exe
- [26/05/2012 15:16:43] - |A| - C:\Users\Gurvan\Downloads\sidejacking.zip
- [28/04/2012 20:58:36] - |A| - C:\Users\Gurvan\Downloads\Silverlight.exe
- [04/07/2012 00:53:35] - |A| - C:\Users\Gurvan\Downloads\site.png
- [06/05/2012 21:43:50] - |A| - C:\Users\Gurvan\Downloads\SkyGrid (1).zip
- [06/05/2012 21:17:19] - |A| - C:\Users\Gurvan\Downloads\SkyGrid.zip
- [04/03/2012 00:36:40] - |A| - C:\Users\Gurvan\Downloads\Soartex Fanver 10.3 (1).zip
- [03/03/2012 21:43:18] - |A| - C:\Users\Gurvan\Downloads\Soartex Fanver 10.3.zip
- [28/01/2012 19:25:15] - |A| - C:\Users\Gurvan\Downloads\Soartex Fanver 9.4.0.zip
- [14/02/2012 14:26:36] - |A| - C:\Users\Gurvan\Downloads\Sonic Ether's Unbelievable Shaders v1.1.04.zip
- [11/03/2012 12:16:05] - |A| - C:\Users\Gurvan\Downloads\Spoutcraft.exe
- [07/04/2012 13:23:11] - |A| - C:\Users\Gurvan\Downloads\Spoutcraft.jar
- [12/07/2012 00:01:21] - |A| - C:\Users\Gurvan\Downloads\SpyHunter-Installer.exe
- [21/01/2012 13:57:15] - |A| - C:\Users\Gurvan\Downloads\SteamInstall_French.msi
- [12/05/2012 22:42:27] - |A| - C:\Users\Gurvan\Downloads\Stonecraft.exe
- [12/07/2012 00:00:56] - |A| - C:\Users\Gurvan\Downloads\SUPERAntiSpyware.exe
- [27/06/2012 17:12:33] - |A| - C:\Users\Gurvan\Downloads\team mine-tox sur TF2 2.rar
- [27/06/2012 17:21:47] - |A| - C:\Users\Gurvan\Downloads\team mine-tox sur TF2 3.rar
- [27/06/2012 16:53:16] - |A| - C:\Users\Gurvan\Downloads\team mine-tox sur TF2.rar
- [02/05/2012 15:46:35] - |A| - C:\Users\Gurvan\Downloads\TeamViewer_Setup_fr.exe
- [19/03/2012 12:25:31] - |A| - C:\Users\Gurvan\Downloads\The_Art_of_Anal_Sex.zip
- [25/01/2012 23:38:11] - |ASH| - C:\Users\Gurvan\Downloads\Thumbs.db
- [15/03/2012 20:28:50] - |A| - C:\Users\Gurvan\Downloads\ti83pfra.exe
- [15/03/2012 20:56:22] - |A| - C:\Users\Gurvan\Downloads\ticonnect_fra.exe
- [11/02/2012 13:55:42] - |A| - C:\Users\Gurvan\Downloads\tinyumbrella-5.10.06.exe
- [28/05/2012 00:02:46] - |A| - C:\Users\Gurvan\Downloads\Tits.png
- [12/07/2012 00:32:11] - |A| - C:\Users\Gurvan\Downloads\TooManyItems2012_04_13_1.2.5.zip
- [24/02/2012 17:04:38] - |A| - C:\Users\Gurvan\Downloads\Travaux Personnels Encadrés(1).pptx
- [24/02/2012 15:27:15] - |A| - C:\Users\Gurvan\Downloads\Travaux Personnels Encadrés.pptx
- [30/04/2012 21:22:49] - |A| - C:\Users\Gurvan\Downloads\TweetMod.rar
- [30/04/2012 21:23:08] - |A| - C:\Users\Gurvan\Downloads\TweetMod.txt
- [11/02/2012 13:57:59] - |A| - C:\Users\Gurvan\Downloads\umbrella.log
- [13/05/2012 18:28:40] - |A| - C:\Users\Gurvan\Downloads\Underground 1.1.zip
- [03/03/2012 02:01:52] - |D| - C:\Users\Gurvan\Downloads\Vidéo WorldCraftors
- [12/07/2012 01:28:42] - |A| - C:\Users\Gurvan\Downloads\VundoFix.exe
- [17/06/2012 19:39:54] - |A| - C:\Users\Gurvan\Downloads\Wall of Fury by Wreckage.zip
- [22/02/2012 01:46:56] - |A| - C:\Users\Gurvan\Downloads\web.zip
- [12/07/2012 18:43:29] - |A| - C:\Users\Gurvan\Downloads\winlogon.exe
- [20/03/2012 23:59:56] - |A| - C:\Users\Gurvan\Downloads\winrar-x64-411fr-Corporate.exe
- [24/02/2012 03:50:58] - |A| - C:\Users\Gurvan\Downloads\world.rar
- [05/04/2012 18:58:07] - |A| - C:\Users\Gurvan\Downloads\WorldEditCUI-1.2.zip
- [30/03/2012 22:59:35] - |A| - C:\Users\Gurvan\Downloads\worldpainter_64_0.6.11.exe
- [24/02/2012 03:52:38] - |A| - C:\Users\Gurvan\Downloads\world_nether.rar
- [13/06/2012 14:11:10] - |A| - C:\Users\Gurvan\Downloads\wubwub.zip
- [06/05/2012 00:04:57] - |A| - C:\Users\Gurvan\Downloads\X-Ray.zip
- [31/05/2012 22:34:10] - |A| - C:\Users\Gurvan\Downloads\[Ultimate-Team]Flo Rida - Whistle.upbymaxougta.mp3
- [13/02/2012 14:19:23] - |A| - C:\Users\Gurvan\Downloads\_Ultimate-Team_David_Guetta_ft._Nicki_Minaj_-_Turn_Me_On.upbymaxougta.mp3
- ¤¤¤¤¤¤¤¤¤¤ | StartMenu
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
- [28/12/2011 23:16:53] - |SH| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
- [14/07/2009 07:01:14] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
- [14/07/2009 06:49:40] - |ASH| - C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini
- [17/02/2012 15:32:53] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Livestream Procaster.lnk
- [28/12/2011 23:50:23] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Program Updates.lnk
- [28/12/2011 23:16:20] - |SHD| - C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
- [14/07/2009 05:20:08] - |RD| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs
- [14/07/2009 06:49:40] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
- ¤¤¤¤¤¤¤¤¤¤ | StartMenu\Programs
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
- [28/12/2011 23:16:53] - |RD| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
- [23/04/2012 21:29:45] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Clownfish
- [28/12/2011 23:16:53] - |SH| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini
- [08/04/2012 12:46:45] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dofus2
- [24/03/2012 16:49:43] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
- [29/04/2012 17:18:55] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps
- [29/12/2011 21:27:45] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
- [28/12/2011 23:16:58] - |A| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
- [28/12/2011 23:16:31] - |RD| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
- [02/01/2012 18:54:52] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MCEdit
- [02/05/2012 16:15:09] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC
- [01/02/2012 12:55:28] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
- [09/02/2012 20:12:31] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
- [28/12/2011 23:16:53] - |RD| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
- [21/01/2012 14:28:31] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
- [15/03/2012 20:30:14] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TI-Graph Link - Français
- [21/03/2012 00:04:44] - |D| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
- [14/07/2009 05:20:08] - |RD| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
- [10/07/2012 00:27:11] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ace of Spades
- [14/07/2009 07:32:38] - |RD| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
- [15/03/2012 19:17:37] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
- [29/06/2012 11:21:47] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
- [03/01/2012 17:27:39] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
- [06/02/2012 23:05:41] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto Shut Down
- [29/12/2011 11:52:34] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
- [23/04/2012 21:29:45] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clownfish
- [04/03/2012 22:43:34] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CraftBukkit Server
- [29/12/2011 20:45:33] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
- [14/07/2009 06:54:23] - |SH| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini
- [08/04/2012 12:46:45] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dofus2
- [29/12/2011 13:04:42] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasySetPackage
- [26/05/2012 15:38:14] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
- [22/01/2012 04:16:17] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FM Genie Scout 12
- [01/01/2012 17:02:26] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FMRTE
- [14/07/2009 07:32:38] - |RD| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
- [21/04/2012 16:25:31] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP
- [30/04/2012 21:55:01] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
- [31/05/2012 22:26:31] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
- [17/02/2012 15:32:52] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Livestream Procaster
- [28/06/2012 09:57:10] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
- [30/06/2012 04:11:57] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
- [14/07/2009 05:20:08] - |RD| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
- [16/04/2012 23:40:25] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
- [29/12/2011 06:13:41] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
- [30/12/2011 03:45:53] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
- [16/06/2012 11:25:14] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
- [29/12/2011 11:45:16] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
- [28/12/2011 23:40:49] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
- [08/02/2012 23:42:59] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
- [28/06/2012 12:25:25] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewFeature1
- [01/02/2012 12:55:28] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
- [09/02/2012 20:12:31] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
- [17/02/2012 21:44:48] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
- [30/12/2011 17:38:39] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEGA
- [30/12/2011 03:45:53] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
- [14/07/2009 06:57:08] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
- [24/03/2012 12:14:51] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
- [14/07/2009 05:20:08] - |RD| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
- [21/01/2012 14:17:18] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
- [14/07/2009 17:35:05] - |RHD| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
- [29/12/2011 20:24:24] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
- [02/05/2012 15:48:21] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 7.lnk
- [15/03/2012 20:57:37] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TI Tools
- [15/03/2012 20:30:14] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TI-Graph Link - Français
- [29/12/2011 21:48:46] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2012
- [29/12/2011 21:48:46] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2012.lnk
- [14/07/2009 06:57:09] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
- [29/12/2011 06:13:34] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
- [14/07/2009 06:54:59] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
- [18/02/2012 00:58:21] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk
- [14/07/2009 06:57:06] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
- [21/03/2012 00:04:44] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
- [30/03/2012 23:03:34] - |D| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldPainter
- [14/07/2009 06:57:08] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
- ¤¤¤¤¤¤¤¤¤¤ | StartMenu\Programs\Startup
- [28/12/2011 23:16:53] - |SH| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
- [24/03/2012 16:49:50] - |A| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
- [02/05/2012 16:15:09] - |A| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DUC 3.0.lnk
- [13/06/2012 14:39:43] - |A| - C:\Users\Gurvan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 - Capture d’écran et lancement.lnk
- [14/07/2009 06:54:23] - |SH| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
- [29/12/2011 13:04:43] - |A| - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\EasySetPackage.lnk
- ¤¤¤¤¤¤¤¤¤¤ | AppData
- [14/07/2009 06:48:33] - |SD| - C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft
- [14/07/2009 06:45:47] - |SD| - C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft
- [29/12/2011 20:17:50] - |D| - C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\PeerNetworking
- [14/07/2009 06:45:47] - |SD| - C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft
- [23/03/2012 16:52:29] - |D| - C:\Users\Gurvan\AppData\Roaming\.amadora
- [21/03/2012 14:46:49] - |D| - C:\Users\Gurvan\AppData\Roaming\.darwam
- [19/06/2012 23:02:38] - |D| - C:\Users\Gurvan\AppData\Roaming\.minecraft
- [19/06/2012 23:00:48] - |D| - C:\Users\Gurvan\AppData\Roaming\.minecraft - Copie (2)
- [24/03/2012 16:54:12] - |D| - C:\Users\Gurvan\AppData\Roaming\.mineland7
- [14/02/2012 21:41:23] - |D| - C:\Users\Gurvan\AppData\Roaming\.Nitrous
- [02/01/2012 22:04:50] - |D| - C:\Users\Gurvan\AppData\Roaming\.spoutcraft
- [18/03/2012 12:31:56] - |D| - C:\Users\Gurvan\AppData\Roaming\.thecraft
- [29/12/2011 12:43:07] - |D| - C:\Users\Gurvan\AppData\Roaming\Adobe
- [27/06/2012 11:43:54] - |D| - C:\Users\Gurvan\AppData\Roaming\AnkamaCertificates
- [03/01/2012 17:29:35] - |D| - C:\Users\Gurvan\AppData\Roaming\Apple Computer
- [28/12/2011 23:27:36] - |D| - C:\Users\Gurvan\AppData\Roaming\ATI
- [29/12/2011 12:03:16] - |D| - C:\Users\Gurvan\AppData\Roaming\Avira
- [27/06/2012 00:32:15] - |A| - C:\Users\Gurvan\AppData\Roaming\Blacklog
- [20/03/2012 00:06:11] - |D| - C:\Users\Gurvan\AppData\Roaming\BukkitPluginCreator
- [20/06/2012 20:32:07] - |A| - C:\Users\Gurvan\AppData\Roaming\D2Info0
- [29/12/2011 20:44:55] - |D| - C:\Users\Gurvan\AppData\Roaming\DAEMON Tools Lite
- [20/06/2012 20:32:07] - |D| - C:\Users\Gurvan\AppData\Roaming\Dofus-2.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
- [26/06/2012 00:05:33] - |D| - C:\Users\Gurvan\AppData\Roaming\Dofus-3.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
- [20/06/2012 21:35:47] - |D| - C:\Users\Gurvan\AppData\Roaming\Dofus.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
- [20/06/2012 20:32:07] - |D| - C:\Users\Gurvan\AppData\Roaming\Dofus2
- [20/06/2012 21:35:47] - |A| - C:\Users\Gurvan\AppData\Roaming\DofusAppId0_1
- [20/06/2012 20:32:07] - |A| - C:\Users\Gurvan\AppData\Roaming\DofusAppId0_2
- [26/06/2012 00:05:33] - |A| - C:\Users\Gurvan\AppData\Roaming\DofusAppId0_3
- [24/03/2012 16:49:23] - |D| - C:\Users\Gurvan\AppData\Roaming\Dropbox
- [26/05/2012 15:38:20] - |D| - C:\Users\Gurvan\AppData\Roaming\FileZilla
- [21/04/2012 16:27:20] - |D| - C:\Users\Gurvan\AppData\Roaming\gtk-2.0
- [28/12/2011 23:16:45] - |D| - C:\Users\Gurvan\AppData\Roaming\Identities
- [29/06/2012 19:50:29] - |D| - C:\Users\Gurvan\AppData\Roaming\LolClient
- [28/06/2012 20:35:08] - |D| - C:\Users\Gurvan\AppData\Roaming\LolClient2
- [29/12/2011 12:43:07] - |D| - C:\Users\Gurvan\AppData\Roaming\Macromedia
- [16/04/2012 23:40:29] - |D| - C:\Users\Gurvan\AppData\Roaming\Malwarebytes
- [28/12/2011 23:16:31] - |D| - C:\Users\Gurvan\AppData\Roaming\Media Center Programs
- [28/12/2011 23:16:31] - |SD| - C:\Users\Gurvan\AppData\Roaming\Microsoft
- [29/12/2011 11:45:20] - |D| - C:\Users\Gurvan\AppData\Roaming\Mozilla
- [08/02/2012 23:45:53] - |D| - C:\Users\Gurvan\AppData\Roaming\Mumble
- [16/01/2012 20:17:13] - |A| - C:\Users\Gurvan\AppData\Roaming\MyCraft.zip
- [01/02/2012 12:55:25] - |D| - C:\Users\Gurvan\AppData\Roaming\Notepad++
- [29/12/2011 13:56:14] - |D| - C:\Users\Gurvan\AppData\Roaming\OpenOffice.org
- [29/12/2011 21:35:25] - |D| - C:\Users\Gurvan\AppData\Roaming\PunkBuster
- [02/01/2012 18:58:20] - |D| - C:\Users\Gurvan\AppData\Roaming\pymclevel
- [03/01/2012 23:26:48] - |D| - C:\Users\Gurvan\AppData\Roaming\redsn0w
- [20/06/2012 20:32:09] - |D| - C:\Users\Gurvan\AppData\Roaming\Reg.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
- [18/02/2012 00:40:44] - |RHD| - C:\Users\Gurvan\AppData\Roaming\SecuROM
- [02/01/2012 19:36:22] - |D| - C:\Users\Gurvan\AppData\Roaming\Skype
- [30/12/2011 17:42:32] - |D| - C:\Users\Gurvan\AppData\Roaming\Sports Interactive
- [29/12/2011 20:25:31] - |D| - C:\Users\Gurvan\AppData\Roaming\TS3Client
- [06/02/2012 20:19:53] - |D| - C:\Users\Gurvan\AppData\Roaming\ts3overlay
- [29/12/2011 21:48:38] - |D| - C:\Users\Gurvan\AppData\Roaming\TuneUp Software
- [03/01/2012 19:16:20] - |D| - C:\Users\Gurvan\AppData\Roaming\WindSolutions
- [29/12/2011 11:57:39] - |D| - C:\Users\Gurvan\AppData\Roaming\WinRAR
- [11/06/2012 20:17:31] - |D| - C:\Users\Gurvan\AppData\Roaming\YourFileDownloader
- ¤¤¤¤¤¤¤¤¤¤ | CommonAppData
- [28/12/2011 23:45:53] - |D| - C:\ProgramData\Adobe
- [28/12/2011 23:25:38] - |D| - C:\ProgramData\AMD
- [03/01/2012 17:27:02] - |D| - C:\ProgramData\Apple
- [03/01/2012 17:28:24] - |D| - C:\ProgramData\Apple Computer
- [14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Application Data
- [29/06/2012 11:22:33] - |D| - C:\ProgramData\ATI
- [29/12/2011 11:52:27] - |D| - C:\ProgramData\Avira
- [28/12/2011 23:16:20] - |SHD| - C:\ProgramData\Bureau
- [29/12/2011 20:44:52] - |D| - C:\ProgramData\DAEMON Tools Lite
- [14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Desktop
- [14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Documents
- [28/12/2011 23:16:20] - |SHD| - C:\ProgramData\Favoris
- [14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Favorites
- [28/12/2011 23:50:22] - |D| - C:\ProgramData\InstallShield
- [30/06/2012 04:11:56] - |D| - C:\ProgramData\ma-config.com
- [16/04/2012 23:40:24] - |D| - C:\ProgramData\Malwarebytes
- [28/12/2011 23:16:20] - |SHD| - C:\ProgramData\Menu Démarrer
- [14/07/2009 05:20:08] - |SD| - C:\ProgramData\Microsoft
- [30/12/2011 03:41:20] - |D| - C:\ProgramData\Microsoft Help
- [28/12/2011 23:16:20] - |SHD| - C:\ProgramData\Modèles
- [28/06/2012 01:51:21] - |D| - C:\ProgramData\PMB Files
- [18/02/2012 01:16:43] - |SHD| - C:\ProgramData\SecuROM
- [02/01/2012 19:36:13] - |D| - C:\ProgramData\Skype
- [14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Start Menu
- [29/12/2011 12:00:09] - |D| - C:\ProgramData\Sun
- [14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Templates
- [29/12/2011 21:48:10] - |D| - C:\ProgramData\TuneUp Software
- [29/12/2011 22:10:03] - |D| - C:\ProgramData\Ubisoft
- [03/01/2012 19:15:54] - |D| - C:\ProgramData\WindSolutions
- [29/12/2011 21:47:33] - |SHD| - C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
- [03/01/2012 17:28:24] - |D| - C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
- ¤¤¤¤¤¤¤¤¤¤ | LocalAppData
- [30/12/2011 00:47:44] - |D| - C:\Windows\system32\config\systemprofile\AppData\Local\LogMeIn Hamachi
- [14/07/2009 06:49:37] - |D| - C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft
- [29/12/2011 12:51:07] - |A| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-4232414852-395253565-4101861292-1000-12288.dat
- [29/12/2011 13:08:27] - |A| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-4232414852-395253565-4101861292-1000-8192.dat
- [14/07/2009 07:01:48] - |A| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
- [28/12/2011 23:50:32] - |A| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- [12/07/2012 15:14:27] - |ASH| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- [12/07/2012 15:14:27] - |ASH| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft
- [29/12/2011 20:19:55] - |D| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\PnrpSqm
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft
- [14/07/2009 06:45:47] - |D| - C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp
- [19/01/2012 20:39:25] - |D| - C:\Users\Gurvan\AppData\Local\Adobe
- [28/12/2011 23:27:50] - |D| - C:\Users\Gurvan\AppData\Local\AMD
- [03/01/2012 17:27:41] - |D| - C:\Users\Gurvan\AppData\Local\Apple
- [03/01/2012 17:29:36] - |D| - C:\Users\Gurvan\AppData\Local\Apple Computer
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\AppData\Local\Application Data
- [28/12/2011 23:27:36] - |D| - C:\Users\Gurvan\AppData\Local\ATI
- [30/12/2011 17:50:54] - |D| - C:\Users\Gurvan\AppData\Local\Chromium
- [17/02/2012 15:35:59] - |D| - C:\Users\Gurvan\AppData\Local\CrashRpt
- [30/12/2011 17:40:28] - |D| - C:\Users\Gurvan\AppData\Local\Diagnostics
- [01/02/2012 19:09:35] - |D| - C:\Users\Gurvan\AppData\Local\Eclipse
- [28/12/2011 23:27:53] - |A| - C:\Users\Gurvan\AppData\Local\GDIPFONTCACHEV1.DAT
- [29/12/2011 21:26:38] - |D| - C:\Users\Gurvan\AppData\Local\Google
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\AppData\Local\Historique
- [06/07/2012 03:20:00] - |AH| - C:\Users\Gurvan\AppData\Local\IconCache.db
- [30/12/2011 00:47:52] - |D| - C:\Users\Gurvan\AppData\Local\LogMeIn Hamachi
- [18/06/2012 14:38:30] - |D| - C:\Users\Gurvan\AppData\Local\Macromedia
- [02/01/2012 18:54:51] - |D| - C:\Users\Gurvan\AppData\Local\MCEdit
- [28/12/2011 23:16:31] - |D| - C:\Users\Gurvan\AppData\Local\Microsoft
- [16/02/2012 23:49:28] - |D| - C:\Users\Gurvan\AppData\Local\Microsoft Games
- [30/12/2011 03:41:24] - |D| - C:\Users\Gurvan\AppData\Local\Microsoft Help
- [08/04/2012 17:18:58] - |D| - C:\Users\Gurvan\AppData\Local\MoritzSchmale
- [29/12/2011 11:45:20] - |D| - C:\Users\Gurvan\AppData\Local\Mozilla
- [08/02/2012 23:45:52] - |D| - C:\Users\Gurvan\AppData\Local\Mumble
- [12/01/2012 20:55:43] - |D| - C:\Users\Gurvan\AppData\Local\My Games
- [28/06/2012 01:51:22] - |D| - C:\Users\Gurvan\AppData\Local\PMB Files
- [17/02/2012 15:32:52] - |D| - C:\Users\Gurvan\AppData\Local\Procaster
- [18/02/2012 00:42:51] - |D| - C:\Users\Gurvan\AppData\Local\Rockstar Games
- [30/12/2011 17:42:34] - |D| - C:\Users\Gurvan\AppData\Local\SKIDROW
- [30/12/2011 17:42:32] - |D| - C:\Users\Gurvan\AppData\Local\Sports Interactive
- [28/12/2011 23:16:31] - |D| - C:\Users\Gurvan\AppData\Local\Temp
- [28/12/2011 23:16:32] - |SHD| - C:\Users\Gurvan\AppData\Local\Temporary Internet Files
- [29/12/2011 22:10:04] - |D| - C:\Users\Gurvan\AppData\Local\Ubisoft Game Launcher
- [28/12/2011 23:16:42] - |D| - C:\Users\Gurvan\AppData\Local\VirtualStore
- [06/06/2012 00:49:53] - |D| - C:\Users\Gurvan\AppData\Local\Virus_Maker
- [02/05/2012 16:15:45] - |D| - C:\Users\Gurvan\AppData\Local\Vitalwerks
- ¤¤¤¤¤¤¤¤¤¤ | ProgramFiles
- [15/03/2012 19:17:23] - |D| - C:\Program Files (x86)\Adobe
- [21/03/2012 13:51:42] - |D| - C:\Program Files (x86)\AMD
- [29/06/2012 11:22:01] - |D| - C:\Program Files (x86)\AMD APP
- [04/05/2012 16:45:27] - |D| - C:\Program Files (x86)\AMD AVT
- [03/01/2012 17:27:39] - |D| - C:\Program Files (x86)\Apple Software Update
- [28/12/2011 23:24:59] - |D| - C:\Program Files (x86)\ATI Technologies
- [06/02/2012 23:05:40] - |D| - C:\Program Files (x86)\Auto Shut Down
- [29/12/2011 11:52:27] - |D| - C:\Program Files (x86)\Avira
- [03/01/2012 17:27:11] - |D| - C:\Program Files (x86)\Bonjour
- [23/04/2012 21:29:44] - |D| - C:\Program Files (x86)\Clownfish
- [14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files
- [29/12/2011 20:45:31] - |D| - C:\Program Files (x86)\DAEMON Tools Lite
- [14/07/2009 06:54:24] - |ASH| - C:\Program Files (x86)\desktop.ini
- [08/04/2012 12:47:14] - |D| - C:\Program Files (x86)\Dofus
- [08/04/2012 12:46:45] - |D| - C:\Program Files (x86)\Dofus2
- [26/05/2012 15:38:12] - |D| - C:\Program Files (x86)\FileZilla FTP Client
- [21/04/2012 16:25:03] - |D| - C:\Program Files (x86)\GIMP-2.0
- [30/04/2012 21:53:54] - |D| - C:\Program Files (x86)\Google
- [28/12/2011 23:38:26] - |HD| - C:\Program Files (x86)\InstallShield Installation Information
- [14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Internet Explorer
- [31/05/2012 22:25:56] - |D| - C:\Program Files (x86)\iTunes
- [04/03/2012 22:49:12] - |D| - C:\Program Files (x86)\Java
- [29/12/2011 13:04:43] - |D| - C:\Program Files (x86)\LG Soft India
- [17/02/2012 15:32:52] - |D| - C:\Program Files (x86)\Livestream Procaster
- [28/06/2012 09:57:10] - |D| - C:\Program Files (x86)\LogMeIn Hamachi
- [16/04/2012 23:40:23] - |D| - C:\Program Files (x86)\Malwarebytes' Anti-Malware
- [30/12/2011 03:41:46] - |D| - C:\Program Files (x86)\Microsoft Analysis Services
- [18/02/2012 00:20:53] - |D| - C:\Program Files (x86)\Microsoft Games for Windows - LIVE
- [30/12/2011 03:41:23] - |D| - C:\Program Files (x86)\Microsoft Office
- [16/06/2012 11:24:00] - |D| - C:\Program Files (x86)\Microsoft Silverlight
- [30/12/2011 03:42:30] - |D| - C:\Program Files (x86)\Microsoft Visual Studio 8
- [29/12/2011 13:03:27] - |D| - C:\Program Files (x86)\Microsoft.NET
- [29/12/2011 11:45:15] - |D| - C:\Program Files (x86)\Mozilla Firefox
- [14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\MSBuild
- [28/12/2011 23:40:47] - |D| - C:\Program Files (x86)\MSI
- [08/02/2012 23:42:57] - |D| - C:\Program Files (x86)\Mumble
- [02/05/2012 16:15:08] - |D| - C:\Program Files (x86)\No-IP
- [01/02/2012 12:55:25] - |D| - C:\Program Files (x86)\Notepad++
- [29/12/2011 12:00:39] - |D| - C:\Program Files (x86)\OpenOffice.org 3
- [28/06/2012 01:50:48] - |D| - C:\Program Files (x86)\Pando Networks
- [09/02/2012 20:12:30] - |D| - C:\Program Files (x86)\PhotoFiltre
- [28/12/2011 23:38:26] - |D| - C:\Program Files (x86)\Realtek
- [14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Reference Assemblies
- [12/07/2012 02:24:09] - |D| - C:\Program Files (x86)\ReImageCompanion
- [17/02/2012 23:56:09] - |D| - C:\Program Files (x86)\Rockstar Games
- [17/02/2012 21:44:48] - |D| - C:\Program Files (x86)\Rockstar Games Social Club
- [30/12/2011 17:35:38] - |D| - C:\Program Files (x86)\SEGA
- [02/01/2012 19:36:17] - |RD| - C:\Program Files (x86)\Skype
- [21/01/2012 14:17:18] - |D| - C:\Program Files (x86)\Steam
- [29/12/2011 20:24:20] - |D| - C:\Program Files (x86)\TeamSpeak 3 Client
- [02/05/2012 15:48:17] - |D| - C:\Program Files (x86)\TeamViewer
- [28/12/2011 23:39:26] - |HD| - C:\Program Files (x86)\Temp
- [15/03/2012 20:28:37] - |D| - C:\Program Files (x86)\TI Education
- [29/12/2011 21:48:32] - |D| - C:\Program Files (x86)\TuneUp Utilities 2012
- [29/12/2011 12:12:32] - |D| - C:\Program Files (x86)\Ubisoft
- [14/07/2009 06:57:06] - |HD| - C:\Program Files (x86)\Uninstall Information
- [14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Defender
- [14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Windows Mail
- [14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Media Player
- [14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Windows NT
- [14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Photo Viewer
- [14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Portable Devices
- [14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Sidebar
- [11/06/2012 20:17:31] - |D| - C:\Program Files (x86)\YourFileDownloader
- ¤¤¤¤¤¤¤¤¤¤ | CommonFiles
- [15/03/2012 19:17:23] - |D| - C:\Program Files (x86)\Common Files\Adobe
- [08/04/2012 12:46:42] - |D| - C:\Program Files (x86)\Common Files\Adobe AIR
- [03/01/2012 17:27:02] - |D| - C:\Program Files (x86)\Common Files\Apple
- [28/12/2011 23:26:17] - |D| - C:\Program Files (x86)\Common Files\ATI Technologies
- [28/12/2011 23:39:22] - |D| - C:\Program Files (x86)\Common Files\InstallShield
- [04/03/2012 22:49:29] - |D| - C:\Program Files (x86)\Common Files\Java
- [14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files\microsoft shared
- [14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files\Services
- [24/03/2012 12:14:51] - |D| - C:\Program Files (x86)\Common Files\Skype
- [14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files\SpeechEngines
- [29/12/2011 20:35:00] - |D| - C:\Program Files (x86)\Common Files\Steam
- [14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files\System
- [15/03/2012 20:57:35] - |D| - C:\Program Files (x86)\Common Files\TI Shared
- [15/03/2012 20:56:34] - |D| - C:\Program Files (x86)\Common Files\Wise Installation Wizard
- ¤¤¤¤¤¤¤¤¤¤ | Tasks
- [28/05/2012 10:33:52] - |A| - C:\Windows\Tasks\Adobe Flash Player Updater.job
- [30/04/2012 21:53:56] - |A| - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
- [30/04/2012 21:53:56] - |A| - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
- [29/12/2011 21:26:39] - |A| - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4232414852-395253565-4101861292-1000Core.job
- [29/12/2011 21:26:39] - |A| - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4232414852-395253565-4101861292-1000UA.job
- [14/07/2009 07:08:49] - |AH| - C:\Windows\Tasks\SA.DAT
- [14/07/2009 07:08:49] - |A| - C:\Windows\Tasks\SCHEDLGU.TXT
- ¤¤¤¤¤¤¤¤¤¤ | Firewall
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[SSTP-IN-TCP] : v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=443|App=System|[email protected],-35002|[email protected],-35003|[email protected],-35001|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[Netlogon-NamedPipe-In] : v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=445|App=System|[email protected],-1003|[email protected],-1006|[email protected],-1010|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[SNMPTRAP-In-UDP] : v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=162|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|[email protected],-7|[email protected],-8|[email protected],-3|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[SNMPTRAP-In-UDP-NoScope] : v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=162|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|[email protected],-7|[email protected],-8|[email protected],-3|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{8A4D1684-4518-4897-995F-5312078E3A23}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Far Cry 2\bin\FarCry2.exe|Name=Far Cry 2|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{7D076423-7870-4FA2-9D8B-B5E72F5ACC2A}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Far Cry 2\bin\FarCry2.exe|Name=Far Cry 2|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{4A3AB10E-7D05-4EFA-99AA-CC988BD67D68}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Far Cry 2\bin\FC2Launcher.exe|Name=Far Cry 2 Updater|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{DA4F760A-3309-4CFC-98A9-9FF61660BC4D}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Far Cry 2\bin\FC2Launcher.exe|Name=Far Cry 2 Updater|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{1E91C33F-C6FE-43B9-BE44-CB5D86DD839C}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Far Cry 2\bin\FC2Editor.exe|Name=Editeur|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{9F6171E0-2167-4BD4-AF63-A0497643E9F5}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Far Cry 2\bin\FC2Editor.exe|Name=Editeur|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[TCP Query User{7D00204A-57CC-4BC0-BC9E-4EE04F42A2E9}C:\program files (x86)\ubisoft\far cry 2\bin\farcry2.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files (x86)\ubisoft\far cry 2\bin\farcry2.exe|Name=Far Cry® 2|Desc=Far Cry® 2|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[UDP Query User{7A1C376D-A663-4715-8C3A-5DF0DA075ABC}C:\program files (x86)\ubisoft\far cry 2\bin\farcry2.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files (x86)\ubisoft\far cry 2\bin\farcry2.exe|Name=Far Cry® 2|Desc=Far Cry® 2|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{DC2912EB-07EC-4AA9-BFFF-E3D7A26E3D8F}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe|Name=Ubisoft Game Launcher|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{CB4FA722-E514-4947-9443-79162DBF7E29}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe|Name=Ubisoft Game Launcher|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{256C3D90-AD27-42DE-8FC9-4F09372A4749}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Windows\SysWOW64\PnkBstrA.exe|Name=PnkBstrA|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{737368C4-6EA4-44C0-9461-59783C103C13}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Windows\SysWOW64\PnkBstrA.exe|Name=PnkBstrA|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{66A27979-77E6-49A5-8380-3FB0B3BC4FE2}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Windows\SysWOW64\PnkBstrB.exe|Name=PnkBstrB|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{4A5FE3A5-09C6-4CD8-A456-6D8D689D7A03}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Windows\SysWOW64\PnkBstrB.exe|Name=PnkBstrB|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{0FBDB48F-EC24-4850-8882-5D4BB7420C04}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe|Name=Assassin's Creed Revelations|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{BF15DB1C-230E-4DC0-896D-54869698A34B}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe|Name=Assassin's Creed Revelations|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{A657AC4A-7CAF-4A6F-9A98-AD32069FC085}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe|Name=Assassin's Creed Revelations Multiplayer|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{125CF87F-DE3A-4E4D-A5BC-569DBCD63EC6}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe|Name=Assassin's Creed Revelations Multiplayer|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{F8C6C421-6264-491F-A394-1AFA4087592A}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe|Name=Assassin's Creed Revelations Update|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{FCC92755-95FB-4961-8254-606A077ED136}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe|Name=Assassin's Creed Revelations Update|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{9E9FF63E-CBAD-4946-91F1-12E5F0E87724}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files\Microsoft Office\Office14\GROOVE.EXE|Name=Microsoft SharePoint Workspace|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{BAD379B7-53F8-4E5F-AB6F-EB148F5B152A}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files\Microsoft Office\Office14\GROOVE.EXE|Name=Microsoft SharePoint Workspace|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{DBC29373-8980-4545-862C-822ACE96990E}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE|Name=Microsoft OneNote|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{706A0BA1-908A-4AF3-BC0E-A610D4849825}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE|Name=Microsoft OneNote|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{B75818EC-E00A-4E02-B620-4F2C259EE2FA}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=6004|App=C:\Program Files\Microsoft Office\Office14\outlook.exe|Name=Microsoft Office Outlook|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[TCP Query User{4064FACA-B277-4A6D-AA15-C40E6373BD8E}C:\windows\kmsemulator.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|Profile=Public|App=C:\windows\kmsemulator.exe|Name=KMSEmulator|Desc=KMSEmulator|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[UDP Query User{5D8B3273-822C-498A-A629-D99D5DCBC303}C:\windows\kmsemulator.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|Profile=Public|App=C:\windows\kmsemulator.exe|Name=KMSEmulator|Desc=KMSEmulator|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{783F17D1-4F8F-4C4E-AAFE-752F7BC2EE77}] : v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Skype\Phone\Skype.exe|Name=Skype|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{15B20711-8FAE-4373-9E05-0E067156CD59}] : v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe|Name=WebKit|Edge=TRUE|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{C78ACA9A-6464-45D1-849D-911A2F62494C}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files\Bonjour\mDNSResponder.exe|Name=Service Bonjour|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{7D9D3232-EE4A-40F3-AE40-5A887BF8B2B8}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files\Bonjour\mDNSResponder.exe|Name=Service Bonjour|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{6D7F3F12-4B1F-4331-8C5C-4B740CB6F811}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Bonjour\mDNSResponder.exe|Name=Service Bonjour|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{B8C5BAB7-7BC9-4CBB-A363-826EBA291A20}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Bonjour\mDNSResponder.exe|Name=Service Bonjour|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{45BFF363-4D1D-4191-96D5-02D43EBAC5B6}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Steam\Steam.exe|Name=Steam|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{2C093C9C-6CCC-4B69-8FAE-F672FCEF0358}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Steam\Steam.exe|Name=Steam|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[TCP Query User{39F39892-BE63-47F7-97C3-4455D151EDDE}C:\program files (x86)\java\jre6\bin\java.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files (x86)\java\jre6\bin\java.exe|Name=Java(TM) Platform SE binary|Desc=Java(TM) Platform SE binary|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[UDP Query User{2A921DC2-023F-43CA-9EBE-A1CC9D3D63CF}C:\program files (x86)\java\jre6\bin\java.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files (x86)\java\jre6\bin\java.exe|Name=Java(TM) Platform SE binary|Desc=Java(TM) Platform SE binary|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{D5430228-F05A-480C-BED6-96D64CC90AED}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Users\Gurvan\Downloads\tinyumbrella-5.10.06.exe|Name=TinyUmbrella - Save your SHSH!|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{5D3B874F-5495-440E-A3AA-A71EDB21C8B9}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Users\Gurvan\Downloads\tinyumbrella-5.10.06.exe|Name=TinyUmbrella - Save your SHSH!|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{DED22A47-85E8-40CE-8720-9344ED8395CD}] : v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=C:\Users\Gurvan\Downloads\tinyumbrella-5.10.06.exe|Name=TinyUmbrella - Save your SHSH!|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{1C16698B-903D-4DCB-BF66-C1045970E491}] : v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=C:\Users\Gurvan\Downloads\tinyumbrella-5.10.06.exe|Name=TinyUmbrella - Save your SHSH!|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{CA74F7AC-2897-4DEA-BDF7-CCD15757AE29}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe|Name=Grand Theft Auto IV|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{614D66A8-FFF3-4395-B996-C370B1A2E73A}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe|Name=Grand Theft Auto IV|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[TCP Query User{F9578617-57DB-46CD-BE1E-FC5993CAE843}C:\program files (x86)\rockstar games\grand theft auto iv\gtaiv.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files (x86)\rockstar games\grand theft auto iv\gtaiv.exe|Name=Grand Theft Auto IV|Desc=Grand Theft Auto IV|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[UDP Query User{AFF892E8-55E5-4DF8-8DE9-9DF46A3B9347}C:\program files (x86)\rockstar games\grand theft auto iv\gtaiv.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files (x86)\rockstar games\grand theft auto iv\gtaiv.exe|Name=Grand Theft Auto IV|Desc=Grand Theft Auto IV|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[TCP Query User{7D92FEE4-4A19-4232-948E-6731A71A16F9}C:\program files (x86)\java\jre6\bin\javaw.exe] : v2.10|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files (x86)\java\jre6\bin\javaw.exe|Name=Java(TM) Platform SE binary|Desc=Java(TM) Platform SE binary|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[UDP Query User{0C4F0FDF-55F3-4AC4-B6E0-AA20DE44C686}C:\program files (x86)\java\jre6\bin\javaw.exe] : v2.10|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files (x86)\java\jre6\bin\javaw.exe|Name=Java(TM) Platform SE binary|Desc=Java(TM) Platform SE binary|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{B74CB2D6-EFC9-48A2-8522-95882DC5E680}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Users\Gurvan\AppData\Roaming\Dropbox\bin\Dropbox.exe|Name=Dropbox|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{FE6EBC90-0032-4A5D-901C-2CC3BF686453}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Users\Gurvan\AppData\Roaming\Dropbox\bin\Dropbox.exe|Name=Dropbox|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[TCP Query User{C4691ADA-CC25-44FA-8787-69649377A4C0}C:\users\gurvan\appdata\roaming\dropbox\bin\dropbox.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\gurvan\appdata\roaming\dropbox\bin\dropbox.exe|Name=dropbox.exe|Desc=dropbox.exe|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[UDP Query User{964BDDF7-95F4-4CA2-A33F-E33CAB755ECF}C:\users\gurvan\appdata\roaming\dropbox\bin\dropbox.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\gurvan\appdata\roaming\dropbox\bin\dropbox.exe|Name=dropbox.exe|Desc=dropbox.exe|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{A1D88CCE-0962-41DA-8643-9AC4DD40F094}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Users\Gurvan\Desktop\Minecraft.exe|Name=Minecraft|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{9C935973-9683-4F2B-862C-BA7B9B6B02A7}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Users\Gurvan\Desktop\Minecraft.exe|Name=Minecraft|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{4812B4A6-5A7B-4F55-AF78-6CC455F0F2CE}] : v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=C:\Users\Gurvan\Desktop\Minecraft.exe|Name=Minecraft|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{0B3A7F5B-92DB-4321-BDAD-F264F8AA8522}] : v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=C:\Users\Gurvan\Desktop\Minecraft.exe|Name=Minecraft|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{C2CA7BB2-E97D-481A-8D33-B5A7F6215E76}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=25565|RPort=25565|Name=Minecraft1|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{B20940BB-9AAA-472C-BFC5-292EFFA662CF}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=25565|RPort=25565|Name=Minecraft2|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[TCP Query User{C83C659F-857D-4EFF-BB66-3B9A697525CB}C:\program files\java\jre6\bin\javaw.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files\java\jre6\bin\javaw.exe|Name=Java(TM) Platform SE binary|Desc=Java(TM) Platform SE binary|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[UDP Query User{BE16BBD1-004D-4F2B-A303-4297C88A6FC9}C:\program files\java\jre6\bin\javaw.exe] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files\java\jre6\bin\javaw.exe|Name=Java(TM) Platform SE binary|Desc=Java(TM) Platform SE binary|Defer=User|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{30CEFF18-8D08-484B-A58E-18B4DDDA5BDC}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe|Name=Teamviewer Remote Control Application|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{8ABEDC62-AA9E-404D-B864-8A1931B353A3}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe|Name=Teamviewer Remote Control Application|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{78E55A9A-3362-4BC3-BBB9-2DCE776E9CD9}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe|Name=Teamviewer Remote Control Service|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{CC3CF537-9D76-4ECC-9BD0-5AE943C8D5CD}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe|Name=Teamviewer Remote Control Service|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{43D7E1A3-1EFE-4563-A830-CC1508BC99A0}] : v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\iTunes\iTunes.exe|Name=iTunes|Edge=TRUE|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{D8931130-7B59-4F89-A087-A9ABFDDBC4E5}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|App=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe|Name=Pando Media Booster|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{6920BE11-F8DD-409D-B3FD-93F0A9BE3667}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Domain|App=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe|Name=Pando Media Booster|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{4A08695E-8A69-4AF3-AC33-894ECB6ED39E}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe|Name=Pando Media Booster|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{0BA0FA6A-B165-4C2D-A768-5952C599156C}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe|Name=Pando Media Booster|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{F82155CA-D4A9-4579-A912-B457E37629BB}] : v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe|Name=Pando Media Booster|Edge=TRUE|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{B97B2087-8B66-41DC-A2F6-8000856759E1}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=48113|RA4=LocalSubnet|RA6=LocalSubnet|Name=maconfig_tcp|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{8EF2C2D2-8023-4309-8213-7A5D01D4E08D}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=48113|RA4=LocalSubnet|RA6=LocalSubnet|Name=maconfig_udp|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{379077F7-5D86-4DC9-A038-EFE2359DABDB}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=C:\Program Files\ma-config.com\x64\maconfservice.exe|Name=maconfservice|
- [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]|[{E912BE77-85AA-4DCE-B446-F888B7EAA572}] : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=C:\Program Files\ma-config.com\x64\maconfservice.exe|Name=maconfservice|
- [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]|[C:\Users\Gurvan\AppData\Local\Temp\svchost.exe] : C:\Users\Gurvan\AppData\Local\Temp\svchost.exe:*:Enabled:Windows Messanger
- 18:48:37
- ¤¤¤¤¤¤¤¤¤¤ | Services | 0 : Boot | 1 : System | 2 : Auto | 3 : Manuel | 4 : Désactivé | R : Running | S : Stopped
- R0 - ACPI (Pilote ACPI Microsoft) -> system32\drivers\ACPI.sys
- R0 - amdxata () -> system32\drivers\amdxata.sys
- R0 - amd_sata () -> system32\DRIVERS\amd_sata.sys
- R0 - amd_xata () -> system32\DRIVERS\amd_xata.sys
- R0 - atapi (Canal IDE) -> system32\drivers\atapi.sys
- R0 - AtiPcie (AMD PCI Express (3GIO) Filter) -> system32\DRIVERS\AtiPcie64.sys
- R0 - CLFS (@%SystemRoot%\system32\clfs.sys,-100) -> System32\CLFS.sys
- R0 - CNG () -> System32\Drivers\cng.sys
- S0 - Compbatt () -> \SystemRoot\system32\DRIVERS\compbatt.sys
- R0 - Disk (Pilote de disque) -> system32\DRIVERS\disk.sys
- R0 - FileInfo (@%SystemRoot%\system32\drivers\fileinfo.sys,-100) -> system32\drivers\fileinfo.sys
- R0 - FltMgr (@%SystemRoot%\system32\drivers\fltmgr.sys,-10001) -> system32\drivers\fltmgr.sys
- S0 - Fs_Rec () -> (?)
- R0 - fvevol (@%SystemRoot%\system32\drivers\fvevol.sys,-100) -> System32\DRIVERS\fvevol.sys
- R0 - hwpolicy (@%systemroot%\system32\drivers\hwpolicy.sys,-101) -> System32\drivers\hwpolicy.sys
- R0 - KSecDD () -> System32\Drivers\ksecdd.sys
- R0 - KSecPkg () -> System32\Drivers\ksecpkg.sys
- R0 - mountmgr (@%SystemRoot%\system32\drivers\mountmgr.sys,-100) -> System32\drivers\mountmgr.sys
- R0 - msahci () -> system32\drivers\msahci.sys
- R0 - msisadrv () -> system32\drivers\msisadrv.sys
- R0 - Mup (@%systemroot%\system32\drivers\mup.sys,-101) -> System32\Drivers\mup.sys
- R0 - NDIS (@%SystemRoot%\system32\drivers\ndis.sys,-200) -> system32\drivers\ndis.sys
- R0 - partmgr (@%SystemRoot%\system32\drivers\partmgr.sys,-100) -> System32\drivers\partmgr.sys
- R0 - pci (Pilote de bus PCI) -> system32\drivers\pci.sys
- R0 - pciide () -> system32\drivers\pciide.sys
- R0 - pcw (Performance Counters for Windows Driver) -> System32\drivers\pcw.sys
- R0 - rdyboost (ReadyBoost) -> System32\drivers\rdyboost.sys
- R0 - spldr (Security Processor Loader Driver) -> (?)
- R0 - Tcpip (@%SystemRoot%\system32\tcpipcfg.dll,-50003) -> System32\drivers\tcpip.sys
- R0 - vdrvroot (Pilote d’énumérateur de lecteur virtuel Microsoft) -> system32\drivers\vdrvroot.sys
- R0 - volmgr (Pilote du Gestionnaire de volume) -> system32\drivers\volmgr.sys
- R0 - volmgrx (@%SystemRoot%\system32\drivers\volmgrx.sys,-100) -> System32\drivers\volmgrx.sys
- R0 - volsnap (Volumes de stockage) -> system32\drivers\volsnap.sys
- R0 - Wdf01000 (Kernel Mode Driver Frameworks service) -> system32\drivers\Wdf01000.sys
- R1 - AFD (@%systemroot%\system32\drivers\afd.sys,-1000) -> \SystemRoot\system32\drivers\afd.sys
- R1 - avipbb (avipbb) -> system32\DRIVERS\avipbb.sys
- R1 - avkmgr (avkmgr) -> system32\DRIVERS\avkmgr.sys
- R1 - Beep (Beep) -> (?)
- R1 - blbdrive () -> system32\DRIVERS\blbdrive.sys
- R1 - cdrom (Pilote de CD-ROM) -> system32\DRIVERS\cdrom.sys
- R1 - DfsC (@%systemroot%\system32\drivers\dfsc.sys,-101) -> System32\Drivers\dfsc.sys
- R1 - discache (@%systemroot%\system32\drivers\discache.sys,-102) -> System32\drivers\discache.sys
- R1 - dtsoftbus01 (DAEMON Tools Virtual Bus Driver) -> system32\DRIVERS\dtsoftbus01.sys
- R1 - Msfs () -> (?)
- R1 - mssmbios (Pilote BIOS de gestion de systèmes Microsoft) -> \SystemRoot\system32\drivers\mssmbios.sys
- R1 - NetBIOS (NetBIOS Interface) -> system32\DRIVERS\netbios.sys
- R1 - NetBT (@%SystemRoot%\system32\drivers\netbt.sys,-2) -> System32\DRIVERS\netbt.sys
- R1 - Npfs () -> (?)
- R1 - nsiproxy (@%SystemRoot%\system32\drivers\nsiproxy.sys,-2) -> system32\drivers\nsiproxy.sys
- R1 - Null () -> (?)
- R1 - Psched (@%SystemRoot%\System32\drivers\pacer.sys,-101) -> system32\DRIVERS\pacer.sys
- R1 - rdbss (@%systemroot%\system32\wkssvc.dll,-1000) -> system32\DRIVERS\rdbss.sys
- R1 - RDPCDD (@%systemroot%\system32\DRIVERS\RDPCDD.sys,-100) -> System32\DRIVERS\RDPCDD.sys
- R1 - RDPENCDD (@%systemroot%\system32\drivers\RDPENCDD.sys,-101) -> system32\drivers\rdpencdd.sys
- R1 - RDPREFMP (@%systemroot%\system32\drivers\RdpRefMp.sys,-101) -> system32\drivers\rdprefmp.sys
- R1 - Serial (Pilote de port série) -> system32\DRIVERS\serial.sys
- R1 - tdx (@%SystemRoot%\system32\tcpipcfg.dll,-50004) -> system32\DRIVERS\tdx.sys
- R1 - TermDD (Pilote de périphérique terminal) -> \SystemRoot\system32\drivers\termdd.sys
- R1 - VgaSave () -> \SystemRoot\System32\drivers\vga.sys
- R1 - vwififlt (Virtual WiFi Filter Driver) -> system32\DRIVERS\vwififlt.sys
- R1 - Wanarpv6 (@%systemroot%\system32\rascfg.dll,-32012) -> system32\DRIVERS\wanarp.sys
- R1 - WfpLwf (WFP Lightweight Filter) -> system32\DRIVERS\wfplwf.sys
- R1 - ws2ifsl (@%systemroot%\System32\drivers\ws2ifsl.sys,-1000) -> \SystemRoot\system32\drivers\ws2ifsl.sys
- S2 - AdobeARMservice (Adobe Acrobat Update Service) -> "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
- S2 - agp440 (Filtre de bus AGP Intel) -> \SystemRoot\system32\drivers\agp440.sys
- S2 - AMD External Events Utility () -> %SystemRoot%\system32\atiesrxx.exe
- S2 - AMD FUEL Service (AMD FUEL Service) -> C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe /launchService
- R2 - AntiVirSchedulerService (Avira Planificateur) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
- R2 - AntiVirService (Avira Protection temps réel) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
- R2 - AODDriver4.01 (AODDriver4.01) -> \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
- S2 - AODDriver4.1 (AODDriver4.1) -> \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
- R2 - Apple Mobile Device (Apple Mobile Device) -> "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
- R2 - AudioEndpointBuilder (@%SystemRoot%\system32\audiosrv.dll,-204) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
- R2 - AudioSrv (@%SystemRoot%\system32\audiosrv.dll,-200) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
- R2 - avgntflt (avgntflt) -> system32\DRIVERS\avgntflt.sys
- R2 - BFE (@%SystemRoot%\system32\bfe.dll,-1001) -> %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
- S2 - BITS (@%SystemRoot%\system32\qmgr.dll,-1000) -> %SystemRoot%\system32\svchost.exe -k netsvcs
- S2 - clr_optimization_v4.0.30319_32 (Microsoft .NET Framework NGEN v4.0.30319_X86) -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
- S2 - clr_optimization_v4.0.30319_64 (Microsoft .NET Framework NGEN v4.0.30319_X64) -> C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
- R2 - CryptSvc (@%SystemRoot%\system32\cryptsvc.dll,-1001) -> %SystemRoot%\system32\svchost.exe -k NetworkService
- R2 - DcomLaunch (@oleres.dll,-5012) -> %SystemRoot%\system32\svchost.exe -k DcomLaunch
- R2 - Dhcp (@%SystemRoot%\system32\dhcpcore.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
- R2 - Dnscache (@%SystemRoot%\System32\dnsapi.dll,-101) -> %SystemRoot%\system32\svchost.exe -k NetworkService
- R2 - DPS (@%systemroot%\system32\dps.dll,-500) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork
- R2 - EapHost (@%systemroot%\system32\eapsvc.dll,-1) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- R2 - eventlog (@%SystemRoot%\system32\wevtsvc.dll,-200) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
- R2 - EventSystem (@comres.dll,-2450) -> %SystemRoot%\system32\svchost.exe -k LocalService
- R2 - FontCache (@%systemroot%\system32\FntCache.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- R2 - gpsvc (@gpapi.dll,-112) -> %systemroot%\system32\svchost.exe -k netsvcs
- S2 - gupdate (Service Google Update (gupdate)) -> "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
- S2 - Hamachi2Svc (LogMeIn Hamachi Tunneling Engine) -> "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
- S2 - IKEEXT (@%SystemRoot%\system32\ikeext.dll,-501) -> %systemroot%\system32\svchost.exe -k netsvcs
- R2 - IPBusEnum (@%systemroot%\system32\IPBusEnum.dll,-102) -> %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
- R2 - iphlpsvc (@%SystemRoot%\system32\iphlpsvc.dll,-500) -> %SystemRoot%\System32\svchost.exe -k NetSvcs
- R2 - LanmanServer (@%systemroot%\system32\srvsvc.dll,-100) -> %SystemRoot%\system32\svchost.exe -k netsvcs
- R2 - LanmanWorkstation (@%systemroot%\system32\wkssvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k NetworkService
- R2 - lltdio (Link-Layer Topology Discovery Mapper I/O Driver) -> system32\DRIVERS\lltdio.sys
- R2 - lmhosts (@%SystemRoot%\system32\lmhsvc.dll,-101) -> %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
- R2 - luafv (@%systemroot%\system32\drivers\luafv.sys,-100) -> \SystemRoot\system32\drivers\luafv.sys
- S2 - MBAMService () -> "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
- R2 - MMCSS (@%systemroot%\system32\mmcss.dll,-100) -> %SystemRoot%\system32\svchost.exe -k netsvcs
- R2 - MpsSvc (@%SystemRoot%\system32\FirewallAPI.dll,-23090) -> %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork
- R2 - NlaSvc (@%SystemRoot%\System32\nlasvc.dll,-1) -> %SystemRoot%\System32\svchost.exe -k NetworkService
- R2 - nsi (@%SystemRoot%\system32\nsisvc.dll,-200) -> %systemroot%\system32\svchost.exe -k LocalService
- R2 - PcaSvc (@%SystemRoot%\system32\pcasvc.dll,-1) -> %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
- R2 - PEAUTH (PEAUTH) -> system32\drivers\peauth.sys
- R2 - PlugPlay (@%SystemRoot%\system32\umpnpmgr.dll,-100) -> %SystemRoot%\system32\svchost.exe -k DcomLaunch
- S2 - PnkBstrA (PnkBstrA) -> C:\Windows\system32\PnkBstrA.exe
- R2 - Power (@%SystemRoot%\system32\umpo.dll,-100) -> %SystemRoot%\system32\svchost.exe -k DcomLaunch
- R2 - ProfSvc (@%systemroot%\system32\profsvc.dll,-300) -> %systemroot%\system32\svchost.exe -k netsvcs
- R2 - RpcEptMapper (@%windir%\system32\RpcEpMap.dll,-1001) -> %SystemRoot%\system32\svchost.exe -k RPCSS
- R2 - RpcSs (@oleres.dll,-5010) -> %SystemRoot%\system32\svchost.exe -k rpcss
- R2 - rspndr (Link-Layer Topology Discovery Responder) -> system32\DRIVERS\rspndr.sys
- R2 - SamSs (@%SystemRoot%\system32\samsrv.dll,-1) -> %SystemRoot%\system32\lsass.exe
- R2 - Schedule (@%SystemRoot%\system32\schedsvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- R2 - secdrv (Security Driver) -> (?)
- R2 - seclogon (@%SystemRoot%\system32\seclogon.dll,-7001) -> %windir%\system32\svchost.exe -k netsvcs
- R2 - SENS (@%SystemRoot%\system32\Sens.dll,-200) -> %SystemRoot%\system32\svchost.exe -k netsvcs
- S2 - SharedAccess (@%SystemRoot%\system32\ipnathlp.dll,-106) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- R2 - ShellHWDetection (@%SystemRoot%\System32\shsvcs.dll,-12288) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- S2 - SkypeUpdate (Skype Updater) -> "C:\Program Files (x86)\Skype\Updater\Updater.exe"
- R2 - Spooler (@%systemroot%\system32\spoolsv.exe,-1) -> %SystemRoot%\System32\spoolsv.exe
- S2 - sppsvc (@%SystemRoot%\system32\sppsvc.exe,-101) -> %SystemRoot%\system32\sppsvc.exe
- R2 - stisvc (@%SystemRoot%\system32\wiaservc.dll,-9) -> %SystemRoot%\system32\svchost.exe -k imgsvc
- R2 - SysMain (@%SystemRoot%\system32\sysmain.dll,-1000) -> %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
- R2 - tcpipreg (TCP/IP Registry Compatibility) -> System32\drivers\tcpipreg.sys
- R2 - TeamViewer7 (TeamViewer 7) -> C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
- R2 - Themes (@%SystemRoot%\System32\themeservice.dll,-8192) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- S2 - TICalc () -> (?)
- R2 - TrkWks (@%SystemRoot%\system32\trkwks.dll,-1) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
- S2 - TuneUp.UtilitiesSvc (TuneUp Utilities Service) -> "C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe"
- R2 - UxSms (@%SystemRoot%\system32\dwm.exe,-2000) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
- S2 - WerSvc (@%SystemRoot%\System32\wersvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k WerSvcGroup
- R2 - WinDefend (@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103) -> %SystemRoot%\System32\svchost.exe -k secsvcs
- R2 - Winmgmt (@%Systemroot%\system32\wbem\wmisvc.dll,-205) -> %systemroot%\system32\svchost.exe -k netsvcs
- R2 - Wlansvc (@%SystemRoot%\System32\wlansvc.dll,-257) -> %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
- R2 - wlidsvc (Windows Live ID Sign-in Assistant) -> "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
- R2 - WMPNetworkSvc (@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101) -> "%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe"
- R2 - wscsvc (@%SystemRoot%\System32\wscsvc.dll,-200) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
- R2 - WSearch (@%systemroot%\system32\SearchIndexer.exe,-103) -> %systemroot%\system32\SearchIndexer.exe /Embedding
- R2 - wuauserv (@%systemroot%\system32\wuaueng.dll,-105) -> %systemroot%\system32\svchost.exe -k netsvcs
- R2 - wudfsvc (@%SystemRoot%\system32\wudfsvc.dll,-1000) -> %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
- S3 - 1394ohci (Contrôleur d’hôte compatible OHCI 1394) -> \SystemRoot\system32\drivers\1394ohci.sys
- S3 - AcpiPmi (Jauge d’alimentation ACPI) -> \SystemRoot\system32\drivers\acpipmi.sys
- S3 - AdobeFlashPlayerUpdateSvc (Adobe Flash Player Update Service) -> C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
- S3 - adp94xx () -> \SystemRoot\system32\DRIVERS\adp94xx.sys
- S3 - adpahci () -> \SystemRoot\system32\DRIVERS\adpahci.sys
- S3 - adpu320 () -> \SystemRoot\system32\DRIVERS\adpu320.sys
- R3 - AeLookupSvc (@%SystemRoot%\system32\aelupsvc.dll,-1) -> %systemroot%\system32\svchost.exe -k netsvcs
- S3 - ALG (@%SystemRoot%\system32\Alg.exe,-112) -> %SystemRoot%\System32\alg.exe
- S3 - aliide () -> \SystemRoot\system32\drivers\aliide.sys
- S3 - amdide () -> \SystemRoot\system32\drivers\amdide.sys
- R3 - amdiox64 (AMD IO Driver) -> system32\DRIVERS\amdiox64.sys
- S3 - AmdK8 (AMD K8 Processor Driver) -> \SystemRoot\system32\DRIVERS\amdk8.sys
- R3 - amdkmdag () -> system32\DRIVERS\atikmdag.sys
- R3 - amdkmdap () -> system32\DRIVERS\atikmpag.sys
- R3 - AmdPPM (Pilote de processeur AMD) -> system32\DRIVERS\amdppm.sys
- S3 - amdsata () -> \SystemRoot\system32\drivers\amdsata.sys
- S3 - amdsbs () -> \SystemRoot\system32\DRIVERS\amdsbs.sys
- S3 - AppID (@%systemroot%\system32\appidsvc.dll,-102) -> \SystemRoot\system32\drivers\appid.sys
- S3 - AppIDSvc (@%systemroot%\system32\appidsvc.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- S3 - Appinfo (@%systemroot%\system32\appinfo.dll,-100) -> %SystemRoot%\system32\svchost.exe -k netsvcs
- S3 - arc () -> \SystemRoot\system32\DRIVERS\arc.sys
- S3 - arcsas () -> \SystemRoot\system32\DRIVERS\arcsas.sys
- S3 - AsyncMac (@%systemroot%\system32\rascfg.dll,-32000) -> system32\DRIVERS\asyncmac.sys
- R3 - AtiHDAudioService (AMD Function Driver for HD Audio Service) -> system32\drivers\AtihdW76.sys
- S3 - AxInstSV (@%SystemRoot%\system32\AxInstSV.dll,-103) -> %SystemRoot%\system32\svchost.exe -k AxInstSVGroup
- S3 - b06bdrv (Broadcom NetXtreme II VBD) -> \SystemRoot\system32\DRIVERS\bxvbda.sys
- S3 - b57nd60a (Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0) -> system32\DRIVERS\b57nd60a.sys
- S3 - BDESVC (@%SystemRoot%\system32\bdesvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- R3 - bowser (@%systemroot%\system32\browser.dll,-102) -> system32\DRIVERS\bowser.sys
- S3 - BrFiltLo (Brother USB Mass-Storage Lower Filter Driver) -> \SystemRoot\system32\DRIVERS\BrFiltLo.sys
- S3 - BrFiltUp (Brother USB Mass-Storage Upper Filter Driver) -> \SystemRoot\system32\DRIVERS\BrFiltUp.sys
- S3 - BridgeMP (@%SystemRoot%\system32\bridgeres.dll,-1) -> system32\DRIVERS\bridge.sys
- R3 - Browser (@%systemroot%\system32\browser.dll,-100) -> %SystemRoot%\system32\svchost.exe -k netsvcs
- S3 - Brserid (Brother MFC Serial Port Interface Driver (WDM)) -> \SystemRoot\System32\Drivers\Brserid.sys
- S3 - BrSerWdm (Brother WDM Serial driver) -> \SystemRoot\System32\Drivers\BrSerWdm.sys
- S3 - BrUsbMdm (Brother MFC USB Fax Only Modem) -> \SystemRoot\System32\Drivers\BrUsbMdm.sys
- S3 - BrUsbSer (Brother MFC USB Serial WDM Driver) -> \SystemRoot\System32\Drivers\BrUsbSer.sys
- S3 - BTHMODEM (Bluetooth Serial Communications Driver) -> \SystemRoot\system32\DRIVERS\bthmodem.sys
- S3 - bthserv (@%SystemRoot%\System32\bthserv.dll,-101) -> %SystemRoot%\system32\svchost.exe -k bthsvcs
- S3 - catchme () -> \??\C:\AntiBackdoor\catchme.sys
- S3 - CertPropSvc (@%SystemRoot%\System32\certprop.dll,-11) -> %SystemRoot%\system32\svchost.exe -k netsvcs
- S3 - circlass (Consumer IR Devices) -> \SystemRoot\system32\DRIVERS\circlass.sys
- S3 - CmBatt (Microsoft ACPI Control Method Battery Driver) -> \SystemRoot\system32\DRIVERS\CmBatt.sys
- S3 - cmdide () -> \SystemRoot\system32\drivers\cmdide.sys
- R3 - CompositeBus (Pilote de l’énumérateur de bus composite) -> \SystemRoot\system32\drivers\CompositeBus.sys
- S3 - COMSysApp (@comres.dll,-947) -> %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
- S3 - cpuz134 (cpuz134) -> \??\C:\Users\Gurvan\AppData\Local\Temp\cpuz134\cpuz134_x64.sys
- S3 - defragsvc (@%SystemRoot%\system32\defragsvc.dll,-101) -> %SystemRoot%\system32\svchost.exe -k defragsvc
- S3 - dot3svc (@%systemroot%\system32\dot3svc.dll,-1102) -> %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
- S3 - driverhardwarev2x64 (driverhardwarev2x64) -> \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2x64.sys
- S3 - drmkaud (Pilotes audio approuvés par Microsoft) -> system32\drivers\drmkaud.sys
- R3 - DXGKrnl (LDDM Graphics Subsystem) -> \SystemRoot\System32\drivers\dxgkrnl.sys
- S3 - ebdrv (Broadcom NetXtreme II 10 GigE VBD) -> \SystemRoot\system32\DRIVERS\evbda.sys
- S3 - EFS (@%SystemRoot%\system32\efssvc.dll,-100) -> %SystemRoot%\System32\lsass.exe
- S3 - ehRecvr (@%SystemRoot%\ehome\ehrecvr.exe,-101) -> %systemroot%\ehome\ehRecvr.exe
- S3 - ehSched (@%SystemRoot%\ehome\ehsched.exe,-101) -> %systemroot%\ehome\ehsched.exe
- S3 - elxstor () -> \SystemRoot\system32\DRIVERS\elxstor.sys
- S3 - ErrDev (Pilote de périphérique d’erreur matérielle Microsoft) -> \SystemRoot\system32\drivers\errdev.sys
- S3 - exfat (exFAT File System Driver) -> (?)
- S3 - fastfat (FAT12/16/32 File System Driver) -> (?)
- S3 - Fax (@%systemroot%\system32\fxsresm.dll,-118) -> %systemroot%\system32\fxssvc.exe
- S3 - fdc (Floppy Disk Controller Driver) -> \SystemRoot\system32\DRIVERS\fdc.sys
- R3 - fdPHost (@%systemroot%\system32\fdPHost.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalService
- R3 - FDResPub (@%systemroot%\system32\fdrespub.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- S3 - Filetrace (@%SystemRoot%\system32\drivers\filetrace.sys,-10001) -> system32\drivers\filetrace.sys
- S3 - flpydisk (Floppy Disk Driver) -> \SystemRoot\system32\DRIVERS\flpydisk.sys
- R3 - FontCache3.0.0.0 (@%SystemRoot%\system32\PresentationHost.exe,-3309) -> %systemroot%\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
- S3 - FsDepends (@%SystemRoot%\system32\drivers\fsdepends.sys,-10001) -> System32\drivers\FsDepends.sys
- S3 - gagp30kx (Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms) -> \SystemRoot\system32\DRIVERS\gagp30kx.sys
- R3 - GEARAspiWDM (GEAR ASPI Filter Driver) -> system32\DRIVERS\GEARAspiWDM.sys
- S3 - gupdatem (Service Google Update (gupdatem)) -> "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc
- R3 - hamachi (Hamachi Network Interface) -> system32\DRIVERS\hamachi.sys
- S3 - hcw85cir (Hauppauge Consumer Infrared Receiver) -> \SystemRoot\system32\drivers\hcw85cir.sys
- S3 - HdAudAddService (Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio) -> \SystemRoot\system32\drivers\HdAudio.sys
- R3 - HDAudBus (Pilote de bus UAA Microsoft pour High Definition Audio) -> \SystemRoot\system32\drivers\HDAudBus.sys
- S3 - HidBatt (HID UPS Battery Driver) -> \SystemRoot\system32\DRIVERS\HidBatt.sys
- S3 - HidBth (Microsoft Bluetooth HID Miniport) -> \SystemRoot\system32\DRIVERS\hidbth.sys
- S3 - HidIr (Microsoft Infrared HID Driver) -> \SystemRoot\system32\DRIVERS\hidir.sys
- R3 - hidserv (@%SystemRoot%\System32\hidserv.dll,-101) -> %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
- R3 - HidUsb (Pilote de classe HID Microsoft) -> system32\DRIVERS\hidusb.sys
- S3 - hkmsvc (@%SystemRoot%\system32\kmsvc.dll,-6) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- R3 - HomeGroupListener (@%SystemRoot%\System32\ListSvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
- R3 - HomeGroupProvider (@%SystemRoot%\System32\provsvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
- S3 - HpSAMD () -> \SystemRoot\system32\drivers\HpSAMD.sys
- R3 - HTTP (@%SystemRoot%\system32\drivers\http.sys,-1) -> system32\drivers\HTTP.sys
- S3 - i8042prt (Pilote pour clavier i8042 et souris sur port PS/2) -> \SystemRoot\system32\drivers\i8042prt.sys
- S3 - iaStorV (Contrôleur RAID Intel Windows 7) -> \SystemRoot\system32\drivers\iaStorV.sys
- S3 - idsvc (@%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193) -> "%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe"
- S3 - iirsp () -> \SystemRoot\system32\DRIVERS\iirsp.sys
- R3 - IntcAzAudAddService (Service for Realtek HD Audio (WDM)) -> system32\drivers\RTKVHD64.sys
- S3 - intelide () -> \SystemRoot\system32\drivers\intelide.sys
- S3 - intelppm (Intel Processor Driver) -> \SystemRoot\system32\DRIVERS\intelppm.sys
- S3 - IpFilterDriver (@%systemroot%\system32\rascfg.dll,-32013) -> system32\DRIVERS\ipfltdrv.sys
- S3 - IPMIDRV () -> \SystemRoot\system32\drivers\IPMIDrv.sys
- S3 - IPNAT (IP Network Address Translator) -> System32\drivers\ipnat.sys
- S3 - iPod Service (Service de l’iPod) -> "C:\Program Files\iPod\bin\iPodService.exe"
- S3 - IRENUM (@%SystemRoot%\system32\drivers\irenum.sys,-100) -> system32\drivers\irenum.sys
- S3 - isapnp () -> \SystemRoot\system32\drivers\isapnp.sys
- S3 - iScsiPrt (Pilote iScsiPort) -> \SystemRoot\system32\drivers\msiscsi.sys
- R3 - kbdclass (Pilote de la classe Clavier) -> \SystemRoot\system32\drivers\kbdclass.sys
- R3 - kbdhid (Pilote HID de clavier) -> \SystemRoot\system32\drivers\kbdhid.sys
- R3 - KeyIso (@keyiso.dll,-100) -> %SystemRoot%\system32\lsass.exe
- R3 - ksthunk (Kernel Streaming Thunks) -> \SystemRoot\system32\drivers\ksthunk.sys
- S3 - KtmRm (@comres.dll,-2946) -> %SystemRoot%\System32\svchost.exe -k NetworkServiceAndNoImpersonation
- S3 - LGDDCDevice (LGDDCDevice) -> \??\C:\Windows\system32\LGI2CDriver.sys
- S3 - LGII2CDevice (LGII2CDevice) -> \??\C:\Windows\system32\LGPII2CDriver.sys
- S3 - lltdsvc (@%SystemRoot%\system32\lltdres.dll,-1) -> %SystemRoot%\System32\svchost.exe -k LocalService
- S3 - LSI_FC () -> \SystemRoot\system32\DRIVERS\lsi_fc.sys
- S3 - LSI_SAS () -> \SystemRoot\system32\DRIVERS\lsi_sas.sys
- S3 - LSI_SAS2 () -> \SystemRoot\system32\DRIVERS\lsi_sas2.sys
- S3 - LSI_SCSI () -> \SystemRoot\system32\DRIVERS\lsi_scsi.sys
- S3 - maconfservice (Ma-Config Service) -> "C:\Program Files\ma-config.com\x64\maconfservice.exe"
- R3 - MBAMProtector () -> \??\C:\Windows\system32\drivers\mbam.sys
- S3 - megasas () -> \SystemRoot\system32\DRIVERS\megasas.sys
- S3 - MegaSR () -> \SystemRoot\system32\DRIVERS\MegaSR.sys
- S3 - Microsoft SharePoint Workspace Audit Service (Microsoft SharePoint Workspace Audit Service) -> "C:\Program Files\Microsoft Office\Office14\GROOVE.EXE" /auditservice
- S3 - Modem () -> system32\drivers\modem.sys
- R3 - monitor (Service Pilote de fonction de classe Moniteur Microsoft) -> system32\DRIVERS\monitor.sys
- R3 - mouclass (Pilote de la classe Souris) -> \SystemRoot\system32\drivers\mouclass.sys
- R3 - mouhid (Pilote HID de souris) -> system32\DRIVERS\mouhid.sys
- S3 - mpio (Pilote de bus à chemins d’accès multiples Microsoft) -> \SystemRoot\system32\drivers\mpio.sys
- R3 - mpsdrv (@%SystemRoot%\system32\FirewallAPI.dll,-23092) -> System32\drivers\mpsdrv.sys
- S3 - MRxDAV (@%systemroot%\system32\webclnt.dll,-104) -> \SystemRoot\system32\drivers\mrxdav.sys
- R3 - mrxsmb (@%systemroot%\system32\wkssvc.dll,-1002) -> system32\DRIVERS\mrxsmb.sys
- R3 - mrxsmb10 (@%systemroot%\system32\wkssvc.dll,-1004) -> system32\DRIVERS\mrxsmb10.sys
- R3 - mrxsmb20 (@%systemroot%\system32\wkssvc.dll,-1006) -> system32\DRIVERS\mrxsmb20.sys
- S3 - msdsm (Module spécifique de périphériques à chemins d’accès multiples Microsoft) -> \SystemRoot\system32\drivers\msdsm.sys
- S3 - MSDTC (@comres.dll,-2797) -> %SystemRoot%\System32\msdtc.exe
- S3 - mshidkmdf (@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100) -> \SystemRoot\System32\drivers\mshidkmdf.sys
- S3 - MSiSCSI (@%SystemRoot%\system32\iscsidsc.dll,-5000) -> %systemroot%\system32\svchost.exe -k netsvcs
- S3 - msiserver (@%SystemRoot%\system32\msimsg.dll,-27) -> %systemroot%\system32\msiexec.exe /V
- S3 - MSKSSRV (Proxy de service de répartition Microsoft) -> system32\drivers\MSKSSRV.sys
- S3 - MSPCLOCK (Proxy d'horloge de répartition Microsoft) -> system32\drivers\MSPCLOCK.sys
- S3 - MSPQM (Proxy de gestion de qualité de répartition Microsoft) -> system32\drivers\MSPQM.sys
- S3 - MsRPC () -> (?)
- S3 - MSTEE (Convertisseur en T/site-à-site de répartition Microsoft) -> system32\drivers\MSTEE.sys
- S3 - MTConfig (Microsoft Input Configuration Driver) -> \SystemRoot\system32\DRIVERS\MTConfig.sys
- S3 - napagent (@%SystemRoot%\system32\qagentrt.dll,-6) -> %SystemRoot%\System32\svchost.exe -k NetworkService
- R3 - NativeWifiP (NativeWiFi Filter) -> system32\DRIVERS\nwifi.sys
- S3 - NdisCap (NDIS Capture LightWeight Filter) -> system32\DRIVERS\ndiscap.sys
- R3 - NdisTapi (@%systemroot%\system32\rascfg.dll,-32001) -> system32\DRIVERS\ndistapi.sys
- R3 - Ndisuio (NDIS Usermode I/O Protocol) -> system32\DRIVERS\ndisuio.sys
- R3 - NdisWan (@%systemroot%\system32\rascfg.dll,-32002) -> system32\DRIVERS\ndiswan.sys
- R3 - NDProxy (NDIS Proxy) -> (?)
- S3 - Netlogon (@%SystemRoot%\System32\netlogon.dll,-102) -> %SystemRoot%\system32\lsass.exe
- R3 - Netman (@%SystemRoot%\system32\netman.dll,-109) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
- R3 - netprofm (@%SystemRoot%\system32\netprofm.dll,-202) -> %SystemRoot%\System32\svchost.exe -k LocalService
- R3 - netr28ux (Pilote de carte réseau sans fil RT2870 USB pour Vista) -> system32\DRIVERS\netr28ux.sys
- S3 - nfrd960 () -> \SystemRoot\system32\DRIVERS\nfrd960.sys
- R3 - Ntfs () -> (?)
- S3 - nvraid () -> \SystemRoot\system32\drivers\nvraid.sys
- S3 - nvstor () -> \SystemRoot\system32\drivers\nvstor.sys
- S3 - nv_agp (Filtre de bus NVIDIA nForce AGP) -> \SystemRoot\system32\drivers\nv_agp.sys
- S3 - ohci1394 (Contrôleur d’hôte compatible OHCI 1394 (hérité)) -> \SystemRoot\system32\drivers\ohci1394.sys
- S3 - ose64 (Office 64 Source Engine) -> "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
- S3 - osppsvc (Office Software Protection Platform) -> "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
- R3 - p2pimsvc (@%SystemRoot%\system32\pnrpsvc.dll,-8004) -> %SystemRoot%\System32\svchost.exe -k LocalServicePeerNet
- R3 - p2psvc (@%SystemRoot%\system32\p2psvc.dll,-8006) -> %SystemRoot%\System32\svchost.exe -k LocalServicePeerNet
- S3 - Parport (Parallel port driver) -> \SystemRoot\system32\DRIVERS\parport.sys
- S3 - pcmcia () -> \SystemRoot\system32\DRIVERS\pcmcia.sys
- S3 - PerfHost (@%systemroot%\sysWow64\perfhost.exe,-2) -> %SystemRoot%\SysWow64\perfhost.exe
- S3 - pla (@%systemroot%\system32\pla.dll,-500) -> %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork
- S3 - PNRPAutoReg (@%SystemRoot%\system32\pnrpauto.dll,-8002) -> %SystemRoot%\System32\svchost.exe -k LocalServicePeerNet
- R3 - PNRPsvc (@%SystemRoot%\system32\pnrpsvc.dll,-8000) -> %SystemRoot%\System32\svchost.exe -k LocalServicePeerNet
- R3 - PolicyAgent (@%SystemRoot%\System32\polstore.dll,-5010) -> %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted
- R3 - PptpMiniport (@%systemroot%\system32\rascfg.dll,-32006) -> system32\DRIVERS\raspptp.sys
- S3 - Processor (Processor Driver) -> \SystemRoot\system32\DRIVERS\processr.sys
- S3 - ProtectedStorage (@%systemroot%\system32\psbase.dll,-300) -> %SystemRoot%\system32\lsass.exe
- S3 - ql2300 () -> \SystemRoot\system32\DRIVERS\ql2300.sys
- S3 - ql4x () -> \SystemRoot\system32\DRIVERS\ql4x.sys
- S3 - QWAVE (@%SystemRoot%\system32\qwave.dll,-1) -> %windir%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- S3 - QWAVEdrv (@%SystemRoot%\system32\drivers\qwavedrv.sys,-1) -> \SystemRoot\system32\drivers\qwavedrv.sys
- S3 - RasAcd (Remote Access Auto Connection Driver) -> System32\DRIVERS\rasacd.sys
- R3 - RasAgileVpn (WAN Miniport (IKEv2)) -> system32\DRIVERS\AgileVpn.sys
- S3 - RasAuto (@%Systemroot%\system32\rasauto.dll,-200) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- R3 - Rasl2tp (@%systemroot%\system32\rascfg.dll,-32005) -> system32\DRIVERS\rasl2tp.sys
- R3 - RasMan (@%Systemroot%\system32\rasmans.dll,-200) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- R3 - RasPppoe (@%systemroot%\system32\rascfg.dll,-32007) -> system32\DRIVERS\raspppoe.sys
- R3 - RasSstp (@%systemroot%\system32\sstpsvc.dll,-202) -> system32\DRIVERS\rassstp.sys
- S3 - rdpbus (Remote Desktop Device Redirector Bus Driver) -> \SystemRoot\system32\DRIVERS\rdpbus.sys
- S3 - RDPWD (RDP Winstation Driver) -> (?)
- S3 - RpcLocator (@%systemroot%\system32\Locator.exe,-2) -> %SystemRoot%\system32\locator.exe
- R3 - RTL8167 (Realtek 8167 NT Driver) -> system32\DRIVERS\Rt64win7.sys
- S3 - sbp2port (Pilote de bus de transport/protocole SBP-2) -> \SystemRoot\system32\drivers\sbp2port.sys
- S3 - SCardSvr (@%SystemRoot%\System32\SCardSvr.dll,-1) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- S3 - scfilter (@%SystemRoot%\System32\drivers\scfilter.sys,-11) -> System32\DRIVERS\scfilter.sys
- S3 - SCPolicySvc (@%SystemRoot%\System32\certprop.dll,-13) -> %SystemRoot%\system32\svchost.exe -k netsvcs
- R3 - SDRSVC (@%SystemRoot%\system32\sdrsvc.dll,-107) -> %SystemRoot%\system32\svchost.exe -k SDRSVC
- S3 - SensrSvc (@%SystemRoot%\System32\sensrsvc.dll,-1000) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- R3 - Serenum (Pilote de filtre Serenum) -> system32\DRIVERS\serenum.sys
- S3 - sermouse (Serial Mouse Driver) -> \SystemRoot\system32\DRIVERS\sermouse.sys
- S3 - SessionEnv (@%SystemRoot%\System32\SessEnv.dll,-1026) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- S3 - sffdisk (Pilote de classe de stockage SFF) -> \SystemRoot\system32\drivers\sffdisk.sys
- S3 - sffp_mmc (Pilote de protocole de stockage SFF pour MMC) -> \SystemRoot\system32\drivers\sffp_mmc.sys
- S3 - sffp_sd (Pilote de protocole de stockage SFF pour SDBus) -> \SystemRoot\system32\drivers\sffp_sd.sys
- S3 - sfloppy (High-Capacity Floppy Disk Drive) -> \SystemRoot\system32\DRIVERS\sfloppy.sys
- S3 - SilvrLnk (SilverLink (USB GraphLink) Cable) -> system32\DRIVERS\silvrlnk.sys
- S3 - SiSRaid2 () -> \SystemRoot\system32\DRIVERS\SiSRaid2.sys
- S3 - SiSRaid4 () -> \SystemRoot\system32\DRIVERS\sisraid4.sys
- S3 - Smb (@%SystemRoot%\system32\tcpipcfg.dll,-50005) -> system32\DRIVERS\smb.sys
- S3 - SNMPTRAP (@%SystemRoot%\system32\snmptrap.exe,-3) -> %SystemRoot%\System32\snmptrap.exe
- S3 - sppuinotify (@%SystemRoot%\system32\sppuinotify.dll,-103) -> %SystemRoot%\system32\svchost.exe -k LocalService
- R3 - srv (@%systemroot%\system32\srvsvc.dll,-102) -> System32\DRIVERS\srv.sys
- R3 - srv2 (@%systemroot%\system32\srvsvc.dll,-104) -> System32\DRIVERS\srv2.sys
- R3 - srvnet () -> System32\DRIVERS\srvnet.sys
- R3 - SSDPSRV (@%systemroot%\system32\ssdpsrv.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- R3 - SstpSvc (@%SystemRoot%\system32\sstpsvc.dll,-200) -> %SystemRoot%\system32\svchost.exe -k LocalService
- S3 - Steam Client Service (Steam Client Service) -> C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService
- S3 - stexstor () -> \SystemRoot\system32\DRIVERS\stexstor.sys
- R3 - swenum (Pilote de bus logiciel) -> \SystemRoot\system32\drivers\swenum.sys
- S3 - swprv (@%SystemRoot%\System32\swprv.dll,-103) -> %SystemRoot%\System32\svchost.exe -k swprv
- S3 - TabletInputService (@%SystemRoot%\system32\TabSvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
- R3 - TapiSrv (@%SystemRoot%\system32\tapisrv.dll,-10100) -> %SystemRoot%\System32\svchost.exe -k NetworkService
- S3 - TBS (@%SystemRoot%\system32\tbssvc.dll,-100) -> %SystemRoot%\System32\svchost.exe -k LocalServiceAndNoImpersonation
- S3 - TCPIP6 (Microsoft IPv6 Protocol Driver) -> system32\DRIVERS\tcpip.sys
- S3 - TDPIPE (TDPIPE) -> system32\drivers\tdpipe.sys
- S3 - TDTCP (TDTCP) -> system32\drivers\tdtcp.sys
- S3 - TermService (@%SystemRoot%\System32\termsrv.dll,-268) -> %SystemRoot%\System32\svchost.exe -k NetworkService
- S3 - THREADORDER (@%systemroot%\system32\mmcss.dll,-102) -> %SystemRoot%\system32\svchost.exe -k LocalService
- S3 - TrustedInstaller (@%SystemRoot%\servicing\TrustedInstaller.exe,-100) -> %SystemRoot%\servicing\TrustedInstaller.exe
- S3 - tssecsrv (@%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101) -> System32\DRIVERS\tssecsrv.sys
- S3 - TsUsbFlt () -> system32\drivers\tsusbflt.sys
- R3 - TuneUpUtilitiesDrv (TuneUpUtilitiesDrv) -> \??\C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
- R3 - tunnel (Pilote de carte miniport Microsoft Tunnel) -> system32\DRIVERS\tunnel.sys
- S3 - uagp35 (Microsoft AGPv3.5 Filter) -> \SystemRoot\system32\DRIVERS\uagp35.sys
- S3 - UI0Detect (@%SystemRoot%\system32\ui0detect.exe,-101) -> %SystemRoot%\system32\UI0Detect.exe
- S3 - uliagpkx (Filtre de bus AGP Uli) -> \SystemRoot\system32\drivers\uliagpkx.sys
- R3 - umbus (Pilote d’énumérateur UMBus) -> \SystemRoot\system32\drivers\umbus.sys
- S3 - UmPass (Microsoft UMPass Driver) -> \SystemRoot\system32\DRIVERS\umpass.sys
- R3 - upnphost (@%systemroot%\system32\upnphost.dll,-213) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- S3 - USBAAPL64 (Apple Mobile USB Driver) -> System32\Drivers\usbaapl64.sys
- R3 - usbaudio (Pilote USB audio (WDM)) -> system32\drivers\usbaudio.sys
- R3 - usbccgp (Pilote parent générique USB Microsoft) -> system32\DRIVERS\usbccgp.sys
- S3 - usbcir (Récepteur infrarouge eHome (USBCIR)) -> \SystemRoot\system32\drivers\usbcir.sys
- R3 - usbehci (Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0) -> system32\DRIVERS\usbehci.sys
- R3 - usbfilter (AMD USB Filter Driver) -> system32\DRIVERS\usbfilter.sys
- R3 - usbhub (Pilote de concentrateur standard USB Microsoft) -> system32\DRIVERS\usbhub.sys
- R3 - usbohci (Pilote miniport de contrôleur hôte ouvert USB Microsoft) -> system32\DRIVERS\usbohci.sys
- S3 - usbprint (Microsoft USB PRINTER Class) -> \SystemRoot\system32\DRIVERS\usbprint.sys
- S3 - USBSTOR (Pilote de stockage de masse USB) -> system32\DRIVERS\USBSTOR.SYS
- S3 - usbuhci (Pilote miniport de contrôleur hôte universel USB Microsoft) -> \SystemRoot\system32\drivers\usbuhci.sys
- S3 - VaultSvc (@%SystemRoot%\system32\vaultsvc.dll,-1003) -> %SystemRoot%\system32\lsass.exe
- S3 - vds (@%SystemRoot%\system32\vds.exe,-100) -> %SystemRoot%\System32\vds.exe
- S3 - vga () -> system32\DRIVERS\vgapnp.sys
- S3 - vhdmp () -> \SystemRoot\system32\drivers\vhdmp.sys
- S3 - viaide () -> \SystemRoot\system32\drivers\viaide.sys
- S3 - vsmraid () -> \SystemRoot\system32\DRIVERS\vsmraid.sys
- S3 - VSS (@%systemroot%\system32\vssvc.exe,-102) -> %systemroot%\system32\vssvc.exe
- R3 - vwifibus (Pilote de bus WiFi virtuel) -> system32\DRIVERS\vwifibus.sys
- S3 - W32Time (@%SystemRoot%\system32\w32time.dll,-200) -> %SystemRoot%\system32\svchost.exe -k LocalService
- S3 - WacomPen (Wacom Serial Pen HID Driver) -> \SystemRoot\system32\DRIVERS\wacompen.sys
- S3 - WANARP (@%systemroot%\system32\rascfg.dll,-32011) -> system32\DRIVERS\wanarp.sys
- S3 - WatAdminSvc (@%SystemRoot%\system32\Wat\WatUX.exe,-601) -> %SystemRoot%\system32\Wat\WatAdminSvc.exe
- S3 - wbengine (@%systemroot%\system32\wbengine.exe,-104) -> "%systemroot%\system32\wbengine.exe"
- S3 - WbioSrvc (@%systemroot%\system32\wbiosrvc.dll,-100) -> %SystemRoot%\system32\svchost.exe -k WbioSvcGroup
- S3 - wcncsvc (@%SystemRoot%\system32\wcncsvc.dll,-3) -> %SystemRoot%\System32\svchost.exe -k LocalServiceAndNoImpersonation
- S3 - WcsPlugInService (@%SystemRoot%\system32\WcsPlugInService.dll,-200) -> %SystemRoot%\system32\svchost.exe -k wcssvc
- S3 - Wd () -> \SystemRoot\system32\DRIVERS\wd.sys
- R3 - WdiServiceHost (@%systemroot%\system32\wdi.dll,-502) -> %SystemRoot%\System32\svchost.exe -k LocalService
- S3 - WdiSystemHost (@%systemroot%\system32\wdi.dll,-500) -> %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
- S3 - WebClient (@%systemroot%\system32\webclnt.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalService
- S3 - Wecsvc (@%SystemRoot%\system32\wecsvc.dll,-200) -> %SystemRoot%\system32\svchost.exe -k NetworkService
- S3 - wercplsupport (@%SystemRoot%\System32\wercplsupport.dll,-101) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- S3 - WIMMount (WIMMount) -> system32\drivers\wimmount.sys
- S3 - WinHttpAutoProxySvc (@%SystemRoot%\system32\winhttp.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalService
- S3 - WinRM (@%Systemroot%\system32\wsmsvc.dll,-101) -> %SystemRoot%\System32\svchost.exe -k NetworkService
- S3 - Winsock () -> (?)
- S3 - WinUsb (WinUsb) -> system32\DRIVERS\WinUsb.sys
- R3 - WmiAcpi (Microsoft Windows Management Interface for ACPI) -> \SystemRoot\system32\drivers\wmiacpi.sys
- S3 - wmiApSrv (@%Systemroot%\system32\wbem\wmiapsrv.exe,-110) -> %systemroot%\system32\wbem\WmiApSrv.exe
- S3 - WPCSvc (@%SystemRoot%\system32\wpcsvc.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
- S3 - WPDBusEnum (@%SystemRoot%\system32\wpdbusenum.dll,-100) -> %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
- R3 - WSDPrintDevice (Prise en charge de l’impression WSD via UMB) -> system32\DRIVERS\WSDPrint.sys
- R3 - WudfPf (User Mode Driver Frameworks Platform Driver) -> system32\drivers\WudfPf.sys
- S3 - WUDFRd () -> system32\DRIVERS\WUDFRd.sys
- S3 - WwanSvc (@%SystemRoot%\System32\wwansvc.dll,-257) -> %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork
- S4 - Bonjour Service (Service Bonjour) -> "C:\Program Files\Bonjour\mDNSResponder.exe"
- S4 - cdfs (CD/DVD File System Reader) -> system32\DRIVERS\cdfs.sys
- S4 - clr_optimization_v2.0.50727_32 (Microsoft .NET Framework NGEN v2.0.50727_X86) -> %systemroot%\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
- S4 - clr_optimization_v2.0.50727_64 (Microsoft .NET Framework NGEN v2.0.50727_X64) -> %systemroot%\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
- S4 - crcdisk (Crcdisk Filter Driver) -> \SystemRoot\system32\DRIVERS\crcdisk.sys
- S4 - Mcx2Svc (@%SystemRoot%\ehome\ehres.dll,-15501) -> %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation
- S4 - NetTcpPortSharing (@%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201) -> "%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe"
- S4 - RemoteAccess (@%Systemroot%\system32\mprdim.dll,-200) -> %SystemRoot%\System32\svchost.exe -k netsvcs
- S4 - RemoteRegistry (@regsvc.dll,-1) -> %SystemRoot%\system32\svchost.exe -k regsvc
- S4 - udfs (udfs) -> system32\DRIVERS\udfs.sys
- ¤¤¤¤¤¤¤¤¤¤ | Fichiers Système
- [MD5.64EDD3F59DB321947969FDF1DD747323] - [14/07/2009 02:06:39] - (.© Microsoft Corporation. - 1394 Bus Device Driver.) - [66.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\1394bus.sys
- [MD5.A87D604AEA360176311474C87A63BB88] - [30/12/2011 21:01:12] - (.© Microsoft Corporation. - 1394 OpenHCI Driver.) - [224.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\1394ohci.sys
- [MD5.D81D9E70B8A6DD14D42D7B4EFA65D5F2] - [30/12/2011 21:01:00] - (.© Microsoft Corporation. - Pilote ACPI pour NT.) - [326.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\acpi.sys
- [MD5.99F8E788246D495CE3794D7E7821D2CA] - [30/12/2011 21:00:24] - (.© Microsoft Corporation. - ACPI Power Metering Driver.) - [12.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\acpipmi.sys
- [MD5.2F6B34B83843F0C5118B63AC634F5BF4] - [10/06/2009 22:36:24] - (.Copyright © 2006 Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) - [479.58 Ko] - (1.6.6.4) - C:\Windows\System32\Drivers\adp94xx.sys
- [MD5.597F78224EE9224EA1A13D6350CED962] - [13/07/2009 23:59:32] - (.Copyright © 2006 Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) - [331.58 Ko] - (1.6.6.1) - C:\Windows\System32\Drivers\adpahci.sys
- [MD5.E109549C90F62FB570B9540C4B148E54] - [13/07/2009 23:59:33] - (.Copyright © 2003 Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) - [178.58 Ko] - (7.2.0.0) - C:\Windows\System32\Drivers\adpu320.sys
- [MD5.1C7857B62DE5994A75B054A9FD4C3825] - [15/02/2012 12:58:58] - (.© Microsoft Corporation. - Ancillary Function Driver for WinSock.) - [487 Ko] - (6.1.7601.17752) - C:\Windows\System32\Drivers\afd.sys
- [MD5.7ECFF9B22276B73F43A99A15A6094E90] - [14/07/2009 02:10:24] - (.© Microsoft Corporation. - RAS Agile Vpn Miniport Call Manager.) - [59 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\agilevpn.sys
- [MD5.608C14DBA7299D8CB6ED035A68A15799] - [14/07/2009 01:38:44] - (.© Microsoft Corporation. - Filtre AGP 440 NT.) - [59.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\AGP440.sys
- [MD5.5812713A477A3AD7363C7438CA2EE038] - [14/07/2009 01:19:47] - (.Copyright (C) Acer Laboratories Inc. 2000 - ALi mini IDE Driver.) - [15.08 Ko] - (1.2.0.0) - C:\Windows\System32\Drivers\aliide.sys
- [MD5.1FF8B4431C353CE385C875F194924C0C] - [14/07/2009 01:19:49] - (.Copyright (C) AMD 2003 - Pilote IDE AMD.) - [15.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\amdide.sys
- [MD5.6A2EEB0C4133B20773BB3DD0B7B377B4] - [28/12/2011 23:25:38] - (.Copyright © 2010 AMD, Inc. - AMD IO Driver.) - [45.05 Ko] - (1.0.0.15) - C:\Windows\System32\Drivers\amdiox64.sys
- [MD5.7024F087CFF1833A806193EF9D22CDA9] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - Processor Device Driver.) - [63 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\amdk8.sys
- [MD5.1E56388B3FE0D031C44144EB8C4D6217] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - Processor Device Driver.) - [59.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\amdppm.sys
- [MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - [30/12/2011 15:18:04] - (.Copyright © 2008-2010 AMD, Inc. - AHCI 1.2 Device Driver.) - [105.38 Ko] - (1.1.2.5) - C:\Windows\System32\Drivers\amdsata.sys
- [MD5.F67F933E79241ED32FF46A4F29B5120B] - [10/06/2009 22:37:35] - (.2008 Advanced Micro Devices, Inc. - AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform.) - [189.58 Ko] - (3.6.1540.127) - C:\Windows\System32\Drivers\amdsbs.sys
- [MD5.540DAF1CEA6094886D72126FD7C33048] - [30/12/2011 15:18:04] - (.Copyright © 2008-2010 AMD, Inc. - Storage Filter Driver.) - [26.38 Ko] - (1.1.2.5) - C:\Windows\System32\Drivers\amdxata.sys
- [MD5.F9D46B6B322708BD5AFCC8767EBDC901] - [28/12/2011 23:34:34] - (.Copyright © 2008-2011 AMD, Inc. - AHCI 1.2 Device Driver.) - [77.63 Ko] - (1.2.1.296) - C:\Windows\System32\Drivers\amd_sata.sys
- [MD5.329CC9C7E20DEEBCD4CD10816193EF14] - [28/12/2011 23:34:34] - (.Copyright © 2008-2011 AMD, Inc. - Stor Filter Driver.) - [39.13 Ko] - (1.2.1.296) - C:\Windows\System32\Drivers\amd_xata.sys
- [MD5.89A69C3F2F319B43379399547526D952] - [30/12/2011 21:00:23] - (.© Microsoft Corporation. - AppID Driver.) - [60 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\appid.sys
- [MD5.C484F8CEB1717C540242531DB7845C4E] - [13/07/2009 23:59:33] - (.Copyright 2007 Adaptec, Inc. - Adaptec RAID Storport Driver.) - [85.58 Ko] - (5.2.0.10384) - C:\Windows\System32\Drivers\arc.sys
- [MD5.019AF6924AEFE7839F61C830227FE79C] - [13/07/2009 23:59:33] - (.Copyright 2008 Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) - [95.56 Ko] - (5.2.0.16119) - C:\Windows\System32\Drivers\arcsas.sys
- [MD5.769765CE2CC62867468CEA93969B2242] - [14/07/2009 02:10:13] - (.© Microsoft Corporation. - MS Remote Access serial network driver.) - [22.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\asyncmac.sys
- [MD5.02062C0B390B7729EDC9E69C680A6F3C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI IDE Miniport Driver.) - [23.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\atapi.sys
- [MD5.A34FE1E025E88798E746F484956C0720] - [30/12/2011 21:00:49] - (.© Microsoft Corporation. - ATAPI Driver Extension.) - [151.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ataport.sys
- [MD5.24464B908E143D2561E9E452FEE97309] - [23/02/2012 14:32:04] - (.© Advanced Micro Devices. - AMD High Definition Audio Function Driver.) - [93.52 Ko] - (7.12.0.7706) - C:\Windows\System32\Drivers\AtihdW76.sys
- [MD5.5165E83751B8FF40E5E4925996FCC506] - [11/06/2012 20:59:38] - (.Copyright (C) 1998-2011 Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) - [10008 Ko] - (8.1.1.1253) - C:\Windows\System32\Drivers\atikmdag.sys
- [MD5.86AB3CF484260C4318F3A6E8B035F422] - [11/06/2012 18:26:14] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) - [359 Ko] - (8.14.1.6268) - C:\Windows\System32\Drivers\atikmpag.sys
- [MD5.E82E61F46D1336447F4DEFF8C074F13E] - [28/12/2011 23:34:31] - (.Copyright© AMD Inc. 2006-2010 - AMD PCIE Filter Driver for ATI PCIE chipset.) - [16.05 Ko] - (1.3.3.70) - C:\Windows\System32\Drivers\AtiPcie64.sys
- [MD5.AA8F79A1BDFC03B3BC70C44AB00589B4] - [29/12/2011 11:52:28] - (.Copyright © 1996-2010 Avira GmbH. - Avira Minifilter Driver.) - [95.03 Ko] - (12.0.21.4) - C:\Windows\System32\Drivers\avgntflt.sys
- [MD5.852E3C0A60D368C487949E55AD52A47F] - [29/12/2011 11:52:28] - (.Copyright © 2000 - 2011 Avira Operations GmbH & Co. KG and its Licensors. - Avira Driver for Security Enhancement.) - [129.22 Ko] - (12.0.50.27) - C:\Windows\System32\Drivers\avipbb.sys
- [MD5.248DB59FC86DE44D2779F4C7FB1A567D] - [29/12/2011 11:52:28] - (.Copyright © 2000 - 2011 Avira Operations GmbH & Co. KG and its Licensors. - Avira Manager Driver.) - [27.11 Ko] - (12.0.20.2) - C:\Windows\System32\Drivers\avkmgr.sys
- [MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - [10/06/2009 22:34:23] - (.Copyright 2000-2008, Broadcom Corporation. - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) - [264.5 Ko] - (10.100.4.0) - C:\Windows\System32\Drivers\b57nd60a.sys
- [MD5.F4DE2AE7A9E1BADAC70BC71EA2C17612] - [14/07/2009 01:31:01] - (.© Microsoft Corporation. - Battery Class Driver.) - [27.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\battc.sys
- [MD5.16A47CE2DECC9B099349A5F840654746] - [14/07/2009 02:00:13] - (.© Microsoft Corporation. - BEEP Driver.) - [6.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\beep.sys
- [MD5.61583EE3C3A17003C4ACD0475646B4D3] - [14/07/2009 01:35:59] - (.© Microsoft Corporation. - BLB Drive Driver.) - [44 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\blbdrive.sys
- [MD5.6C02A83164F5CC0A262F4199F0871CF5] - [29/12/2011 11:51:58] - (.© Microsoft Corporation. - NT Lan Manager Datagram Receiver Driver.) - [88.5 Ko] - (6.1.7601.17565) - C:\Windows\System32\Drivers\bowser.sys
- [MD5.F09EEE9EDC320B5E1501F749FDE686C8] - [14/07/2009 03:19:59] - (.Copyright (C) Brother Industries, Ltd. 2001-2003 - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) - [18 Ko] - (1.10.0.2) - C:\Windows\System32\Drivers\BrFiltLo.sys
- [MD5.B114D3098E9BDB8BEA8B053685831BE6] - [14/07/2009 03:20:21] - (.Copyright (C) Brother Industries, Ltd. 2001 - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) - [8.5 Ko] - (1.4.0.1) - C:\Windows\System32\Drivers\BrFiltUp.sys
- [MD5.5C2F352A4E961D72518261257AAE204B] - [14/07/2009 03:05:51] - (.© Microsoft Corporation. - MAC Bridge Driver.) - [93 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\bridge.sys
- [MD5.43BEA8D483BF1870F018E2D02E06A5BD] - [14/07/2009 03:19:06] - (.Copyright (C) Brother Industries Ltd.1997-2006 - Pilote Brother Série I/F (WDM).) - [280 Ko] - (1.0.1.6) - C:\Windows\System32\Drivers\BrSerId.sys
- [MD5.A6ECA2151B08A09CACECA35C07F05B42] - [14/07/2009 03:20:11] - (.Copyright (C) Brother Industries Ltd.1997-2003 - Brother Serial driver (WDM version).) - [46 Ko] - (1.0.0.20) - C:\Windows\System32\Drivers\BrSerWdm.sys
- [MD5.B79968002C277E869CF38BD22CD61524] - [14/07/2009 03:20:26] - (.Copyright(C)Brother Industries Ltd.1997-2006 - Brother USB MDM Driver .) - [14.63 Ko] - (1.0.0.12) - C:\Windows\System32\Drivers\BrUsbMdm.sys
- [MD5.A87528880231C54E75EA7A44943B38BF] - [14/07/2009 03:20:15] - (.Copyright(C)Brother Industries Ltd.1997-2006 - Brother USB Serial Driver.) - [14.38 Ko] - (1.0.1.3) - C:\Windows\System32\Drivers\BrUsbSer.sys
- [MD5.9DA669F11D1F894AB4EB69BF546A42E8] - [14/07/2009 02:06:52] - (.© Microsoft Corporation. - Bluetooth Communications Driver.) - [70.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\bthmodem.sys
- [MD5.3E5B191307609F7514148C6832BB0842] - [10/06/2009 22:34:28] - (.(c) COPYRIGHT 2001-2008 Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) - [457.5 Ko] - (4.8.2.0) - C:\Windows\System32\Drivers\bxvbda.sys
- [MD5.B8BD2BB284668C84865658C77574381A] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - CD-ROM File System Driver.) - [90 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\cdfs.sys
- [MD5.F036CE71586E93D94DAB220D7BDF4416] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - SCSI CD-ROM Driver.) - [144 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\cdrom.sys
- [MD5.D7CD5C4E1B71FA62050515314CFB52CF] - [14/07/2009 02:06:34] - (.© Microsoft Corporation. - Consumer IR Class Driver for eHome.) - [44.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\circlass.sys
- [MD5.ACFAD0B512226C7A83C7CB09FD55A9AD] - [30/12/2011 21:01:03] - (.© Microsoft Corporation. - SCSI Class System Dll.) - [174.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\Classpnp.sys
- [MD5.0840155D0BDDF1190F84A663C284BD33] - [14/07/2009 01:31:03] - (.© Microsoft Corporation. - Control Method Battery Driver.) - [17.25 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\CmBatt.sys
- [MD5.E19D3F095812725D88F9001985B94EDD] - [14/07/2009 01:19:48] - (.Copyright (C) CMD Technology, Inc. 1999-2000 - CMD PCI IDE Bus Driver.) - [17.08 Ko] - (2.0.7.0) - C:\Windows\System32\Drivers\cmdide.sys
- [MD5.9AC4F97C2D3E93367E2148EA940CD2CD] - [11/07/2012 13:18:24] - (.© Microsoft Corporation. - Kernel Cryptography, Next Generation.) - [447.95 Ko] - (6.1.7601.17856) - C:\Windows\System32\Drivers\cng.sys
- [MD5.102DE219C3F61415F964C88E9085AD14] - [14/07/2009 01:31:02] - (.© Microsoft Corporation. - Composite Battery Driver.) - [21.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\compbatt.sys
- [MD5.03EDB043586CCEBA243D689BDDA370A8] - [30/12/2011 21:00:23] - (.© Microsoft Corporation. - Multi-Transport Composite Bus Enumerator.) - [38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\CompositeBus.sys
- [MD5.3E588B60EC061686BA05D33574A344C6] - [14/07/2009 02:01:01] - (.© Microsoft Corporation. - Crash Dump Driver.) - [38.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\crashdmp.sys
- [MD5.1C827878A998C18847245FE1F34EE597] - [14/07/2009 02:01:14] - (.© Microsoft Corporation. - Disk Block Verification Filter Driver.) - [23.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\crcdisk.sys
- [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - [30/12/2011 21:00:29] - (.© Microsoft Corporation. - DFS Namespace Client Driver.) - [100 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\dfsc.sys
- [MD5.13096B05847EC78F0977F2C0F79E9AB3] - [14/07/2009 01:37:18] - (.© Microsoft Corporation. - System Indexer/Cache Driver.) - [39.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\discache.sys
- [MD5.9819EEE8B5EA3784EC4AF3B137A5244C] - [14/07/2009 01:19:57] - (.© Microsoft Corporation. - PnP Disk Driver.) - [71.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\disk.sys
- [MD5.9BBD8B5855BC6578957F82341F9CDE5A] - [29/12/2011 11:50:52] - (.© Microsoft Corporation. - Crash Dump Disk Driver.) - [26.88 Ko] - (6.1.7601.17601) - C:\Windows\System32\Drivers\Diskdump.sys
- [MD5.21D26064AEDB4988F785BB4A3A2C051E] - [14/07/2009 02:06:30] - (.© Microsoft Corporation. - Microsoft Trusted Audio Drivers.) - [113.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\drmk.sys
- [MD5.9B19F34400D24DF84C858A421C205754] - [14/07/2009 02:06:16] - (.© Microsoft Corporation. - Microsoft Trusted Audio Drivers.) - [5.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\drmkaud.sys
- [MD5.D3D64CF7B2BCEAA34A270F45A3FFFB36] - [29/12/2011 20:45:36] - (.© 2000-2011 DT Soft Ltd. - DAEMON Tools Virtual Bus Driver.) - [264.56 Ko] - (4.41.3.256) - C:\Windows\System32\Drivers\dtsoftbus01.sys
- [MD5.839B5FE3D48E9F35B22C21A3D5103F6C] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - ATAPI Dump Driver.) - [28.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\Dumpata.sys
- [MD5.814DB88F2641691575A455CF25354098] - [14/07/2009 01:21:56] - (.© Microsoft Corporation. - Bitlocker Drive Encryption Crashdump Filter.) - [53.84 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\dumpfve.sys
- [MD5.BF24D6F2ED97FE830BFD52B246F98E67] - [14/07/2009 01:38:28] - (.© Microsoft Corporation. - DirectX API Driver.) - [16.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\dxapi.sys
- [MD5.FEDE0629ECB23650D48989517D4914DA] - [14/07/2009 01:38:28] - (.© Microsoft Corporation. - DirectX Graphics Driver.) - [96.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\dxg.sys
- [MD5.F5BEE30450E18E6B83A5012C100616FD] - [30/12/2011 21:01:19] - (.© Microsoft Corporation. - DirectX Graphics Kernel.) - [959.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\dxgkrnl.sys
- [MD5.9CD68BDDF322535C02ADC8331013D13D] - [30/12/2011 21:00:39] - (.© Microsoft Corporation. - DirectX Graphics MMS.) - [252 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\dxgmms1.sys
- [MD5.0E5DA5369A0FCAEA12456DD852545184] - [10/06/2009 22:36:49] - (.Copyright © 2003-2009 Emulex - Storport Miniport Driver for LightPulse HBAs.) - [518.06 Ko] - (7.2.10.211) - C:\Windows\System32\Drivers\elxstor.sys
- [MD5.34A3C54752046E79A126E15C51DB409B] - [14/07/2009 01:31:04] - (.© Microsoft Corporation. - Error Device Driver.) - [9.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\errdev.sys
- [MD5.DC5D737F51BE844D8C82C695EB17372F] - [10/06/2009 22:34:33] - (.(c) COPYRIGHT 2001-2008 Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) - [3209 Ko] - (4.8.13.0) - C:\Windows\System32\Drivers\evbda.sys
- [MD5.A510C654EC00C1E9BDD91EEB3A59823B] - [14/07/2009 01:23:29] - (.© Microsoft Corporation. - Microsoft Extended FAT File System.) - [190.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\exfat.sys
- [MD5.0ADC83218B66A6DB380C330836F3E36D] - [14/07/2009 01:23:29] - (.© Microsoft Corporation. - Fast FAT File System Driver.) - [200 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\fastfat.sys
- [MD5.D765D19CD8EF61F650C384F62FAC00AB] - [14/07/2009 02:00:54] - (.© Microsoft Corporation. - Floppy Disk Controller Driver.) - [29 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\fdc.sys
- [MD5.655661BE46B5F5F3FD454E2C3095B930] - [14/07/2009 01:34:25] - (.© Microsoft Corporation. - FileInfo Filter Driver.) - [68.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\fileinfo.sys
- [MD5.5F671AB5BC87EEA04EC38A6CD5962A47] - [14/07/2009 01:25:40] - (.© Microsoft Corporation. - File Trace Filter Driver.) - [33.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\filetrace.sys
- [MD5.C172A0F53008EAEB8EA33FE10E177AF5] - [14/07/2009 02:00:54] - (.© Microsoft Corporation. - Floppy Driver.) - [24 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\flpydisk.sys
- [MD5.DA6B67270FD9DB3697B20FCE94950741] - [30/12/2011 21:01:09] - (.© Microsoft Corporation. - Gestionnaire de filtres de système de fichiers Microsoft.) - [282.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\fltMgr.sys
- [MD5.D43703496149971890703B4B1B723EAC] - [14/07/2009 01:26:13] - (.© Microsoft Corporation. - File System Dependency Manager Mini Filter Driver.) - [54.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\fsdepends.sys
- [MD5.6BD9295CC032DD3077C671FCCF579A7B] - [13/04/2012 00:07:43] - (.© Microsoft Corporation. - File System Recognizer Driver.) - [22.86 Ko] - (6.1.7601.17787) - C:\Windows\System32\Drivers\fs_rec.sys
- [MD5.1F7B25B858FA27015169FE95E54108ED] - [30/12/2011 21:01:04] - (.© Microsoft Corporation. - BitLocker Drive Encryption Driver.) - [218.02 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\fvevol.sys
- [MD5.63B5129D7127E7757FCC9EA9D3763963] - [29/12/2011 11:51:50] - (.© Microsoft Corporation. - FWP/IPsec Kernel-Mode API.) - [281.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\FWPKCLNT.SYS
- [MD5.8C778D335C9D272CFD3298AB02ABE3B6] - [14/07/2009 01:38:44] - (.© Microsoft Corporation. - Filtre AGPv3.0 générique Microsoft pour plateformes de processeur K8/9.) - [63.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\GAGP30KX.SYS
- [MD5.E403AACF8C7BB11375122D2464560311] - [31/05/2012 22:26:29] - (.Copyright (C) GEAR Software Inc. 1997-2009 - CD DVD Filter.) - [33.35 Ko] - (2.2.0.1) - C:\Windows\System32\Drivers\GEARAspiWDM.sys
- [MD5.1E6438D4EA6E1174A3B3B1EDC4DE660B] - [18/03/2009 18:35:42] - (.© LogMeIn, Inc. 2004-2009 - Hamachi Virtual Network Interface Driver.) - [33.06 Ko] - (7.0.1.1) - C:\Windows\System32\Drivers\hamachi.sys
- [MD5.F2523EF6460FC42405B12248338AB2F0] - [14/07/2009 00:53:43] - (.Copyright ©2007-2009 Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) - [30.5 Ko] - (1.31.27127.0) - C:\Windows\System32\Drivers\hcw85cir.sys
- [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - High Definition Audio Bus Driver.) - [119.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\hdaudbus.sys
- [MD5.975761C778E33CD22498059B91E7373A] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - High Definition Audio Function Driver.) - [342 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\HdAudio.sys
- [MD5.78E86380454A7B10A5EB255DC44A355F] - [14/07/2009 01:31:06] - (.© Microsoft Corporation. - Hid Battery Driver.) - [26 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\hidbatt.sys
- [MD5.7FD2A313F7AFE5C4DAB14798C48DD104] - [14/07/2009 02:06:52] - (.© Microsoft Corporation. - Pilote de miniport Bluetooth pour les périphériques HID.) - [98.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\hidbth.sys
- [MD5.8B0E40E7E8BBF5ACF390465609D89FF1] - [30/12/2011 21:00:54] - (.© Microsoft Corporation. - Hid Class Library.) - [75 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\hidclass.sys
- [MD5.0A77D29F311B88CFAE3B13F9C1A73825] - [14/07/2009 02:06:23] - (.© Microsoft Corporation. - Infrared Miniport Driver for Input Devices.) - [45.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\hidir.sys
- [MD5.49EE2E52E6CD03947DAD72F65367BE06] - [14/07/2009 02:06:17] - (.© Microsoft Corporation. - Hid Parsing Library.) - [32.13 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\hidparse.sys
- [MD5.9592090A7E2B61CD582B612B6DF70536] - [30/12/2011 21:00:23] - (.© Microsoft Corporation. - USB Miniport Driver for Input Devices.) - [29.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\hidusb.sys
- [MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - [30/12/2011 21:01:05] - (.Copyright (c) 2004-2010 Hewlett-Packard Development Company, L.P. - Smart Array SAS/SATA Controller Media Driver.) - [76.88 Ko] - (6.12.6.64) - C:\Windows\System32\Drivers\HpSAMD.sys
- [MD5.0EA7DE1ACB728DD5A369FD742D6EEE28] - [30/12/2011 21:01:29] - (.© Microsoft Corporation. - HTTP Pile du protocole.) - [736 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\http.sys
- [MD5.A5462BD6884960C9DC85ED49D34FF392] - [30/12/2011 21:00:51] - (.© Microsoft Corporation. - Hardware Policy Driver.) - [14.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\hwpolicy.sys
- [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - [14/07/2009 01:19:58] - (.© Microsoft Corporation. - Pilote de port i8042.) - [103 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\i8042prt.sys
- [MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - [30/12/2011 15:18:04] - (.Copyright(C) Intel Corporation 1994-2008 - Intel Matrix Storage Manager driver - x64.) - [400.88 Ko] - (8.6.2.1014) - C:\Windows\System32\Drivers\iaStorV.sys
- [MD5.5C18831C61933628F5BB0EA2675B9D21] - [13/07/2009 23:59:33] - (.Copyright © 2002-05 Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) - [43.08 Ko] - (5.4.22.0) - C:\Windows\System32\Drivers\iirsp.sys
- [MD5.F00F20E70C6EC3AA366910083A0518AA] - [14/07/2009 01:19:48] - (.© Microsoft Corporation. - Intel PCI IDE Driver.) - [16.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\intelide.sys
- [MD5.ADA036632C664CAA754079041CF1F8C1] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - Processor Device Driver.) - [61 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\intelppm.sys
- [MD5.C9F0E1BD74365A8771590E9008D22AB6] - [30/12/2011 21:01:03] - (.© Microsoft Corporation. - IP FILTER DRIVER.) - [81 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ipfltdrv.sys
- [MD5.0FC1AEA580957AA8817B8F305D18CA3A] - [30/12/2011 21:00:22] - (.© OSA Technologies, Inc., une société Avocent, © Microsoft Corporation. - PILOT IPMI WMI.) - [77 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\IPMIDrv.sys
- [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - [14/07/2009 02:10:03] - (.© Microsoft Corporation. - IP Network Address Translator.) - [113.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ipnat.sys
- [MD5.05360B1EA5A2ABF620D1D96EBD8BD8F1] - [14/07/2009 02:09:02] - (.© Microsoft Corporation. - IRDA Protocol Driver.) - [117.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\irda.sys
- [MD5.3ABF5E7213EB28966D55D58B515D5CE9] - [14/07/2009 02:08:59] - (.© Microsoft Corporation. - Infra-Red Bus Enumerator.) - [17.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\irenum.sys
- [MD5.2F7B28DC3E1183E5EB418DF55C204F38] - [14/07/2009 01:31:08] - (.© Microsoft Corporation. - Pilote de bus PNP ISA.) - [20.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\isapnp.sys
- [MD5.BC02336F1CBA7DCC7D1213BB588A68A5] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Pilote de la classe Clavier.) - [49.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\kbdclass.sys
- [MD5.0705EFF5B42A9DB58548EEC3B26BB484] - [30/12/2011 21:00:23] - (.© Microsoft Corporation. - Pilote de filtre clavier HID.) - [32.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\kbdhid.sys
- [MD5.24FBF5CC5C04150073C315A7C83521EE] - [30/12/2011 21:00:59] - (.© Microsoft Corporation. - Kernel CSA Library.) - [238 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ks.sys
- [MD5.97A7070AEA4C058B6418519E869A63B4] - [11/07/2012 13:18:23] - (.© Microsoft Corporation. - Kernel Security Support Provider Interface.) - [93.36 Ko] - (6.1.7601.17856) - C:\Windows\System32\Drivers\ksecdd.sys
- [MD5.26C43A7C2862447EC59DEDA188D1DA07] - [11/07/2012 13:18:24] - (.© Microsoft Corporation. - Kernel Security Support Provider Interface Packages.) - [148.36 Ko] - (6.1.7601.17856) - C:\Windows\System32\Drivers\ksecpkg.sys
- [MD5.6869281E78CB31A43E969F06B57347C4] - [14/07/2009 02:00:19] - (.© Microsoft Corporation. - Kernel Streaming WOW Thunk Service.) - [20.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ksthunk.sys
- [MD5.1538831CF8AD2979A04C423779465827] - [14/07/2009 02:08:51] - (.© Microsoft Corporation. - Link-Layer Topology Mapper I/O Driver.) - [59.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\lltdio.sys
- [MD5.1A93E54EB0ECE102495A51266DCDB6A6] - [13/07/2009 23:59:34] - (.Copyright © LSI Corporation 2008 - LSI Fusion-MPT FC Driver (StorPort).) - [112.06 Ko] - (1.28.3.52) - C:\Windows\System32\Drivers\lsi_fc.sys
- [MD5.1047184A9FDC8BDBFF857175875EE810] - [13/07/2009 23:59:33] - (.Copyright © LSI Corporation 2008 - LSI Fusion-MPT SAS Driver (StorPort).) - [104.06 Ko] - (1.28.3.52) - C:\Windows\System32\Drivers\lsi_sas.sys
- [MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - [13/07/2009 23:59:34] - (.Copyright © LSI Corporation 2009 - LSI SAS Gen2 Driver (StorPort).) - [64.06 Ko] - (2.0.2.71) - C:\Windows\System32\Drivers\lsi_sas2.sys
- [MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - [13/07/2009 23:59:33] - (.Copyright © LSI Corporation 2008 - LSI Fusion-MPT SCSI Driver (StorPort).) - [113.06 Ko] - (1.28.3.67) - C:\Windows\System32\Drivers\lsi_scsi.sys
- [MD5.43D0F98E1D56CCDDB0D5254CFF7B356E] - [14/07/2009 01:26:13] - (.© Microsoft Corporation. - Pilote de filtre de virtualisation de fichier LUA.) - [110.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\luafv.sys
- [MD5.DBC08862A71459E74F7538B432C114CC] - [16/04/2012 23:40:23] - (.© Malwarebytes Corporation. - Malwarebytes Anti-Malware.) - [24.32 Ko] - (1.60.2.0) - C:\Windows\System32\Drivers\mbam.sys
- [MD5.3C9F072F9DCA856B9FB7A20CBD4281AC] - [14/07/2009 02:01:06] - (.© Microsoft Corporation. - Medium changer class driver.) - [21.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mcd.sys
- [MD5.A55805F747C6EDB6A9080D7C633BD0F4] - [10/06/2009 22:37:14] - (.Copyright © LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64.) - [34.56 Ko] - (4.5.1.64) - C:\Windows\System32\Drivers\megasas.sys
- [MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - [13/07/2009 23:59:33] - (.Copyright (C) 2007 LSI Corporation. - LSI MegaRAID Software RAID Driver.) - [278.06 Ko] - (13.5.409.2009) - C:\Windows\System32\Drivers\MegaSR.sys
- [MD5.800BA92F7010378B09F9ED9270F07137] - [14/07/2009 02:10:49] - (.© Microsoft Corporation. - Pilote de périphérique modem.) - [39.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\modem.sys
- [MD5.B03D591DC7DA45ECE20B3B467E6AADAA] - [14/07/2009 01:38:53] - (.© Microsoft Corporation. - Monitor Driver.) - [29.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\monitor.sys
- [MD5.7D27EA49F3C1F687D357E77A470AEA99] - [14/07/2009 01:19:50] - (.© Microsoft Corporation. - Pilote de la classe Souris.) - [48.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mouclass.sys
- [MD5.D3BF052C40B0C4166D9FD86A4288C1E6] - [14/07/2009 02:00:20] - (.© Microsoft Corporation. - Pilote de filtre souris HID.) - [30.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mouhid.sys
- [MD5.32E7A3D591D671A6DF2DB515A5CBE0FA] - [30/12/2011 21:00:49] - (.© Microsoft Corporation. - Gestionnaire des points de montage.) - [92.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\mountmgr.sys
- [MD5.A44B420D30BD56E145D6A2BC8768EC58] - [30/12/2011 21:00:45] - (.© Microsoft Corporation. - Pilote du bus de prise en charge des chemins d’accès multiples.) - [151.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\mpio.sys
- [MD5.6C38C9E45AE0EA2FA5E551F2ED5E978F] - [14/07/2009 02:08:25] - (.© Microsoft Corporation. - Microsoft Protection Service Driver.) - [75.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mpsdrv.sys
- [MD5.DC722758B8261E1ABAFD31A3C0A66380] - [30/12/2011 21:01:06] - (.© Microsoft Corporation. - Windows NT WebDav Minirdr.) - [137.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\mrxdav.sys
- [MD5.A5D9106A73DC88564C825D317CAC68AC] - [29/12/2011 11:51:59] - (.© Microsoft Corporation. - Windows NT SMB Minirdr.) - [154.5 Ko] - (6.1.7601.17605) - C:\Windows\System32\Drivers\mrxsmb.sys
- [MD5.D711B3C1D5F42C0C2415687BE09FC163] - [29/12/2011 11:51:59] - (.© Microsoft Corporation. - Longhorn SMB Downlevel SubRdr.) - [282 Ko] - (6.1.7601.17647) - C:\Windows\System32\Drivers\mrxsmb10.sys
- [MD5.9423E9D355C8D303E76B8CFBD8A5C30C] - [29/12/2011 11:51:59] - (.© Microsoft Corporation. - Longhorn SMB 2.0 Redirector.) - [125 Ko] - (6.1.7601.17605) - C:\Windows\System32\Drivers\mrxsmb20.sys
- [MD5.C25F0BAFA182CBCA2DD3C851C2E75796] - [30/12/2011 21:01:00] - (.© Microsoft Corporation. - MS AHCI 1.0 Standard Driver.) - [30.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\msahci.sys
- [MD5.DB801A638D011B9633829EB6F663C900] - [30/12/2011 21:01:05] - (.© Microsoft Corporation. - Module spécifique de périphériques Microsoft.) - [137.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\msdsm.sys
- [MD5.AA3FB40E17CE1388FA1BEDAB50EA8F96] - [14/07/2009 01:19:47] - (.© Microsoft Corporation. - Mailslot driver.) - [25.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\msfs.sys
- [MD5.F9D215A46A8B9753F61767FA72A20326] - [14/07/2009 02:06:24] - (.© Microsoft Corporation. - Pass-through HID to KMDF Filter Driver.) - [8 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mshidkmdf.sys
- [MD5.D916874BBD4F8B07BFB7FA9B3CCAE29D] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - ISA Driver.) - [15.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\msisadrv.sys
- [MD5.D931D7309DEB2317035B07C9F9E6B0BD] - [30/12/2011 21:01:37] - (.© Microsoft Corporation. - Microsoft iSCSI Initiator Driver.) - [267.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\msiscsi.sys
- [MD5.49CCF2C4FEA34FFAD8B1B59D49439366] - [14/07/2009 02:00:18] - (.© Microsoft Corporation. - MS KS Server.) - [10.88 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mskssrv.sys
- [MD5.BDD71ACE35A232104DDD349EE70E1AB3] - [14/07/2009 02:00:17] - (.© Microsoft Corporation. - MS Proxy Clock.) - [7 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mspclock.sys
- [MD5.4ED981241DB27C3383D72092B618A1D0] - [14/07/2009 02:00:17] - (.© Microsoft Corporation. - MS Proxy Quality Manager.) - [6.63 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mspqm.sys
- [MD5.759A9EEB0FA9ED79DA1FB7D4EF78866D] - [30/12/2011 21:01:13] - (.© Microsoft Corporation. - Kernel Remote Procedure Call Provider.) - [358.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\msrpc.sys
- [MD5.0EED230E37515A0EAEE3C2E1BC97B288] - [14/07/2009 01:31:10] - (.© Microsoft Corporation. - System Management BIOS Driver.) - [31.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mssmbios.sys
- [MD5.2E66F9ECB30B4221A318C92AC2250779] - [14/07/2009 02:00:17] - (.© Microsoft Corporation. - WDM Tee/Communication Transform Filter .) - [7.88 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mstee.sys
- [MD5.7EA404308934E675BFFDE8EDF0757BCD] - [14/07/2009 02:02:08] - (.© Microsoft Corporation. - Pilote HID multipoint Microsoft.) - [15 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\MTConfig.sys
- [MD5.F9A18612FD3526FE473C1BDA678D61C8] - [14/07/2009 01:23:45] - (.© Microsoft Corporation. - Multiple UNC Provider Driver.) - [59.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\mup.sys
- [MD5.79B47FD40D9A817E932F9D26FAC0A81C] - [30/12/2011 21:01:29] - (.© Microsoft Corporation. - Pilote NDIS 6.20.) - [929.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ndis.sys
- [MD5.9F9A1F53AAD7DA4D6FEF5BB73AB811AC] - [14/07/2009 02:08:13] - (.© Microsoft Corporation. - NDIS Packet Capture Filter Driver.) - [34.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ndiscap.sys
- [MD5.30639C932D9FEF22B31268FE25A1B6E5] - [14/07/2009 02:10:00] - (.© Microsoft Corporation. - NDIS 3.0 connection wrapper driver.) - [23.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ndistapi.sys
- [MD5.136185F9FB2CC61E573E676AA5402356] - [30/12/2011 21:00:33] - (.© Microsoft Corporation. - Pilote d’E/S du mode utilisateur NDIS.) - [55.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ndisuio.sys
- [MD5.53F7305169863F0A2BDDC49E116C2E11] - [30/12/2011 21:01:01] - (.© Microsoft Corporation. - MS PPP Framing Driver (Strong Encryption).) - [160.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ndiswan.sys
- [MD5.015C0D8E0E0421B4CFD48CFFE2825879] - [30/12/2011 21:00:43] - (.© Microsoft Corporation. - NDIS Proxy.) - [56.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\ndproxy.sys
- [MD5.86743D9F5D2B1048062B14B1D84501C4] - [14/07/2009 02:09:26] - (.© Microsoft Corporation. - NetBIOS interface driver.) - [43.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\netbios.sys
- [MD5.09594D1089C523423B32A4229263F068] - [30/12/2011 21:01:23] - (.© Microsoft Corporation. - MBT Transport driver.) - [255.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\netbt.sys
- [MD5.C8E033EA95337FDCE489D1D0348B9A23] - [30/12/2011 21:01:23] - (.© Microsoft Corporation. - Network I/O Subsystem.) - [367.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\netio.sys
- [MD5.618C55B392238B9467F9113E13525C49] - [10/06/2009 22:35:36] - (.Copyright (C) @ 2002-2009 Ralink Technology Corporation. - Ralink 802.11n Wireless Adapter Driver.) - [847 Ko] - (3.0.0.60) - C:\Windows\System32\Drivers\netr28ux.sys
- [MD5.77889813BE4D166CDAB78DDBA990DA92] - [13/07/2009 23:59:33] - (.(C) Copyright IBM Corp. 1994, 2002. - IBM ServeRAID Controller Driver.) - [50.06 Ko] - (7.10.0.0) - C:\Windows\System32\Drivers\nfrd960.sys
- [MD5.1E4C4AB5C9B8DD13179BBDC75A2A01F7] - [14/07/2009 01:19:48] - (.© Microsoft Corporation. - NPFS Driver.) - [43 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\npfs.sys
- [MD5.E7F5AE18AF4168178A642A9247C63001] - [14/07/2009 01:21:03] - (.© Microsoft Corporation. - NSI Proxy.) - [24 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\nsiproxy.sys
- [MD5.A2F74975097F52A00745F9637451FDD8] - [30/12/2011 15:18:05] - (.© Microsoft Corporation. - Pilote du système de fichiers NT.) - [1620.88 Ko] - (6.1.7601.17577) - C:\Windows\System32\Drivers\ntfs.sys
- [MD5.9899284589F75FA8724FF3D16AED75C1] - [14/07/2009 01:19:38] - (.© Microsoft Corporation. - NULL Driver.) - [6 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\null.sys
- [MD5.0A92CB65770442ED0DC44834632F66AD] - [30/12/2011 15:18:04] - (.Copyright(C) 2001-2010 NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) - [144.88 Ko] - (10.6.0.18) - C:\Windows\System32\Drivers\nvraid.sys
- [MD5.DAB0E87525C10052BF65F06152F37E4A] - [30/12/2011 15:18:04] - (.Copyright(C) 2001-2010 NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) - [162.38 Ko] - (10.6.0.18) - C:\Windows\System32\Drivers\nvstor.sys
- [MD5.270D7CD42D6E3979F6DD0146650F0E05] - [14/07/2009 01:38:44] - (.© Microsoft Corporation. - Filtre AGP NForce NT.) - [120.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\NV_AGP.SYS
- [MD5.1EA3749C4114DB3E3161156FFFFA6B33] - [14/07/2009 02:07:24] - (.© Microsoft Corporation. - Pilote de miniport WiFi natif.) - [311.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\nwifi.sys
- [MD5.3589478E4B22CE21B41FA1BFC0B8B8A0] - [14/07/2009 02:06:45] - (.© Microsoft Corporation. - 1394 OpenHCI Port Driver.) - [71.13 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ohci1394.sys
- [MD5.0557CF5A2556BD58E26384169D72438D] - [30/12/2011 21:00:31] - (.© Microsoft Corporation. - Planificateur de paquets QoS.) - [128.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\pacer.sys
- [MD5.0086431C29C35BE1DBC43F52CC273887] - [14/07/2009 02:00:41] - (.© Microsoft Corporation. - Pilote de port parallèle.) - [95 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\parport.sys
- [MD5.E9766131EEADE40A27DC27D2D68FBA9C] - [11/05/2012 22:14:50] - (.© Microsoft Corporation. - Partition Management Driver.) - [73.36 Ko] - (6.1.7601.17796) - C:\Windows\System32\Drivers\partmgr.sys
- [MD5.94575C0571D1462A0F70BDE6BD6EE6B3] - [30/12/2011 21:01:07] - (.© Microsoft Corporation. - Énumérateur Plug-and-Play PCI pour NT.) - [180.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\pci.sys
- [MD5.B5B8B5EF2E5CB34DF8DCF8831E3534FA] - [14/07/2009 01:19:49] - (.© Microsoft Corporation. - Generic PCI IDE Bus Driver.) - [12.06 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\pciide.sys
- [MD5.144497DAA145BA0F7BE896064146C058] - [14/07/2009 01:19:48] - (.© Microsoft Corporation. - PCI IDE Bus Driver Extension.) - [47.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\pciidex.sys
- [MD5.B2E81D4E87CE48589F98CB8C05B01F2F] - [14/07/2009 01:31:10] - (.© Microsoft Corporation. - Pilote de bus PCMCIA.) - [215.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\pcmcia.sys
- [MD5.D6B9C2E1A11A3A4B26A182FFEF18F603] - [14/07/2009 01:19:30] - (.© Microsoft Corporation. - Performance Counters for Windows Driver.) - [49.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\pcw.sys
- [MD5.68769C3356B3BE5D1C732C97B9A80D6E] - [14/07/2009 01:51:01] - (.© Microsoft Corporation. - Protected Environment Authentication and Authorization Export Driver.) - [636 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\PEAuth.sys
- [MD5.32E11315B5126921FFD9074840EF13D3] - [14/07/2009 02:06:29] - (.© Microsoft Corporation. - Port Class (Class Driver for Port/Miniport Devices).) - [225 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\portcls.sys
- [MD5.0D922E23C041EFB1C3FAC2A6F943C9BF] - [14/07/2009 01:19:26] - (.© Microsoft Corporation. - Processor Device Driver.) - [59 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\processr.sys
- [MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - [10/06/2009 22:37:36] - (.Copyright © QLogic Corporation 1996-2009 - QLogic Fibre Channel Stor Miniport Driver.) - [1489.08 Ko] - (9.1.8.6) - C:\Windows\System32\Drivers\ql2300.sys
- [MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - [13/07/2009 23:59:34] - (.© QLogic Corporation. - QLogic iSCSI Storport Miniport Driver.) - [125.58 Ko] - (2.1.3.20) - C:\Windows\System32\Drivers\ql4x.sys
- [MD5.76707BB36430888D9CE9D705398ADB6C] - [14/07/2009 02:09:48] - (.© Microsoft Corporation. - Pilote du support de Microsoft Quality Windows Audio Video Experience (qWave).) - [45.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\qwavedrv.sys
- [MD5.5A0DA8AD5762FA2D91678A8A01311704] - [14/07/2009 02:10:09] - (.© Microsoft Corporation. - RAS Automatic Connection Driver.) - [14.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rasacd.sys
- [MD5.471815800AE33E6F1C32FB1B97C490CA] - [30/12/2011 21:01:07] - (.© Microsoft Corporation. - RAS L2TP mini-port/call-manager driver.) - [126.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\rasl2tp.sys
- [MD5.855C9B1CD4756C5E9A2AA58A15F58C25] - [14/07/2009 02:10:17] - (.© Microsoft Corporation. - RAS PPPoE mini-port/call-manager driver.) - [90.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\raspppoe.sys
- [MD5.F92A2C41117A11A00BE01CA01A7FCDE9] - [30/12/2011 21:00:59] - (.© Microsoft Corporation. - Peer-to-Peer Tunneling Protocol.) - [108.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\raspptp.sys
- [MD5.E8B1E447B008D07FF47D016C2B0EEECB] - [14/07/2009 02:10:25] - (.© Microsoft Corporation. - RAS SSTP Miniport Call Manager.) - [82 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rassstp.sys
- [MD5.77F665941019A1594D887A74F301FA2F] - [30/12/2011 21:01:13] - (.© Microsoft Corporation. - Pilote du sous-système de mise en mémoire tampon de lecteur redirigé.) - [302 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\rdbss.sys
- [MD5.302DA2A0539F2CF54D7C6CC30C1F2D8D] - [14/07/2009 02:17:46] - (.© Microsoft Corporation. - Microsoft RDP Bus Device driver.) - [23.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rdpbus.sys
- [MD5.CEA6CC257FC9B7715F1C2B4849286D24] - [14/07/2009 02:16:34] - (.© Microsoft Corporation. - RDP Miniport.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\RDPCDD.sys
- [MD5.BB5971A4F00659529A5C44831AF22365] - [14/07/2009 02:16:34] - (.© Microsoft Corporation. - RDP Encoder Miniport.) - [7.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\RDPENCDD.sys
- [MD5.216F3FA57533D98E1F74DED70113177A] - [14/07/2009 02:16:35] - (.© Microsoft Corporation. - RDP Reflector Driver Miniport.) - [8 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\RDPREFMP.sys
- [MD5.E61608AA35E98999AF9AAEEEA6114B0A] - [13/06/2012 18:39:58] - (.© Microsoft Corporation. - Pilote de pile RDP Terminal.) - [206 Ko] - (6.1.7601.17830) - C:\Windows\System32\Drivers\rdpwd.sys
- [MD5.34ED295FA0121C241BFEF24764FC4520] - [30/12/2011 21:00:52] - (.© Microsoft Corporation. - ReadyBoost Driver.) - [208.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\rdyboost.sys
- [MD5.CAF88D6573D21CD2AA27001DDBFDC74D] - [30/12/2011 21:00:36] - (.© Microsoft Corporation. - Reliable Multicast Transport.) - [143 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\rmcast.sys
- [MD5.FC6D5C50D846B795335DEB3FCE8B33F3] - [14/07/2009 02:09:48] - (.© Microsoft Corporation. - Remote NDIS Miniport.) - [40.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\RNDISMP.sys
- [MD5.388D3DD1A6457280F3BADBA9F3ACD6B1] - [14/07/2009 02:10:47] - (.© Microsoft Corporation. - Legacy Non-Pnp Modem Device Driver.) - [11 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rootmdm.sys
- [MD5.DDC86E4F8E7456261E637E3552E804FF] - [14/07/2009 02:08:51] - (.© Microsoft Corporation. - Link-Layer Topology Responder Driver for NDIS 6.) - [75 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\rspndr.sys
- [MD5.EE082E06A82FF630351D1E0EBBD3D8D0] - [28/12/2011 23:38:31] - (.Copyright (C) 2011 Realtek Semiconductor Corporation. All Right Reserved. - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver .) - [526.6 Ko] - (7.46.610.2011) - C:\Windows\System32\Drivers\Rt64win7.sys
- [MD5.EB5FA493A4B6EA290200AE39EBA2FBC6] - [28/12/2011 23:39:33] - (.Copyright (c) Realtek Semiconductor Corp.1998-2012 - Realtek(r) High Definition Audio Function Driver.) - [2837.73 Ko] - (6.0.1.6402) - C:\Windows\System32\Drivers\RTKVHD64.sys
- [MD5.AC03AF3329579FFFB455AA2DAABBE22B] - [30/12/2011 21:00:59] - (.© Microsoft Corporation. - SBP-2 Protocol Driver.) - [101.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\sbp2port.sys
- [MD5.253F38D0D7074C02FF8DEB9836C97D2B] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - Pilote de filtre de lecteur de carte à puce Microsoft.) - [29 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\scfilter.sys
- [MD5.1B1E264203D4EF9D3DA1987AD70355AB] - [30/12/2011 21:00:55] - (.© Microsoft Corporation. - SCSI Port Driver.) - [167.38 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\scsiport.sys
- [MD5.3EA8A16169C26AFBEB544E0E48421186] - [14/07/2009 04:36:07] - (.© 2006 Macrovision Corporation - Macrovision SECURITY Driver.) - [22.5 Ko] - (4.3.86.0) - C:\Windows\System32\Drivers\secdrv.sys
- [MD5.CB624C0035412AF0DEBEC78C41F5CA1B] - [14/07/2009 02:00:33] - (.© Microsoft Corporation. - Serial Port Enumerator.) - [23 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\serenum.sys
- [MD5.C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] - [14/07/2009 02:00:40] - (.© Microsoft Corporation. - Pilote de périphérique série.) - [92 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\serial.sys
- [MD5.1C545A7D0691CC4A027396535691C3E3] - [14/07/2009 02:00:20] - (.© Microsoft Corporation. - Pilote de filtre souris série.) - [26 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\sermouse.sys
- [MD5.A554811BCD09279536440C964AE35BBF] - [14/07/2009 02:01:01] - (.© Microsoft Corporation. - Small Form Factor Disk Driver.) - [14 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\sffdisk.sys
- [MD5.FF414F0BAEFEBA59BC6C04B3DB0B87BF] - [14/07/2009 02:01:03] - (.© Microsoft Corporation. - Small Form Factor MMC Protocol Driver.) - [13.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\sffp_mmc.sys
- [MD5.DD85B78243A19B59F0637DCF284DA63C] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - Small Form Factor SD Protocol Driver.) - [14 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\sffp_sd.sys
- [MD5.A9D601643A1647211A1EE2EC4E433FF4] - [14/07/2009 02:01:02] - (.© Microsoft Corporation. - SCSI Floppy Driver.) - [16.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\sfloppy.sys
- [MD5.AB191E50DA5DC1E69311742E3930A61E] - [15/03/2012 20:57:51] - (.Copyright © 2008-2009 Texas Instruments - silvrlnk.sys.) - [126.5 Ko] - (1.0.0.9) - C:\Windows\System32\Drivers\silvrlnk.sys
- [MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - [10/06/2009 22:37:40] - (.Copyright (c) SiS Corp. 2000-2010 - SiS RAID Stor Miniport Driver.) - [42.56 Ko] - (5.1.1039.2600) - C:\Windows\System32\Drivers\sisraid2.sys
- [MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - [13/07/2009 23:59:33] - (.Copyright (c) SiS Corp. 2007-2013 - SiS AHCI Stor-Miniport Driver.) - [78.58 Ko] - (5.1.1039.3600) - C:\Windows\System32\Drivers\sisraid4.sys
- [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - [14/07/2009 02:09:09] - (.© Microsoft Corporation. - SMB Transport driver.) - [91 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\smb.sys
- [MD5.A80348BA03E96C70852959655CA3E084] - [14/07/2009 02:00:35] - (.© Microsoft Corporation. - Smart Card Driver Library.) - [20.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\smclib.sys
- [MD5.B9E31E5CACDFE584F34F730A677803F9] - [13/07/2009 22:27:56] - (.© Microsoft Corporation. - loader for security processor.) - [18.56 Ko] - (6.1.7127.0) - C:\Windows\System32\Drivers\spldr.sys
- [MD5.FFF95479C7AB1550F0750A5D01744211] - [10/06/2009 22:48:43] - (.© Microsoft Corporation. - security processor.) - [416.5 Ko] - (6.1.7127.0) - C:\Windows\System32\Drivers\spsys.sys
- [MD5.441FBA48BFF01FDB9D5969EBC1838F0B] - [29/12/2011 11:52:13] - (.© Microsoft Corporation. - Server driver.) - [456.5 Ko] - (6.1.7601.17608) - C:\Windows\System32\Drivers\srv.sys
- [MD5.B4ADEBBF5E3677CCE9651E0F01F7CC28] - [29/12/2011 11:52:13] - (.© Microsoft Corporation. - Smb 2.0 Server driver.) - [400.5 Ko] - (6.1.7601.17608) - C:\Windows\System32\Drivers\srv2.sys
- [MD5.27E461F0BE5BFF5FC737328F749538C3] - [29/12/2011 11:52:13] - (.© Microsoft Corporation. - Server Network driver.) - [164.5 Ko] - (6.1.7601.17608) - C:\Windows\System32\Drivers\srvnet.sys
- [MD5.F3817967ED533D08327DC73BC4D5542A] - [13/07/2009 23:59:33] - (.Promise Technology - Promise SuperTrak EX Series Driver for Windows .) - [24.08 Ko] - (5.0.1.1) - C:\Windows\System32\Drivers\stexstor.sys
- [MD5.19CB37AC38B802BE9C441D094521A29A] - [30/12/2011 15:18:04] - (.© Microsoft Corporation. - Microsoft Storage Port Driver.) - [185.38 Ko] - (6.1.7601.17577) - C:\Windows\System32\Drivers\storport.sys
- [MD5.001CC10FA5E71AE1119115E126C8750D] - [14/07/2009 02:06:18] - (.© Microsoft Corporation. - WDM CODEC Class Device Driver 2.0.) - [67.25 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\stream.sys
- [MD5.D01EC09B6711A5F8E7E6564A4D0FBC90] - [14/07/2009 02:00:18] - (.© Microsoft Corporation. - Plug and Play Software Device Enumerator.) - [12.2 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\swenum.sys
- [MD5.6E316C01CBA8B785FE495F5CC4F48C6F] - [14/07/2009 02:01:04] - (.© Microsoft Corporation. - SCSI Tape Class Driver.) - [28.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\tape.sys
- [MD5.ACB82BDA8F46C84F465C1AFA517DC4B9] - [11/05/2012 22:14:23] - (.© Microsoft Corporation. - Pilote TCP/IP.) - [1873.36 Ko] - (6.1.7601.17802) - C:\Windows\System32\Drivers\tcpip.sys
- [MD5.DF687E3D8836BFB04FCC0615BF15A519] - [30/12/2011 21:00:36] - (.© Microsoft Corporation. - TCP/IP Registry Compatibility Driver.) - [44 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tcpipreg.sys
- [MD5.6F020A220388ECA0AB6062DC27BD16B6] - [30/12/2011 21:00:28] - (.© Microsoft Corporation. - TDI Wrapper.) - [26 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tdi.sys
- [MD5.3371D21011695B16333A3934340C4E7C] - [14/07/2009 02:16:32] - (.© Microsoft Corporation. - Named Pipe Transport Driver.) - [15.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\tdpipe.sys
- [MD5.51C5ECEB1CDEE2468A1748BE550CFBC8] - [14/03/2012 13:54:34] - (.© Microsoft Corporation. - TCP Transport Driver.) - [23 Ko] - (6.1.7601.17779) - C:\Windows\System32\Drivers\tdtcp.sys
- [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - [30/12/2011 21:01:23] - (.© Microsoft Corporation. - TDI Translation Driver.) - [116.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tdx.sys
- [MD5.561E7E1F06895D78DE991E01DD0FB6E5] - [30/12/2011 21:01:01] - (.© Microsoft Corporation. - Remote Desktop Server Driver.) - [61.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\termdd.sys
- [MD5.CE18B2CDFC837C99E5FAE9CA6CBA5D30] - [30/12/2011 21:00:47] - (.© Microsoft Corporation. - TS Security Filter Driver.) - [38.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tssecsrv.sys
- [MD5.D11C783E3EF9A3C52C0EBE83CC5000E9] - [30/12/2011 21:01:52] - (.© Microsoft Corporation. - Pilote de filtre pour concentrateur USB du Bureau à distance.) - [58 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\TsUsbFlt.sys
- [MD5.3566A8DAAFA27AF944F5D705EAA64894] - [30/12/2011 21:00:30] - (.© Microsoft Corporation. - Pilote d’interface de tunnel Microsoft.) - [122.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\tunnel.sys
- [MD5.B4DD609BD7E282BFC683CEC7EAAAAD67] - [14/07/2009 01:38:44] - (.© Microsoft Corporation. - Filtre MS AGPv3.5.) - [62.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\UAGP35.SYS
- [MD5.FF4232A1A64012BAA1FD97C7B67DF593] - [30/12/2011 21:01:09] - (.© Microsoft Corporation. - UDF File System Driver.) - [320.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\udfs.sys
- [MD5.4BFE1BC28391222894CBF1E7D0E42320] - [14/07/2009 01:38:48] - (.© Microsoft Corporation. - Filtre ULi AGPv3.0 pour plateformes à processeur K8/9.) - [63.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ULIAGPKX.SYS
- [MD5.DC54A574663A895C8763AF0FA1FF7561] - [30/12/2011 21:00:38] - (.© Microsoft Corporation. - User-Mode Bus Enumerator.) - [47.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\umbus.sys
- [MD5.B2E8E8CB557B156DA5493BBDDCC1474D] - [14/07/2009 02:06:52] - (.© Microsoft Corporation. - Generic pass-through driver.) - [9.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\umpass.sys
- [MD5.D0FE8CB5F84303E73FF0754437FAD3D1] - [14/07/2009 02:09:49] - (.© Microsoft Corporation. - Remote NDIS USB Driver.) - [19.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\usb8023.sys
- [MD5.FB251567F41BC61988B26731DEC19E4B] - [15/02/2012 12:01:50] - (.© Apple, Inc. - Apple Mobile Device USB Driver.) - [51.5 Ko] - (1.59.0.0) - C:\Windows\System32\Drivers\usbaapl64.sys
- [MD5.82E8F44688E6FAC57B5B7C6FC7ADBC2A] - [30/12/2011 21:00:35] - (.© Microsoft Corporation. - USB Audio Class Driver.) - [107.13 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\USBAUDIO.sys
- [MD5.292A8E03B3FCE04E39B5BE9B14132030] - [30/12/2011 21:00:23] - (.© Microsoft Corporation. - Universal Serial Bus Camera Driver.) - [32.13 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\USBCAMD2.sys
- [MD5.6F1A3157A1C89435352CEB543CDB359C] - [30/12/2011 15:18:13] - (.© Microsoft Corporation. - USB Common Class Generic Parent Driver.) - [96.5 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbccgp.sys
- [MD5.AF0892A803FDDA7492F595368E3B68E7] - [14/07/2009 02:06:37] - (.© Microsoft Corporation. - USB Consumer IR Driver for eHome.) - [98 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\usbcir.sys
- [MD5.CCA2AB1752A61F29C3C941CD79D78CEA] - [30/12/2011 15:18:12] - (.© Microsoft Corporation. - Universal Serial Bus Driver.) - [7.75 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbd.sys
- [MD5.C025055FE7B87701EB042095DF1A2D7B] - [30/12/2011 15:18:14] - (.© Microsoft Corporation. - EHCI eUSB Miniport Driver.) - [51.5 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbehci.sys
- [MD5.76E2FFAD301490BA27B947C6507752FB] - [28/12/2011 23:34:37] - (.Copyright © 2010 AMD, Inc. - AMD USB Filter Driver.) - [43.63 Ko] - (1.0.18.119) - C:\Windows\System32\Drivers\usbfilter.sys
- [MD5.287C6C9410B111B68B52CA298F7B8C24] - [30/12/2011 15:18:13] - (.© Microsoft Corporation. - Default Hub Driver for USB.) - [335 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbhub.sys
- [MD5.9840FC418B4CBD632D3D0A667A725C31] - [30/12/2011 15:18:12] - (.© Microsoft Corporation. - OHCI USB Miniport Driver.) - [25 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbohci.sys
- [MD5.AE259C75F9A0B057B6BF9E9695632B09] - [30/12/2011 15:18:13] - (.© Microsoft Corporation. - Pilote de port USB 1.1 & 2.0.) - [317.5 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbport.sys
- [MD5.73188F58FB384E75C4063D29413CEE3D] - [14/07/2009 02:38:18] - (.© Microsoft Corporation. - USB Printer driver.) - [24.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\usbprint.sys
- [MD5.C3EC945DEC43C00E2AD4C98DDDD064C7] - [30/12/2011 21:00:25] - (.© Microsoft Corporation. - Gestionnaire de stratégie de redirection USB Windows.) - [31 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\usbrpm.sys
- [MD5.FED648B01349A3C8395A5169DB5FB7D6] - [30/12/2011 15:18:04] - (.© Microsoft Corporation. - USB Mass Storage Class Driver.) - [89.5 Ko] - (6.1.7601.17577) - C:\Windows\System32\Drivers\USBSTOR.SYS
- [MD5.62069A34518BCF9C1FD9E74B3F6DB7CD] - [30/12/2011 15:18:13] - (.© Microsoft Corporation. - UHCI USB Miniport Driver.) - [30 Ko] - (6.1.7601.17586) - C:\Windows\System32\Drivers\usbuhci.sys
- [MD5.C5C876CCFC083FF3B128F933823E87BD] - [14/07/2009 02:01:31] - (.© Microsoft Corporation. - Énumérateur racine de lecteur virtuel.) - [35.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vdrvroot.sys
- [MD5.53E92A310193CB3C03BEA963DE7D9CFC] - [14/07/2009 01:38:48] - (.© Microsoft Corporation. - VGA/Super VGA Video Driver.) - [28.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vga.sys
- [MD5.DA4DA3F5E02943C2DC8C6ED875DE68DD] - [14/07/2009 01:38:48] - (.© Microsoft Corporation. - VGA/Super VGA Video Driver.) - [28.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vgapnp.sys
- [MD5.2CE2DF28C83AEAF30084E1B1EB253CBB] - [30/12/2011 21:01:16] - (.© Microsoft Corporation. - VHD Miniport Driver.) - [210.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\vhdmp.sys
- [MD5.E5689D93FFE4E5D66C0178761240DD54] - [14/07/2009 01:19:50] - (.Copyright (C) VIA Technologies, Inc. 2000-2007 - VIA Generic PCI IDE Bus Driver.) - [17.08 Ko] - (6.0.6000.170) - C:\Windows\System32\Drivers\viaide.sys
- [MD5.E7353D59C9842BC7299FAEB7E7E09340] - [14/07/2009 01:38:51] - (.© Microsoft Corporation. - Video Port Driver.) - [126 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\videoprt.sys
- [MD5.D2AAFD421940F640B407AEFAAEBD91B0] - [30/12/2011 21:01:06] - (.© Microsoft Corporation. - Volume Manager Driver.) - [69.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\volmgr.sys
- [MD5.A255814907C89BE58B79EF2F189B843B] - [30/12/2011 21:00:55] - (.© Microsoft Corporation. - Pilote d’extension du gestionnaire de volumes.) - [354.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\volmgrx.sys
- [MD5.0D08D2F3B3FF84E433346669B5E0F639] - [30/12/2011 21:01:13] - (.© Microsoft Corporation. - Pilote de cliché instantané du volume.) - [288.88 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\volsnap.sys
- [MD5.5E2016EA6EBACA03C04FEAC5F330D997] - [10/06/2009 22:37:58] - (.Copyright (C) VIA Technologies 1992-2007 - VIA RAID DRIVER FOR AMD-X86-64.) - [158.08 Ko] - (6.0.6000.6210) - C:\Windows\System32\Drivers\vsmraid.sys
- [MD5.36D4720B72B5C5D9CB2B9C29E9DF67A1] - [14/07/2009 02:07:21] - (.© Microsoft Corporation. - Pilote de bus WiFi virtuel.) - [24 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vwifibus.sys
- [MD5.6A3D66263414FF0D6FA754C646612F3F] - [14/07/2009 02:07:22] - (.© Microsoft Corporation. - Virtual WiFi Filter Driver.) - [58.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vwififlt.sys
- [MD5.6A638FC4BFDDC4D9B186C28C91BD1A01] - [14/07/2009 02:07:28] - (.© Microsoft Corporation. - Virtual WiFi Miniport Driver.) - [17.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\vwifimp.sys
- [MD5.4E9440F4F152A7B944CB1663D3935A3E] - [14/07/2009 02:02:07] - (.© Microsoft Corporation. - Wacom Serial Pen Tablet HID Driver.) - [27.13 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wacompen.sys
- [MD5.356AFD78A6ED4457169241AC3965230C] - [30/12/2011 21:00:55] - (.© Microsoft Corporation. - MS Remote Access and Routing ARP Driver.) - [86.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\wanarp.sys
- [MD5.FC438D1430B28618E2D0C7C332A710AD] - [14/07/2009 01:37:35] - (.© Microsoft Corporation. - Watchdog Driver.) - [41.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\watchdog.sys
- [MD5.72889E16FF12BA0F235467D6091B17DC] - [14/07/2009 01:19:55] - (.© Microsoft Corporation. - Microsoft Watchdog Timer Driver.) - [20.56 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wd.sys
- [MD5.441BD2D7B4F98134C3A4F9FA570FD250] - [14/07/2009 01:22:11] - (.© Microsoft Corporation. - Runtime de l’infrastructure de pilotes en mode noyau.) - [639.58 Ko] - (1.9.7600.16385) - C:\Windows\System32\Drivers\Wdf01000.sys
- [MD5.1B409454D7A00110FDB06F7E0F155A88] - [14/07/2009 01:19:54] - (.© Microsoft Corporation. - Kernel Mode Driver Framework Loader.) - [41.08 Ko] - (1.9.7600.16385) - C:\Windows\System32\Drivers\WdfLdr.sys
- [MD5.611B23304BF067451A9FDEE01FBDD725] - [14/07/2009 02:09:26] - (.© Microsoft Corporation. - WFP NDIS 6.20 Lightweight Filter Driver.) - [12.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wfplwf.sys
- [MD5.05ECAEC3E4529A7153B3136CEB49F0EC] - [14/07/2009 01:29:31] - (.© Microsoft Corporation. - Wim file system Driver.) - [21.58 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wimmount.sys
- [MD5.FE88B288356E7B47B74B13372ADD906D] - [30/12/2011 21:00:55] - (.© Microsoft Corporation. - Windows USB Class Driver BETA.) - [41 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\winusb.sys
- [MD5.F6FF8944478594D0E414D3F048F0D778] - [14/07/2009 01:31:03] - (.© Microsoft Corporation. - Windows Management Interface for ACPI.) - [14 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wmiacpi.sys
- [MD5.FC146F46872D4C5B529B89A5131FD1E6] - [14/07/2009 01:19:51] - (.© Microsoft Corporation. - WMILIB WMI support library Dll.) - [16.08 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\wmilib.sys
- [MD5.6BCC1D7D2FD2453957C5479A32364E52] - [14/07/2009 02:10:34] - (.© Microsoft Corporation. - Couche IFS Winsock2.) - [21 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\ws2ifsl.sys
- [MD5.8D918B1DB190A4D9B1753A66FA8C96E8] - [14/07/2009 02:39:20] - (.© Microsoft Corporation. - Web Services Print Device Driver.) - [22.5 Ko] - (6.1.7600.16385) - C:\Windows\System32\Drivers\WSDPrint.sys
- [MD5.D3381DC54C34D79B22CEE0D65BA91B7C] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - Windows Driver Foundation - User-mode Driver Framework Platform Driver.) - [109.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\WUDFPf.sys
- [MD5.CF8D590BE3373029D57AF80914190682] - [30/12/2011 21:00:22] - (.© Microsoft Corporation. - Windows Driver Foundation - User-mode Driver Framework Reflector.) - [168.5 Ko] - (6.1.7601.17514) - C:\Windows\System32\Drivers\WUDFRd.sys
- ¤¤¤¤¤¤¤¤¤¤ | Uninstall
- [HKCU\Software\Microsoft\windows\CurrentVersion\Uninstall\<Key>]
- "Dropbox"=Dropbox (Dropbox, Inc.) -> "C:\Users\Gurvan\AppData\Roaming\Dropbox\bin\Uninstall.exe"
- "Google Chrome"=Google Chrome (Google Inc.) -> "C:\Users\Gurvan\AppData\Local\Google\Chrome\Application\20.0.1132.57\Installer\setup.exe" --uninstall --multi-install --chrome
- "PhotoFiltre"=PhotoFiltre () -> "C:\Program Files (x86)\PhotoFiltre\Uninst.exe"
- [HKLM\Software\Microsoft\windows\CurrentVersion\Uninstall\<Key>]
- "Adobe AIR"=Adobe AIR (Adobe Systems Incorporated) -> c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
- "Adobe Flash Player Plugin"=Adobe Flash Player 11 Plugin (Adobe Systems Incorporated) -> C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_3_300_265_Plugin.exe -maintain plugin
- "Auto Shut Down_is1"=Auto Shut Down 1.2 (Pianosoft freeware) -> "C:\Program Files (x86)\Auto Shut Down\unins000.exe"
- "Avira AntiVir Desktop"=Avira Free Antivirus (Avira) -> C:\Program Files (x86)\Avira\AntiVir Desktop\setup.exe /REMOVE
- "Clownfish"=Clownfish for Skype () -> "C:\Program Files (x86)\Clownfish\uninstall.exe"
- "Connection Manager"= () ->
- "DAEMON Tools Lite"=DAEMON Tools Lite (DT Soft Ltd) -> C:\Program Files (x86)\DAEMON Tools Lite\uninst.exe
- "FileZilla Client"=FileZilla Client 3.5.3 (FileZilla Project) -> C:\Program Files (x86)\FileZilla FTP Client\uninstall.exe
- "FM Genie Scout 12_is1"=FM Genie Scout 12 version 1.00 beta 4 () -> "C:\FM Genie Scout 12\unins000.exe"
- "Football Manager 2012_is1"=Football Manager 2012 () -> "C:\Program Files (x86)\SEGA\Football Manager 2012\unins000.exe"
- "Fraps"=Fraps (remove only) () -> "C:\Fraps\uninstall.exe"
- "LogMeIn Hamachi"=LogMeIn Hamachi (LogMeIn, Inc.) -> C:\Windows\SysWOW64\\msiexec.exe /i {7FB413C8-3CAD-49F7-A67C-6EFEB4B04050} REMOVE=ALL
- "Malwarebytes' Anti-Malware_is1"=Malwarebytes Anti-Malware version 1.61.0.1400 (Malwarebytes Corporation) -> "C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe"
- "Mozilla Firefox 11.0 (x86 fr)"=Mozilla Firefox 11.0 (x86 fr) (Mozilla) -> C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
- "NoIPDUC"=No-IP DUC (Vitalwerks Internet Solutions LLC) -> C:\Program Files (x86)\No-IP\Uninstall.exe
- "Notepad++"=Notepad++ () -> C:\Program Files (x86)\Notepad++\uninstall.exe
- "PunkBusterSvc"=PunkBuster Services (Even Balance, Inc.) -> C:\Users\Gurvan\AppData\Roaming\PunkBuster\pbsetup\pbsvc.exe -u
- "Steam App 440"=Team Fortress 2 (Valve) -> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/440
- "TeamSpeak 3 Client"=TeamSpeak 3 Client (TeamSpeak Systems GmbH) -> "C:\Program Files (x86)\TeamSpeak 3 Client\uninstall.exe"
- "TeamViewer 7"=TeamViewer 7 (TeamViewer) -> C:\Program Files (x86)\TeamViewer\Version7\uninstall.exe
- "TI-Graph Link 83 Plus - Français"=TI-Graph Link 83 Plus - Français () -> C:\PROGRA~2\TIEDUC~1\TI-GRA~1\UNWISE.EXE /U /Z C:\PROGRA~2\TIEDUC~1\TI-GRA~1\Install.log
- "TuneUp Utilities 2012"=TuneUp Utilities 2012 (TuneUp Software) -> C:\Program Files (x86)\TuneUp Utilities 2012\TUInstallHelper.exe --Trigger-Uninstall
- "WIC"= () ->
- "WinGimp-2.0_is1"=GIMP 2.6.12-1 (The GIMP Team) -> "C:\Program Files (x86)\GIMP-2.0\setup\unins000.exe"
- "{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1"=ControlCenter (MSI) -> "C:\Program Files (x86)\MSI\ControlCenter\unins000.exe"
- "{048298C9-A4D3-490B-9FF9-AB023A9238F3}"=Steam (Valve Corporation) -> MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
- "{14DDF23F-414A-46DB-4762-56569080292C}"=CCC Help Russian (Advanced Micro Devices, Inc.) ->
- "{21D6A73A-48E6-2195-C408-2158273A914E}"=Catalyst Control Center Localization All (Advanced Micro Devices, Inc.) ->
- "{2596DB11-997F-FC5B-F5C2-737623D9D8B6}"=AMD VISION Engine Control Center (Nom de votre société) ->
- "{266725C1-716F-43AC-BBFB-4201131ED656}"=EasySetPackage (LG Soft India) -> RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{266725C1-716F-43AC-BBFB-4201131ED656}\setup.exe" -l40c -removeonly
- "{26A24AE4-039D-4CA4-87B4-2F83216031FF}"=Java(TM) 6 Update 31 (Oracle) -> MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216031FF}
- "{28904D9A-13A6-ECA2-48D8-21542759D998}"=CCC Help Polish (Advanced Micro Devices, Inc.) ->
- "{2C8BBDA6-79A7-B2DE-3E5B-287E7F667C67}"=CCC Help Danish (Advanced Micro Devices, Inc.) ->
- "{2E119961-E99B-C147-9AC3-A93683172DC1}"=CCC Help Swedish (Advanced Micro Devices, Inc.) ->
- "{32364CEA-7855-4A3C-B674-53D8E9B97936}"=TuneUp Utilities 2012 (TuneUp Software) ->
- "{32A3A4F4-B792-11D6-A78A-00B0D0160310}"=Java(TM) SE Development Kit 6 Update 31 (Oracle) -> MsiExec.exe /I{32A3A4F4-B792-11D6-A78A-00B0D0160310}
- "{33286280-8617-11E1-8FF6-B8AC6F97B88E}"=Google Earth Plug-in (Google) -> MsiExec.exe /X{33286280-8617-11E1-8FF6-B8AC6F97B88E}
- "{33A22B2D-55BA-4508-B767-BF2E9C21A73F}"=Assassin's Creed Revelations (Ubisoft) -> "C:\Program Files (x86)\InstallShield Installation Information\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}\setup.exe" -runfromtemp -l040c -removeonly
- "{44ED90A1-453B-5C9A-D9ED-80D8AB0258B8}"=CCC Help Thai (Advanced Micro Devices, Inc.) ->
- "{45E00595-897E-64B6-28F9-5D0927EBA4A5}"=CCC Help Chinese Standard (Advanced Micro Devices, Inc.) ->
- "{46DE5F4E-BA8B-AC9E-0EED-05B7D93AD215}"=CCC Help Spanish (Advanced Micro Devices, Inc.) ->
- "{4A03706F-666A-4037-7777-5F2748764D10}"=Java Auto Updater (Sun Microsystems, Inc.) ->
- "{4B5F58F7-C7D1-3CE3-9B37-B657F0852643}.KB2478663"= () ->
- "{5454083B-1308-4485-BF17-1110000D8301}"=Grand Theft Auto IV (Rockstar Games Inc.) -> MsiExec.exe /I{5454083B-1308-4485-BF17-1110000D8301}
- "{579BA58C-F33D-4970-9953-B94B43768AC3}"=Grand Theft Auto IV (Rockstar Games) -> "C:\Program Files (x86)\InstallShield Installation Information\{579BA58C-F33D-4970-9953-B94B43768AC3}\setup.exe" -runfromtemp -l040c -removeonly
- "{5B04E832-4530-B8FF-F742-8BE25ADD43BD}"=CCC Help German (Advanced Micro Devices, Inc.) ->
- "{5D58EACA-0317-4CFF-9E13-53CCD525DE32}"=Catalyst Control Center InstallProxy (Advanced Micro Devices, Inc.) ->
- "{5ED93D68-5EAA-9343-9B74-B1E276217264}"=CCC Help Dutch (Advanced Micro Devices, Inc.) ->
- "{6037B8AD-7D5B-4D50-9BCA-A586C44EEF34}"=Ace of Spades (Ben Aksoy) -> MsiExec.exe /I{6037B8AD-7D5B-4D50-9BCA-A586C44EEF34}
- "{65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}"=Adobe AIR (Adobe Systems Incorporated) -> MsiExec.exe /I{65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}
- "{662CFD19-EA80-4EFE-A0D8-EE10EFEB3C83}"=Livestream Procaster (Procaster) -> MsiExec.exe /I{662CFD19-EA80-4EFE-A0D8-EE10EFEB3C83}
- "{6D185295-DE89-9C39-18E6-310C148836EB}"=CCC Help Chinese Traditional (Advanced Micro Devices, Inc.) ->
- "{71A8F958-D272-E262-7C9A-7B8F713EE0C3}"=CCC Help French (Advanced Micro Devices, Inc.) ->
- "{73FFC7D9-3D8F-D20B-502E-587CEBD8AF3A}"=HydraVision (Advanced Micro Devices, Inc.) -> MsiExec.exe /X{73FFC7D9-3D8F-D20B-502E-587CEBD8AF3A}
- "{7513D3F0-55BC-273C-7A53-488394EDBFCC}"=CCC Help Italian (Advanced Micro Devices, Inc.) ->
- "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}"=Apple Software Update (Apple Inc.) -> MsiExec.exe /I{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
- "{79AA9BFA-F962-A1E9-71CE-D0887A92444C}"=CCC Help Portuguese (Advanced Micro Devices, Inc.) ->
- "{7ACEF1BF-9306-5AD7-5F30-ECE72A81E924}"=CCC Help Finnish (Advanced Micro Devices, Inc.) ->
- "{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}"=LogMeIn Hamachi (LogMeIn, Inc.) -> MsiExec.exe /I{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}
- "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}"=Realtek Ethernet Controller Driver (Realtek) -> C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\SETUP.EXE -runfromtemp -removeonly
- "{888F1505-C2B3-4FDE-835D-36353EBD4754}"=Ubisoft Game Launcher (UBISOFT) -> "C:\Program Files (x86)\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -runfromtemp -l0409 -removeonly
- "{92606477-9366-4D3B-8AE3-6BE4B29727AB}"=League of Legends (Riot Games) -> "C:\Program Files (x86)\InstallShield Installation Information\{92606477-9366-4D3B-8AE3-6BE4B29727AB}\setup.exe" -runfromtemp -l040c -removeonly
- "{980A182F-E0A2-4A40-94C1-AE0C1235902E}"=Pando Media Booster (Pando Networks Inc.) -> C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe
- "{9C1EC871-05B9-03B7-96F6-9BD5C0D8F41D}"=Catalyst Control Center Graphics Previews Common (Advanced Micro Devices, Inc.) ->
- "{A8B94669-8654-4126-BD28-D0D2412CDED6}"=TI Connect 1.6 (Texas Instruments Incorporated) -> MsiExec.exe /I{A8B94669-8654-4126-BD28-D0D2412CDED6}
- "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}"=Google Update Helper (Google Inc.) -> MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
- "{A95A76C9-6F65-477E-83A0-9F884B6DC21B}"=TuneUp Utilities Language Pack (en-US) (TuneUp Software) ->
- "{AC76BA86-7AD7-1036-7B44-AA1000000001}"=Adobe Reader X (10.1.3) - Français (Adobe Systems Incorporated) -> MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-AA1000000001}
- "{B6CF2967-C81E-40C0-9815-C05774FEF120}"=Skype Click to Call (Skype Technologies S.A.) -> MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
- "{C4129D57-5C83-3BF0-A11A-3798C008C6C7}"=CCC Help Greek (Advanced Micro Devices, Inc.) ->
- "{D0BC4101-6C30-ECFF-F693-63408134F29B}"=CCC Help Czech (Advanced Micro Devices, Inc.) ->
- "{D2402DAD-B180-A4A0-261D-4A8933BFBFEE}"=CCC Help Japanese (Advanced Micro Devices, Inc.) ->
- "{DA7E8D81-2B14-415B-8FC5-02CE4CF9F839}"=CCC Help Hungarian (Advanced Micro Devices, Inc.) ->
- "{DB3FBD3C-A061-34C9-0A2B-6CCDD8C96640}"=CCC Help Turkish (Advanced Micro Devices, Inc.) ->
- "{E086E914-2928-48F9-364B-0C715DFF6A45}"=CCC Help Korean (Advanced Micro Devices, Inc.) ->
- "{E1019541-10A2-464F-A23E-A4F23DA65160}"=Mumble 1.2.3 (Thorvald Natvig) -> MsiExec.exe /I{E1019541-10A2-464F-A23E-A4F23DA65160}
- "{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}"=Catalyst Control Center - Branding (Advanced Micro Devices, Inc.) -> MsiExec.exe /I{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}
- "{E8F30BD6-ABAB-C24E-E9A7-BF67EB96152C}"=CCC Help Norwegian (Advanced Micro Devices, Inc.) ->
- "{E9A5B6CD-7ABB-F295-2E11-F25BC322FF80}"=CCC Help English (Advanced Micro Devices, Inc.) ->
- "{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}"=Apple Application Support (Apple Inc.) -> MsiExec.exe /I{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}
- "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}"=Skype™ 5.10 (Skype Technologies S.A.) -> MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
- "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}"=Realtek High Definition Audio Driver (Realtek Semiconductor Corp.) -> RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\SETUP.EXE" -removeonly
- "{F2835483-37F2-4123-B4FE-0E77D58447F2}"=Far Cry 2 (Ubisoft) -> "C:\Program Files (x86)\InstallShield Installation Information\{F2835483-37F2-4123-B4FE-0E77D58447F2}\setup.exe" -runfromtemp -l040c -removeonly
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2162169"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2446708"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2446708v2"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2473228"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2478063"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2478663"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2514805"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2544514"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2572063"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2599651"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600211"= () ->
- "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2639327"= () ->
- 18:48:54
- ¤¤¤¤¤¤¤¤¤¤ | Contrôle de(s) Partition(s)
- Disk: 0 Size=238G
- Pos MBRndx Type/Name Size Active Hide Start Sector Sectors
- --- ------ ---------- ---- ------ ---- ------------ ------------
- 0 0 07-NTFS 100M Yes No 2,048 204,800
- 1 1 07-NTFS 238G No No 206,848 488,185,856
- ¤¤¤¤¤¤¤¤¤¤ | Contrôle du MBR
- MBR code signature : 98 ED 90 6D
- Systeme 64 bits non supporté par Mbr.exe , Dump : C:\Pre_Scan\MBR.Bin
- ¤¤¤¤¤¤¤¤¤¤ | Modules chargés dans Explorer
- explorer.exe pid: 4808
- Command line: Explorer.exe
- Base Size Path
- 00000000ffc60000 2c0000 C:\Windows\Explorer.exe
- 0000000077740000 1a9000 C:\Windows\SYSTEM32\ntdll.dll
- 0000000077620000 11f000 C:\Windows\system32\kernel32.dll
- 00000000fd8b0000 6c000 C:\Windows\system32\KERNELBASE.dll
- 00000000ff4b0000 db000 C:\Windows\system32\ADVAPI32.dll
- 00000000fdd00000 9f000 C:\Windows\system32\msvcrt.dll
- 00000000fda60000 1f000 C:\Windows\SYSTEM32\sechost.dll
- 00000000fdf30000 12d000 C:\Windows\system32\RPCRT4.dll
- 00000000ff980000 67000 C:\Windows\system32\GDI32.dll
- 0000000077520000 fa000 C:\Windows\system32\USER32.dll
- 00000000ff8f0000 e000 C:\Windows\system32\LPK.dll
- 00000000fe3a0000 c9000 C:\Windows\system32\USP10.dll
- 00000000fdeb0000 71000 C:\Windows\system32\SHLWAPI.dll
- 00000000fe5f0000 d88000 C:\Windows\system32\SHELL32.dll
- 00000000fe190000 203000 C:\Windows\system32\ole32.dll
- 00000000ff770000 d7000 C:\Windows\system32\OLEAUT32.dll
- 00000000f9a20000 1ca000 C:\Windows\system32\EXPLORERFRAME.dll
- 00000000fb870000 43000 C:\Windows\system32\DUser.dll
- 00000000fb9a0000 f2000 C:\Windows\system32\DUI70.dll
- 00000000fe150000 2e000 C:\Windows\system32\IMM32.dll
- 00000000fdda0000 109000 C:\Windows\system32\MSCTF.dll
- 00000000fbcd0000 56000 C:\Windows\system32\UxTheme.dll
- 00000000fc7b0000 2c000 C:\Windows\system32\POWRPROF.dll
- 00000000ff590000 1d7000 C:\Windows\system32\SETUPAPI.dll
- 00000000fd9e0000 36000 C:\Windows\system32\CFGMGR32.dll
- 00000000fd920000 1a000 C:\Windows\system32\DEVOBJ.dll
- 00000000fb970000 18000 C:\Windows\system32\dwmapi.dll
- 00000000fb410000 b000 C:\Windows\system32\slc.dll
- 00000000fbaa0000 216000 C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\gdiplus.dll
- 00000000fd370000 b000 C:\Windows\system32\Secur32.dll
- 00000000fd530000 25000 C:\Windows\system32\SSPICLI.DLL
- 00000000fbe60000 12c000 C:\Windows\system32\PROPSYS.dll
- 00000000fd0a0000 3d000 C:\Windows\system32\WINSTA.dll
- 00000000fd5c0000 f000 C:\Windows\system32\CRYPTBASE.dll
- 00000000fbfe0000 1f4000 C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
- 00000000fb6e0000 12a000 C:\Windows\system32\WindowsCodecs.dll
- 00000000fd690000 f000 C:\Windows\system32\profapi.dll
- 00000000fd560000 57000 C:\Windows\system32\apphelp.dll
- 00000000fe0b0000 99000 C:\Windows\system32\CLBCatQ.DLL
- 0000000010000000 1c000 C:\Users\Gurvan\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
- 00000000fc670000 125000 C:\Windows\system32\dbghelp.dll
- 00000000f9980000 96000 C:\Windows\system32\msvcp60.dll
- 00000000f9940000 35000 C:\Windows\system32\EhStorShell.dll
- 00000000f8230000 672000 C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
- 0000000072080000 a3000 C:\Windows\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\MSVCR90.dll
- 0000000071fa0000 d3000 C:\Windows\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\MSVCP90.dll
- 0000000071f70000 2f000 C:\Windows\WinSxS\amd64_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.6161_none_0a1fd3a3a768b895\ATL90.DLL
- 00000000f6ef0000 41a000 C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE14\Cultures\office.odf
- 00000000f5320000 888000 C:\PROGRA~1\MICROS~2\Office14\1036\GrooveIntlResource.dll
- 00000000f6800000 80000 C:\Windows\system32\ntshrui.dll
- 00000000fd200000 23000 C:\Windows\system32\srvcli.dll
- 00000000f9bf0000 f000 C:\Windows\system32\cscapi.dll
- 00000000f5310000 8000 C:\Windows\system32\IconCodecService.dll
- 00000000fcf20000 17000 C:\Windows\system32\CRYPTSP.dll
- 00000000fcc20000 47000 C:\Windows\system32\rsaenh.dll
- 00000000fd670000 14000 C:\Windows\system32\RpcRtRemote.dll
- 00000000fb810000 3b000 C:\Windows\system32\SndVolSSO.DLL
- 00000000fb990000 b000 C:\Windows\system32\HID.DLL
- 00000000fbd60000 4b000 C:\Windows\System32\MMDevApi.dll
- 00000000f7dc0000 83000 C:\Windows\system32\timedate.cpl
- 00000000fb440000 19000 C:\Windows\system32\ATL.DLL
- 00000000f68d0000 ee000 C:\Windows\system32\actxprxy.dll
- 00000000fbd30000 2d000 C:\Windows\system32\ntmarta.dll
- 00000000ff9f0000 52000 C:\Windows\system32\WLDAP32.dll
- 00000000f6890000 34000 C:\Windows\System32\shdocvw.dll
- 00000000f6880000 c000 C:\Windows\system32\LINKINFO.dll
- 00000000fa240000 3d000 C:\Windows\system32\msutb.dll
- 00000000f8920000 2a3000 C:\Windows\System32\gameux.dll
- 00000000fb930000 35000 C:\Windows\System32\XmlLite.dll
- 00000000fd740000 16a000 C:\Windows\system32\CRYPT32.dll
- 00000000fd730000 f000 C:\Windows\system32\MSASN1.dll
- 00000000f7a90000 7c000 C:\Windows\System32\wer.dll
- 00000000fbfb0000 24000 C:\Windows\System32\shacct.dll
- 00000000fbf90000 1d000 C:\Windows\system32\SAMLIB.dll
- 00000000fb5c0000 14000 C:\Windows\system32\samcli.dll
- 00000000fb600000 c000 C:\Windows\system32\netutils.dll
- 00000000fc5a0000 c6000 C:\Windows\system32\MsftEdit.dll
- 00000000f7980000 3b000 C:\Windows\system32\msls31.dll
- 00000000fc520000 7f000 C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll
- 00000000fc510000 9000 C:\Windows\system32\msiltcfg.dll
- 00000000fc7a0000 c000 C:\Windows\system32\VERSION.dll
- 00000000f37d0000 317000 C:\Windows\system32\msi.dll
- 00000000f7be0000 1da000 C:\Windows\system32\authui.dll
- 00000000f4b60000 109000 C:\Windows\system32\CRYPTUI.dll
- 00000000fc210000 d7000 C:\Windows\system32\SearchFolder.dll
- 00000000fc490000 7b000 C:\Windows\System32\StructuredQuery.dll
- 00000000f3f20000 bc0000 C:\Windows\System32\ieframe.dll
- 0000000077910000 7000 C:\Windows\system32\PSAPI.DLL
- 00000000fb0e0000 54000 C:\Windows\System32\OLEACC.dll
- 00000000fda80000 25b000 C:\Windows\system32\iertutil.dll
- 00000000fe470000 179000 C:\Windows\system32\urlmon.dll
- 00000000ff380000 12a000 C:\Windows\system32\WININET.dll
- 00000000f3d80000 19c000 C:\Windows\system32\NetworkExplorer.dll
- 00000000f9fd0000 18000 C:\Windows\system32\MPR.dll
- 00000000fc1e0000 a000 C:\Windows\System32\drprov.dll
- 00000000fb6b0000 22000 C:\Windows\System32\ntlanman.dll
- 00000000fb690000 1c000 C:\Windows\System32\davclnt.dll
- 00000000fb920000 a000 C:\Windows\System32\DAVHLPR.dll
- 00000000fa1f0000 3b000 C:\Windows\system32\WINMM.dll
- 00000000fb360000 3b000 C:\Windows\system32\wdmaud.drv
- 00000000713b0000 6000 C:\Windows\system32\ksuser.dll
- 00000000fbcc0000 9000 C:\Windows\system32\AVRT.dll
- 00000000fb8d0000 4f000 C:\Windows\system32\AUDIOSES.DLL
- 00000000fb8c0000 a000 C:\Windows\system32\msacm32.drv
- 00000000fb340000 18000 C:\Windows\system32\MSACM32.dll
- 00000000fb680000 9000 C:\Windows\system32\midimap.dll
- 00000000fb1d0000 18000 C:\Windows\System32\l3codeca.acm
- 00000000fa870000 1f2000 C:\Windows\System32\msxml6.dll
- 00000000fb1a0000 21000 C:\Windows\System32\UIAnimation.dll
- 00000000fa420000 43000 C:\Windows\system32\stobject.dll
- 00000000f9c40000 ba000 C:\Windows\system32\BatMeter.dll
- 00000000fc8a0000 11000 C:\Windows\system32\WTSAPI32.dll
- 00000000fb3a0000 67000 C:\Windows\system32\es.dll
- 00000000fa360000 69000 C:\Windows\system32\prnfldr.dll
- 00000000fa2e0000 71000 C:\Windows\system32\WINSPOOL.DRV
- 00000000f9d50000 33000 C:\Windows\system32\FunDisc.dll
- 00000000fb5a0000 17000 C:\Windows\system32\fdproxy.dll
- 00000000fb020000 31000 C:\Windows\System32\provsvc.dll
- 00000000fe060000 4d000 C:\Windows\system32\WS2_32.dll
- 00000000fe180000 8000 C:\Windows\system32\NSI.dll
- 00000000f9f50000 74000 C:\Windows\system32\dxp.dll
- 00000000fb140000 16000 C:\Windows\system32\Syncreg.dll
- 00000000faf00000 b000 C:\Windows\ehome\ehSSO.dll
- 00000000f2ef0000 28b000 C:\Windows\System32\netshell.dll
- 00000000fafe0000 27000 C:\Windows\System32\IPHLPAPI.DLL
- 00000000fafd0000 b000 C:\Windows\System32\WINNSI.DLL
- 00000000fb4a0000 15000 C:\Windows\System32\nlaapi.dll
- 00000000fa2d0000 10000 C:\Windows\System32\AltTab.dll
- 00000000fa2b0000 20000 C:\Windows\system32\wpdshserviceobj.dll
- 00000000fa000000 39000 C:\Windows\system32\PortableDeviceTypes.dll
- 00000000f2dd0000 bd000 C:\Windows\system32\PortableDeviceApi.dll
- 0000000080000000 1e000 C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
- 00000000fda20000 3a000 C:\Windows\system32\WINTRUST.dll
- 00000000f9310000 127000 C:\Windows\system32\taskschd.dll
- 00000000f3610000 1bd000 C:\Windows\System32\pnidui.dll
- 00000000fa290000 1f000 C:\Windows\System32\QUtil.dll
- 00000000fd170000 6d000 C:\Windows\System32\wevtapi.dll
- 00000000fadc0000 11000 C:\Windows\system32\dhcpcsvc6.DLL
- 00000000fada0000 18000 C:\Windows\system32\dhcpcsvc.DLL
- 00000000fcb20000 a000 C:\Windows\system32\credssp.dll
- 00000000fb590000 c000 C:\Windows\System32\npmproxy.dll
- 00000000f9c20000 1d000 C:\Windows\system32\mssprxy.dll
- 00000000f88c0000 58000 C:\Windows\System32\srchadmin.dll
- 00000000fc9d0000 1e000 C:\Windows\System32\USERENV.dll
- 00000000f9d30000 20000 C:\Windows\system32\Wlanapi.dll
- 00000000faab0000 7000 C:\Windows\system32\wlanutil.dll
- 00000000f7a30000 5e000 C:\Windows\system32\wwanapi.dll
- 00000000fa280000 d000 C:\Windows\system32\wwapi.dll
- 00000000f7b90000 45000 C:\Windows\System32\QAgent.dll
- 00000000f2770000 b5000 C:\Windows\System32\bthprops.cpl
- 00000000f2180000 c2000 C:\Windows\System32\Actioncenter.dll
- 00000000ed840000 22b000 C:\Windows\System32\SyncCenter.dll
- 00000000f1260000 7f000 C:\Windows\system32\imapi2.dll
- 00000000f7920000 55000 C:\Windows\System32\hgcpl.dll
- 00000000f6af0000 74000 C:\Windows\System32\netprofm.dll
- 00000000f0680000 3d000 C:\Windows\system32\hgprint.dll
- 00000000fd5d0000 91000 C:\Windows\system32\SXS.DLL
- 00000000fb5e0000 15000 C:\Windows\system32\wkscli.dll
- 00000000f2ac0000 d7000 C:\Windows\system32\fxsst.dll
- 00000000f0a60000 9d000 C:\Windows\system32\FXSAPI.dll
- 0000000074a50000 e3000 C:\Windows\system32\FXSRESM.DLL
- 00000000f34c0000 28000 C:\Windows\System32\wscinterop.dll
- 00000000f9500000 13000 C:\Windows\System32\WSCAPI.dll
- 00000000f03d0000 11f000 C:\Windows\System32\wscui.cpl
- 00000000ef370000 13c000 C:\Windows\System32\werconcpl.dll
- 00000000f2ea0000 4c000 C:\Windows\System32\framedynos.dll
- 00000000f35c0000 19000 C:\Windows\System32\wercplsupport.dll
- 00000000fcd40000 5b000 C:\Windows\system32\dnsapi.DLL
- 00000000f9780000 11000 C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
- 00000000f34b0000 b000 C:\Windows\System32\hcproviders.dll
- 00000000f06c0000 73000 C:\Program Files\Internet Explorer\ieproxy.dll
- 00000000f1160000 f1000 C:\Windows\system32\ddraw.dll
- 00000000f34a0000 8000 C:\Windows\system32\DCIMAN32.dll
- 00000000f3480000 f000 C:\Windows\system32\atiu9p64.dll
- ¤¤¤¤¤¤¤¤¤¤ | Modules chargés dans Winlogon
- winlogon.exe pid: 624
- Command line: winlogon.exe
- Base Size Path
- 00000000ffb60000 62000 C:\Windows\system32\winlogon.exe
- 0000000077740000 1a9000 C:\Windows\SYSTEM32\ntdll.dll
- 0000000077620000 11f000 C:\Windows\system32\kernel32.dll
- 00000000fd8b0000 6c000 C:\Windows\system32\KERNELBASE.dll
- 0000000077520000 fa000 C:\Windows\system32\USER32.dll
- 00000000ff980000 67000 C:\Windows\system32\GDI32.dll
- 00000000ff8f0000 e000 C:\Windows\system32\LPK.dll
- 00000000fe3a0000 c9000 C:\Windows\system32\USP10.dll
- 00000000fdd00000 9f000 C:\Windows\system32\msvcrt.dll
- 00000000fd0a0000 3d000 C:\Windows\system32\WINSTA.dll
- 00000000fdf30000 12d000 C:\Windows\system32\RPCRT4.dll
- 00000000fe150000 2e000 C:\Windows\system32\IMM32.DLL
- 00000000fdda0000 109000 C:\Windows\system32\MSCTF.dll
- 00000000ff4b0000 db000 C:\Windows\system32\ADVAPI32.dll
- 00000000fda60000 1f000 C:\Windows\SYSTEM32\sechost.dll
- 00000000fd690000 f000 C:\Windows\system32\profapi.dll
- 00000000fd670000 14000 C:\Windows\system32\RpcRtRemote.dll
- 00000000fd560000 57000 C:\Windows\system32\apphelp.dll
- 00000000fb1f0000 a000 C:\Windows\system32\UXINIT.dll
- 00000000fbcd0000 56000 C:\Windows\system32\UxTheme.dll
- 00000000fcf20000 17000 C:\Windows\system32\CRYPTSP.dll
- 00000000fcc20000 47000 C:\Windows\system32\rsaenh.dll
- 00000000fd5c0000 f000 C:\Windows\system32\CRYPTBASE.dll
- 00000000fb6e0000 12a000 C:\Windows\system32\WindowsCodecs.dll
- 00000000fe190000 203000 C:\Windows\system32\ole32.dll
- 00000000fb5e0000 15000 C:\Windows\system32\wkscli.dll
- 00000000fd030000 32000 C:\Windows\system32\netjoin.dll
- 00000000fb600000 c000 C:\Windows\system32\netutils.dll
- 00000000fd530000 25000 C:\Windows\system32\SspiCli.dll
- 00000000fb410000 b000 C:\Windows\system32\slc.dll
- 00000000f9fd0000 18000 C:\Windows\system32\MPR.dll
- 00000000fd130000 2f000 C:\Windows\system32\AUTHZ.dll
- ¤¤¤¤¤¤¤¤¤¤ | Modules chargés dans Services
- services.exe pid: 560
- Command line: C:\Windows\system32\services.exe
- Base Size Path
- 00000000ff360000 53000 C:\Windows\system32\services.exe
- 0000000077740000 1a9000 C:\Windows\SYSTEM32\ntdll.dll
- 0000000077620000 11f000 C:\Windows\system32\kernel32.dll
- 00000000fd8b0000 6c000 C:\Windows\system32\KERNELBASE.dll
- 00000000fdd00000 9f000 C:\Windows\system32\msvcrt.dll
- 00000000fdf30000 12d000 C:\Windows\system32\RPCRT4.dll
- 00000000fd530000 25000 C:\Windows\system32\SspiCli.dll
- 00000000fd690000 f000 C:\Windows\system32\profapi.dll
- 00000000fda60000 1f000 C:\Windows\SYSTEM32\sechost.dll
- 00000000fd5c0000 f000 C:\Windows\system32\CRYPTBASE.dll
- 00000000fd500000 19000 C:\Windows\system32\scext.dll
- 0000000077520000 fa000 C:\Windows\system32\USER32.dll
- 00000000ff980000 67000 C:\Windows\system32\GDI32.dll
- 00000000ff8f0000 e000 C:\Windows\system32\LPK.dll
- 00000000fe3a0000 c9000 C:\Windows\system32\USP10.dll
- 00000000fd370000 b000 C:\Windows\system32\Secur32.dll
- 00000000fd2f0000 67000 C:\Windows\system32\SCESRV.dll
- 00000000fd200000 23000 C:\Windows\system32\srvcli.dll
- 00000000fe150000 2e000 C:\Windows\system32\IMM32.DLL
- 00000000fdda0000 109000 C:\Windows\system32\MSCTF.dll
- 00000000fd670000 14000 C:\Windows\system32\RpcRtRemote.dll
- 00000000fcb20000 a000 C:\Windows\system32\credssp.dll
- 00000000fd130000 2f000 C:\Windows\system32\AUTHZ.dll
- 00000000fcaa0000 39000 C:\Windows\system32\UBPM.dll
- 00000000ff4b0000 db000 C:\Windows\system32\ADVAPI32.dll
- 00000000fd560000 57000 C:\Windows\system32\apphelp.dll
- 00000000fc8a0000 11000 C:\Windows\system32\WTSAPI32.dll
- 00000000fd0a0000 3d000 C:\Windows\system32\WINSTA.dll
- 00000000fe060000 4d000 C:\Windows\system32\WS2_32.dll
- 00000000fe180000 8000 C:\Windows\system32\NSI.dll
- 00000000fcec0000 55000 C:\Windows\system32\mswsock.dll
- 00000000fc8c0000 7000 C:\Windows\System32\wshtcpip.dll
- 00000000fceb0000 7000 C:\Windows\System32\wship6.dll
- 18:48:55
- ¤¤¤¤¤¤¤¤¤¤ | Security Center
- [HKLM | Security Center]|[AntiVirusDisableNotify] : 0
- [HKLM | Security Center]|[FirewallDisableNotify] : 0
- [HKLM | Security Center]|[UpdatesDisableNotify] : 0
- [HKLM | FirewallPolicy\DomainProfile]|[DisableNotifications] : 0
- [HKLM | FirewallPolicy\StandardProfile]|[DisableNotifications] : 0
- ¤¤¤¤¤¤¤¤¤¤ | Ports
- 18:48:56
- ¤¤¤¤¤¤¤¤¤¤ | Fichiers cachés
- ~ [Disque C:] Dossiers : 1 | Fichiers : 0 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 1 | Fichiers : 0
- ~ [Program Files] Dossiers : 1 | Fichiers : 6 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 1 | Fichiers : 6
- ~ [Utilisateurs] Dossiers : 2 | Fichiers : 0 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 2 | Fichiers : 0
- ~ [Music] Dossiers : 0 | Fichiers : 2 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 0 | Fichiers : 2
- ~ [Images] Dossiers : 0 | Fichiers : 0
- ~ [Videos] Dossiers : 0 | Fichiers : 0
- ~ [Downloads] Dossiers : 0 | Fichiers : 4 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 0 | Fichiers : 4
- ~ [Desktop] Dossiers : 0 | Fichiers : 1 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 0 | Fichiers : 1
- ~ [Links] Dossiers : 0 | Fichiers : 0
- ~ [Searches] Dossiers : 0 | Fichiers : 2 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 0 | Fichiers : 2
- ~ [Contacts] Dossiers : 0 | Fichiers : 0
- ~ [Saved Games] Dossiers : 0 | Fichiers : 0
- ~ [Favorites] Dossiers : 0 | Fichiers : 0
- ~ [Documents] Dossiers : 3 | Fichiers : 0 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 3 | Fichiers : 0
- ~ [Windows] Dossiers : 52 | Fichiers : 171 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 52 | Fichiers : 171
- ~ [Start_Menu] Dossiers : 1 | Fichiers : 0 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 1 | Fichiers : 0
- ~ [Libraries] Dossiers : 0 | Fichiers : 0
- ~ [Quick Launch] Dossiers : 1 | Fichiers : 0 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 1 | Fichiers : 0
- ~ [AppData] Dossiers : 2 | Fichiers : 8 ¤¤¤¤¤ Réattribution ¤¤¤¤¤ Dossiers : 2 | Fichiers : 8
- ¤¤¤¤¤
- [HKLM | Winlogon] | AutoRestartShell : 0 -> 1
- Pre_Script.exe : Pour l'utiliser , relancer Pre_scan et choisir l'option script
- Fin : 18:49:50
- ¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement