Voici le rapport ... (en 2 fois parce que trop long)
Rapport de ZHPDiag v1.27.22 par Nicolas Coolman, Update du 02/06/2011
Run by **** at 03/06/2011 12:01:59
Web site :
http://www.premiumorange.com/zeb-help-p ... pdiag.html
---\\ Web Browser
MSIE: Internet Explorer v7.0.6002.18005
GCIE: Google Chrome v11.0.696.71 (Defaut)
---\\ System Information
Windows Vista Home Premium Edition, 64-bit Service Pack 2 (Build 6002)
Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 4091 MB (57% free)
System Restore: Activé (Enable)
System drive C: has 89 GB (41%) free of 218 GB
---\\ Logged in mode
Computer Name: ******
User Name: *****
All Users Names: *****, Administrateur,
Unselected Option: None
Logged in as Administrator
---\\ Environnement Variables
%AppData%=C:\Users\Cat\AppData\Roaming
%LocalAppData%=C:\Users\Cat\AppData\Local
%StartMenu%=C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 89 Go of 218 Go)
E:\ Hard drive, Flash drive, Thumb drive (Free 8 Go of 15 Go)
F:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
---\\ Recherche particulière de fichiers génériques
[MD5.6B08E54A451B3F95E4109DBA7E594270] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 08:10:17.) -- C:\Windows\Explorer.exe [3079168]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 03:48:04.) -- C:\Windows\system32\Wininit.exe [96768]
[MD5.565B8A25FB59E8E1F5ED59C95F72B7D7] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.16/12/2009 12:44:23.) -- C:\Windows\system32\wininet.dll [834048]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 07:28:13.) -- C:\Windows\system32\Winlogon.exe [314368]
---\\ Processus lancés
[MD5.69F5C5105CCCBEF036E993B66E47F951] - (.PC Tools - PC Tools GUI Application.) -- C:\Program Files (x86)\PC Tools Security\pctsGui.exe [1589208]
[MD5.6D8D4EF5E23EC7A3E739BBD9AE941961] - (.PCTuto - autoupdater.) -- C:\Users\Cat\AppData\Roaming\PCTuto\PCTuto\autoupdater.exe [663168]
[MD5.2521D0C1B65ACB7752CA365F538949E4] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe [178712]
[MD5.CF03C8F6F6B0D71F6E5BCE167FCF7CA6] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [214360]
[MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [281768]
[MD5.80B8AE8E18FF57BE13FF4A5959DB0EC1] - (.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe [184320]
[MD5.F0898E9BD7C914FB7389F393D189B32F] - (.Hewlett-Packard Co. - HP CUE Alert Popup Window Objects.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe [569344]
[MD5.02BA843D4CE87D612981E89ED5A04306] - (.Google Inc. - Google Chrome.) -- C:\Users\Cat\AppData\Local\Google\Chrome\Application\chrome.exe [1010232]
[MD5.4B555106290BD117334E9A08761C035A] - (...) -- C:\Windows\SysWOW64\rundll32.exe [44544]
[MD5.594014456D0376335B605EA071432692] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [2067968]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Cat\AppData\Local\Google\Update\1.3.21.53\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Cat\AppData\Local\Google\Update\1.3.21.53\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [pandonetworks.com/PandoWebPlugin] - (.Pando Networks - Pando Web Plugin.) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage]
http://www.google.fr
G2 - GCE: Preference [User Data\Default] [bkgdbohcihpkncnommadnmaicpjikfni] AT_BoaMistura v.2 (Activé)
G2 - GCE: Preference [User Data\Default] [fheoggkfdfchfphceeifdbepaooicaho] McAfee SiteAdvisor v.3.31.131.2 (Activé)
G2 - GCE: Preference [User Data\Default] [fllaojicojecljbmefodhfapmkghcbnh] Désactivation de Google Analytics v.0.9.0 (Activé)
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com
R0 - HKUS\S-1-5-21-997353284-3083872996-573379082-1000\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://g.uk.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (7.00.6000.16386 (vista_rtm.061101-2205)) -- C:\Windows\system32\ieframe.dll
R3 - URLSearchHook: (no name) [64Bits] - {472734EA-242A-422b-ADF8-83D1E48CC825} Clé orpheline
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll
O2 - BHO: (no name) [64Bits] - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} Clé orpheline
O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} Clé orpheline
---\\ ---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe (.not file.)
O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [QuickSet] . (.Dell Inc. - QuickSet.) -- C:\Program Files\Dell\QuickSet\QuickSet.exe
O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Wow6432Node\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Wow6432Node\Run: [QuickSet] . (.Dell Inc. - QuickSet.) -- C:\Program Files\Dell\QuickSet\QuickSet.exe
O4 - HKLM\..\Wow6432Node\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-21-997353284-3083872996-573379082-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-21-997353284-3083872996-573379082-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-997353284-3083872996-573379082-1000\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe (.not file.)
O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk . (.Hewlett-Packard Co..) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
---\\ ---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Users\Cat\Desktop\Auslogics Disk Defrag.lnk . (.Auslogics.) -- C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
O4 - Global Startup: C:\Users\Cat\Desktop\Téléchargement - Raccourci.lnk . (...) -- C:\Users\Cat\Downloads
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Avira AntiVir Control Center.lnk . (.Avira GmbH.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Calculator.lnk . (.Microsoft Corporation.) -- C:\Windows\System32\calc.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk . (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CDBurnerXP.lnk . (.Canneverbe Limited.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Clean disk with 1 click.lnk . (.WiseCleaner.com.) -- C:\Program Files (x86)\Wise Disk Cleaner\WiseDiskCleaner.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Corbeille - Raccourci.lnk - Clé orpheline
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Débrancher clé USB.lnk . (...) -- C:\Windows\System32\rundll32.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FastStone Capture.lnk . (...) -- C:\Program Files (x86)\FastStone Capture\FSCapture.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FastStone Image Viewer.lnk . (...) -- C:\Program Files (x86)\FastStone Image Viewer\FSViewer.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Glary Utilities.lnk . (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities\Integrator.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Users\Cat\AppData\Local\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Inkscape.lnk . (.inkscape.org.) -- C:\Program Files (x86)\Inkscape\inkscape.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\KMPlayer.lnk . (.Pandora.TV.) -- C:\Program Files (x86)\The KMPlayer\KMPlayer.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MyDefrag.lnk . (.J.C. Kessels.) -- C:\Program Files\MyDefrag v4.3.1\MyDefrag.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Notepad.lnk . (.Microsoft Corporation.) -- C:\Windows\System32\notepad.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\OpenOffice.org 3.3.lnk . (.OpenOffice.org.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- C:\Program Files (x86)\PhotoFiltre\photofiltre.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller.lnk . (.VS Revo Group.) -- C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Scribus 1.3.3.14.lnk . (.The Scribus Team.) -- C:\Program Files (x86)\Scribus 1.3.3.14\Scribus.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sound Recorder.lnk . (.Microsoft Corporation.) -- C:\Windows\System32\SoundRecorder.exe (.not file.)
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spyware Doctor.lnk . (.PC Tools.) -- C:\Program Files (x86)\PC Tools Security\pctsGui.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Visionneuse Microsoft PowerPoint .lnk . (...) -- C:\Windows\Installer\{95140000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\VSO Image Resizer 4.lnk . (.VSO Software SARL.) -- C:\Program Files (x86)\VSO\Image Resizer 4\Resize.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Defender.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Live Messenger.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O4 - Global Startup: C:\Users\Cat\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] http.localhost
O15 - Trusted Zone: [HKCU\...\Domains\www] http.localhost
---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) -
http://test.catalog.update.microsoft.co ... 6275603301
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{80DC0576-0FF4-4AF9-8383-385EC7D372FD}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{AF58A35B-9643-4412-995F-448A426D0244}: DhcpNameServer = 172.168.1.161
O17 - HKLM\System\CS1\Services\Tcpip\..\{80DC0576-0FF4-4AF9-8383-385EC7D372FD}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{AF58A35B-9643-4412-995F-448A426D0244}: DhcpNameServer = 172.168.1.161
O17 - HKLM\System\CS2\Services\Tcpip\..\{80DC0576-0FF4-4AF9-8383-385EC7D372FD}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS2\Services\Tcpip\..\{AF58A35B-9643-4412-995F-448A426D0244}: DhcpNameServer = 172.168.1.161
O17 - HKLM\System\CS3\Services\Tcpip\..\{80DC0576-0FF4-4AF9-8383-385EC7D372FD}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{AF58A35B-9643-4412-995F-448A426D0244}: DhcpNameServer = 172.168.1.161
O17 - HKLM\System\CCS\Services\Tcpip\..\{80DC0576-0FF4-4AF9-8383-385EC7D372FD}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{80DC0576-0FF4-4AF9-8383-385EC7D372FD}: DhcpDomain = lan
O17 - HKLM\System\CS2\Services\Tcpip\..\{80DC0576-0FF4-4AF9-8383-385EC7D372FD}: DhcpDomain = lan
O17 - HKLM\System\CS3\Services\Tcpip\..\{80DC0576-0FF4-4AF9-8383-385EC7D372FD}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\system32\webcheck.dll
---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) [64Bits] - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_15f4e438\AESTSr64.exe
O23 - Service: (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\system32\Ati2evxx.exe
O23 - Service: (eStantLaunchService) . (.TechCity Solutions France - eSTantAutoRunService.) - C:\Program Files (x86)\BboxUpdate\eSRunService.exe
O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: (gupdatem) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: (gusvc) . (.Google - gusvc.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: (IDriverT) . (.Macrovision Corporation - IDriverT Module.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: (npggsvc) . (.INCA Internet Co., Ltd. - nProtect Game Monitor Rev 1447.) - C:\Windows\system32\GameMon.des
O23 - Service: (PCD5SRVC{048DBD20-445E8C82-05040104}) . (...) - C:\PROGRA~2\DELLSU~1\HWDiag\bin\PCD5SRVC_x64.pkms
O23 - Service: (PCDSRVC{1E208CE0-FB7451FF-06020101}_0) . (.PC-Doctor, Inc. - Kernel Driver.) - c:\program files\dell support center\pcdsrvc_x64.pkms
O23 - Service: (sdAuxService) . (.PC Tools - PC Tools Auxiliary Service.) - C:\Program Files (x86)\PC Tools Security\pctsAuxs.exe
O23 - Service: (sdCoreService) . (.PC Tools - PC Tools Security Service.) - C:\Program Files (x86)\PC Tools Security\pctsSvc.exe
O23 - Service: (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_15f4e438\STacSV64.exe
O23 - Service: (stllssvr) . (.MicroVision Development, Inc. - SureThing Labelflash Disc Printer Service M.) - C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: (wlidsvc) . (.Microsoft Corp. - Microsoft® Windows Live ID Service.) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.exe
O23 - Service: (wltrysvc) . (...) - C:\Windows\System32\WLTRYSVC.exe
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GlaryInitialize.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Google Software Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-997353284-3083872996-573379082-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\SystemToolsDailyTest.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\User_Feed_Synchronization-{58A47222-53C5-4E05-9766-D297F293DB22}.job
[MD5.923E02CA12F54B2F086DDB9C683E46E5] [APT] [GlaryInitialize] (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities\initialize.exe
[MD5.156D0E674372EA396FD2760AB54C362F] [APT] [Google Software Updater] (.Google.) -- C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.00000000000000000000000000000000] [APT] [MyDefrag v4.3.1 Daily] (.Pas de propriétaire.) -- C:\Program Files\MyDefrag v4.3.1\Scripts\AutomaticDaily.MyD" (.not file.)
[MD5.00000000000000000000000000000000] [APT] [MyDefrag v4.3.1 Monthly] (.Pas de propriétaire.) -- C:\Program Files\MyDefrag v4.3.1\Scripts\AutomaticMonthly.MyD" (.not file.)
[MD5.8DF74D5E5581A11C1979760CBFD3F612] [APT] [PCDEventLauncher] (.PC-Doctor, Inc..) -- C:\Program Files\Dell Support Center\sessionchecker.exe
[MD5.00000000000000000000000000000000] [APT] [PCDoctorBackgroundMonitorTask] (.Pas de propriétaire.) -- C:\Program Files\Dell Support Center\uaclauncher.exerunsilently (.not file.)
[MD5.00000000000000000000000000000000] [APT] [RunAsStdUser Task] (.Pas de propriétaire.) -- C:\Program Files (x86)\Nosibay\Bubble Dock\LBubble Dock.exe (.not file.)
[MD5.A3428856909B97F22EA27D6B4A37D8D0] [APT] [SystemToolsDailyTest] (.PC-Doctor, Inc..) -- C:\Program Files\Dell Support Center\uaclauncher.exe
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Tcpip) . (.Microsoft Corporation - TCP/IP Driver.) - C:\Windows\System32\drivers\tcpip.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (Tosrfcom) . (. - .) - C:\Windows\System32\Drivers\tosrfcom.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
---\\ Logiciels installés (O42)
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {78F697ED-EC97-4D8D-881D-838984EA9855}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1
O42 - Logiciel: Dell Edoc Viewer - (.Dell Inc.) [HKLM] -- {8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}
O42 - Logiciel: Dell Support Center - (.Dell Inc..) [HKLM] -- Dell Support Center
O42 - Logiciel: Dell Support Center - (.PC-Doctor, Inc..) [HKLM] -- {0090A87C-3E0E-43D4-AA71-A71B06563A4A}
O42 - Logiciel: Dell Touchpad - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: Dell Wireless WLAN Card Utility - (.Dell Inc..) [HKLM] -- Broadcom 802.11 Application
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome
O42 - Logiciel: HP Deskjet All-In-One Software 9.0 - (.HP.) [HKLM] -- {FA8A44D7-3E8A-4034-9C4F-088FA6B72BC4}
O42 - Logiciel: HP Photosmart Essential 2.01 - (.HP.) [HKLM] -- HP Photosmart Essential
O42 - Logiciel: HP Smart Web Printing 4.60 - (.HP.) [HKLM] -- HP Smart Web Printing
O42 - Logiciel: Integrated Webcam Driver (1.00.04.0310) - (.Creative Technology Ltd..) [HKLM] -- Creative OA013
O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}
O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}
O42 - Logiciel: Microsoft .NET Framework 4 Extended - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Extended
O42 - Logiciel: Microsoft .NET Framework 4 Extended - (.Microsoft Corporation.) [HKLM] -- {8E34682C-8118-31F1-BC4C-98CD9675E1C2}
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {B6E3757B-5E77-3915-866A-CCFC4B8D194C}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {071c9b48-7c32-4621-a0ac-3f809523288f}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {aac9fcc4-dd9e-4add-901c-b5496a07ab2e}
O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {EE936C7A-EA40-31D5-9B65-8E3E089C3828}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {8338783A-0968-3B85-AFC7-BAAE0A63DC50}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {350AA351-21FA-3270-8B7A-835434E766AD}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {8220EEFE-38CD-377E-8595-13398D740ACE}
O42 - Logiciel: Microsoft_VC80_ATL_x86_x64 - (.Adobe.) [HKLM] -- {925D058B-564A-443A-B4B2-7E90C6432E55}
O42 - Logiciel: Microsoft_VC80_CRT_x86_x64 - (.Adobe.) [HKLM] -- {4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
O42 - Logiciel: Microsoft_VC80_MFCLOC_x86_x64 - (.Adobe.) [HKLM] -- {1E9FC118-651D-4934-97BE-E53CAE5C7D45}
O42 - Logiciel: Microsoft_VC80_MFC_x86_x64 - (.Adobe.) [HKLM] -- {C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
O42 - Logiciel: Microsoft_VC90_ATL_x86_x64 - (.Adobe.) [HKLM] -- {8557397C-A42D-486F-97B3-A2CBC2372593}
O42 - Logiciel: Microsoft_VC90_CRT_x86_x64 - (.Adobe.) [HKLM] -- {92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
O42 - Logiciel: Microsoft_VC90_MFCLOC_x86_x64 - (.Adobe.) [HKLM] -- {90BF0360-A1DB-4599-A643-95AB90A52C1E}
O42 - Logiciel: Microsoft_VC90_MFC_x86_x64 - (.Adobe.) [HKLM] -- {A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
O42 - Logiciel: MyDefrag v4.3.1 - (.J.C. Kessels.) [HKLM] -- MyDefrag v4.3.1_is1
O42 - Logiciel: Paint.NET v3.5.8 - (.dotPDN LLC.) [HKLM] -- {9CF4A37B-A8C4-44D7-8C53-13B9D9594BB3}
O42 - Logiciel: PhotoFiltre - (.Pas de propriétaire.) [HKCU] -- PhotoFiltre
O42 - Logiciel: Quickset - (.Dell Inc..) [HKLM] -- {87CF757E-C1F1-4D22-865C-00C6950B5258}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {FE4BE0BD-1EDB-4D24-9614-847B3C472887}
O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1B8ABA62-74F0-47ED-B18C-A43128E591B8}
O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {D07A61E5-A59C-433C-BCBD-22025FA2287B}
---\\ HKCU & HKLM Software Keys
[HKCU\Software\8322898]
[HKCU\Software\ACD Systems]
[HKCU\Software\ATI Technologies Inc.]
[HKCU\Software\ATI]
[HKCU\Software\Adobe]
[HKCU\Software\Agence-Exclusive]
[HKCU\Software\AppDataLow\Aurigma]
[HKCU\Software\AppDataLow\Google]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\Yahoo]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\ArcSoft]
[HKCU\Software\Auslogics]
[HKCU\Software\Avira]
[HKCU\Software\Binary Noise]
[HKCU\Software\Broadcom]
[HKCU\Software\Bugsplat]
[HKCU\Software\CDDB]
[HKCU\Software\CTPW Data]
[HKCU\Software\Canneverbe Limited]
[HKCU\Software\CeWe Color]
[HKCU\Software\ClassesB]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Creative Tech]
[HKCU\Software\Cyberlink]
[HKCU\Software\DELL]
[HKCU\Software\Digital River]
[HKCU\Software\FastStone]
[HKCU\Software\FreeCompressor]
[HKCU\Software\GlarySoft]
[HKCU\Software\Google]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IDT]
[HKCU\Software\IM Providers]
[HKCU\Software\INCAInternet]
[HKCU\Software\JEDI-VCL]
[HKCU\Software\JavaSoft]
[HKCU\Software\KMPlayer]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Lphant]
[HKCU\Software\Macromedia]
[HKCU\Software\McAfeeInstaller]
[HKCU\Software\McAfee]
[HKCU\Software\MicroVision]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\MyDefrag]
[HKCU\Software\Netscape]
[HKCU\Software\Nikon]
[HKCU\Software\ODBC]
[HKCU\Software\OfferBox]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\PC-Doctor]
[HKCU\Software\PCTUTO]
[HKCU\Software\PCTools]
[HKCU\Software\PDFCreator]
[HKCU\Software\Paint.NET]
[HKCU\Software\Pando Networks]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Quark]
[HKCU\Software\Roxio]
[HKCU\Software\Softonic]
[HKCU\Software\Sonic]
[HKCU\Software\Synaptics]
[HKCU\Software\Threat Expert]
[HKCU\Software\Toshiba]
[HKCU\Software\Trolltech]
[HKCU\Software\TuneUp]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\VSO]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\Wow6432Node]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\Yahoo]
[HKCU\Software\ej-technologies]
[HKCU\Software\gPotato]
[HKCU\Software\giveawayoftheday.com]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Broadcom]
[HKLM\Software\BrowserChoice]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Creative Tech]
[HKLM\Software\Dell Computer Corporation]
[HKLM\Software\Dell]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IDT]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\McAfeeInstaller]
[HKLM\Software\ODBC]
[HKLM\Software\PC-Doctor]
[HKLM\Software\PDF995]
[HKLM\Software\Paint.NET]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Sonic]
[HKLM\Software\Synaptics]
[HKLM\Software\Toshiba]
[HKLM\Software\Volatile]
[HKLM\Software\Windows]
[HKLM\Software\Wow6432Node]
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 12/05/2011 - 14:38:08 - [7278424] ----D- C:\Program Files\CCleaner
O43 - CFD: 12/10/2010 - 09:08:24 - [12593964] ----D- C:\Program Files\CDBurnerXP
O43 - CFD: 20/05/2011 - 07:33:58 - [243341403] ----D- C:\Program Files\Common Files
O43 - CFD: 02/06/2011 - 12:14:48 - [0] ----D- C:\Program Files\CyberLink
O43 - CFD: 16/07/2009 - 23:35:40 - [19752278] ----D- C:\Program Files\Dell
O43 - CFD: 16/07/2009 - 23:32:00 - [13958574] ----D- C:\Program Files\Dell Inc
O43 - CFD: 26/05/2011 - 15:59:18 - [132654060] ----D- C:\Program Files\Dell Support Center
O43 - CFD: 22/08/2009 - 12:31:10 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 29/05/2011 - 13:38:50 - [318960] ----D- C:\Program Files\Google
O43 - CFD: 16/07/2009 - 18:08:02 - [24819220] ----D- C:\Program Files\IDT
O43 - CFD: 03/12/2009 - 10:43:48 - [1642344] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 02/11/2006 - 17:07:28 - [94658384] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 11/03/2010 - 10:40:20 - [116334702] ----D- C:\Program Files\Movie Maker
O43 - CFD: 02/11/2006 - 17:07:28 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 28/05/2011 - 17:53:20 - [3452256] ----D- C:\Program Files\MyDefrag v4.3.1
O43 - CFD: 20/05/2011 - 22:23:12 - [31080605] ----D- C:\Program Files\Paint.NET
O43 - CFD: 20/05/2011 - 22:23:12 - [215765049] ----D- C:\Program Files\QuarkXPress 6.1
O43 - CFD: 02/11/2006 - 17:07:28 - [36347049] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 17/07/2009 - 02:01:18 - [29161846] ----D- C:\Program Files\Synaptics
O43 - CFD: 02/11/2006 - 17:44:56 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 21/01/2008 - 05:09:42 - [1302528] ----D- C:\Program Files\Windows Calendar
O43 - CFD: 03/12/2009 - 10:43:46 - [2963968] ----D- C:\Program Files\Windows Collaboration
O43 - CFD: 03/12/2009 - 10:43:38 - [6394224] ----D- C:\Program Files\Windows Defender
O43 - CFD: 03/12/2009 - 10:43:48 - [9655416] ----D- C:\Program Files\Windows Journal
O43 - CFD: 25/05/2011 - 17:41:36 - [231802] ----D- C:\Program Files\Windows Live
O43 - CFD: 25/05/2011 - 15:54:12 - [9619640] ----D- C:\Program Files\Windows Mail
O43 - CFD: 20/05/2011 - 22:23:12 - [5140215] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 22/08/2009 - 12:31:10 - [8054824] ----D- C:\Program Files\Windows NT
O43 - CFD: 03/12/2009 - 10:43:40 - [16439458] ----D- C:\Program Files\Windows Photo Gallery
O43 - CFD: 04/12/2009 - 12:08:08 - [167424] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 20/05/2011 - 22:23:12 - [6886470] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 31/08/2009 - 18:37:06 - [24619792] ----D- C:\Program Files\Common Files\INCA Shared
O43 - CFD: 24/05/2011 - 23:20:38 - [208506027] ----D- C:\Program Files\Common Files\Microsoft Shared
O43 - CFD: 02/11/2006 - 15:33:54 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 02/11/2006 - 15:33:54 - [608256] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 21/01/2008 - 05:09:30 - [9604626] ----D- C:\Program Files\Common Files\System
O43 - CFD: 02/10/2009 - 16:30:28 - [2329] ----D- C:\ProgramData\1A2BC
O43 - CFD: 20/05/2011 - 18:22:16 - [2060] ----D- C:\ProgramData\ACD Systems
O43 - CFD: 30/05/2011 - 11:58:18 - [136901815] ----D- C:\ProgramData\Adobe
O43 - CFD: 19/05/2011 - 08:02:20 - [18530816] ----D- C:\ProgramData\Apple
O43 - CFD: 19/05/2011 - 08:10:18 - [26896384] ----D- C:\ProgramData\Apple Computer
O43 - CFD: 22/08/2009 - 12:31:10 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 22/08/2009 - 12:36:42 - [188] ----D- C:\ProgramData\ATI
O43 - CFD: 20/05/2011 - 01:05:56 - [86847125] ----D- C:\ProgramData\Avira
O43 - CFD: 22/08/2009 - 12:31:10 - [0] -SH-D- C:\ProgramData\Bureau
O43 - CFD: 21/05/2011 - 14:36:32 - [0] ----D- C:\ProgramData\Canneverbe Limited
O43 - CFD: 22/08/2009 - 21:26:48 - [2358197] ----D- C:\ProgramData\Creative
O43 - CFD: 02/06/2011 - 12:14:42 - [0] ----D- C:\ProgramData\CyberLink
O43 - CFD: 20/05/2011 - 22:23:12 - [2032680] ----D- C:\ProgramData\Dell
O43 - CFD: 22/08/2009 - 12:31:10 - [0] -SH-D- C:\ProgramData\Documents
O43 - CFD: 02/06/2011 - 12:02:44 - [0] ----D- C:\ProgramData\EnterNHelp
O43 - CFD: 22/08/2009 - 12:31:10 - [0] -SH-D- C:\ProgramData\Favoris
O43 - CFD: 29/05/2011 - 13:46:14 - [14128] ----D- C:\ProgramData\Google Updater
O43 - CFD: 30/08/2009 - 22:02:24 - [76226] ----D- C:\ProgramData\Hewlett-Packard
O43 - CFD: 30/08/2009 - 22:09:30 - [1570844] ----D- C:\ProgramData\HP
O43 - CFD: 19/01/2010 - 20:04:02 - [8997] ----D- C:\ProgramData\HP Product Assistant
O43 - CFD: 29/10/2009 - 19:45:54 - [264] ----D- C:\ProgramData\HPSSUPPLY
O43 - CFD: 16/07/2009 - 23:43:28 - [365] ----D- C:\ProgramData\InstallShield
O43 - CFD: 12/05/2011 - 14:14:56 - [4] ----D- C:\ProgramData\IObit
O43 - CFD: 22/08/2009 - 12:31:10 - [0] -SH-D- C:\ProgramData\Menu Démarrer
O43 - CFD: 24/05/2011 - 21:44:38 - [92147772] ----D- C:\ProgramData\Microsoft
O43 - CFD: 08/11/2010 - 22:03:06 - [52562] ----D- C:\ProgramData\Microsoft Help
O43 - CFD: 22/08/2009 - 12:31:10 - [0] -SH-D- C:\ProgramData\Modèles
O43 - CFD: 29/05/2011 - 13:43:28 - [102500] ----D- C:\ProgramData\PC Tools
O43 - CFD: 16/07/2009 - 23:47:02 - [1235] ----D- C:\ProgramData\PC-Doctor
O43 - CFD: 26/05/2011 - 19:27:02 - [96042032] ----D- C:\ProgramData\PCDr
O43 - CFD: 08/11/2010 - 10:24:34 - [26392371] ----D- C:\ProgramData\pdf995
O43 - CFD: 01/05/2011 - 12:59:32 - [430] ----D- C:\ProgramData\PMB Files
O43 - CFD: 13/03/2011 - 19:15:36 - [3072] ----D- C:\ProgramData\Power Soft
O43 - CFD: 18/05/2011 - 13:51:52 - [1709] ----D- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 16/07/2009 - 23:44:50 - [649] ----D- C:\ProgramData\Sonic
O43 - CFD: 20/04/2010 - 20:37:06 - [294] ----D- C:\ProgramData\Sun
O43 - CFD: 03/06/2011 - 10:38:06 - [0] ---AD- C:\ProgramData\TEMP
O43 - CFD: 19/05/2011 - 19:45:52 - [0] ----D- C:\ProgramData\Ultima_T15
O43 - CFD: 16/07/2009 - 23:45:56 - [615675] ----D- C:\ProgramData\Uninstall
O43 - CFD: 30/08/2009 - 22:09:52 - [236] ----D- C:\ProgramData\WEBREG
O43 - CFD: 17/05/2011 - 22:18:12 - [0] ----D- C:\Users\Cat\AppData\Roaming\ACD Systems
O43 - CFD: 29/05/2011 - 14:41:14 - [5065741] ----D- C:\Users\Cat\AppData\Roaming\Adobe
O43 - CFD: 18/04/2011 - 17:18:16 - [1450308] ----D- C:\Users\Cat\AppData\Roaming\Agence-Exclusive
O43 - CFD: 04/09/2010 - 17:16:56 - [1326] ----D- C:\Users\Cat\AppData\Roaming\Ambient Design
O43 - CFD: 31/03/2010 - 12:34:56 - [52] ----D- C:\Users\Cat\AppData\Roaming\app
O43 - CFD: 20/05/2011 - 00:29:58 - [0] ----D- C:\Users\Cat\AppData\Roaming\Apple Computer
O43 - CFD: 20/05/2011 - 18:24:14 - [216] ----D- C:\Users\Cat\AppData\Roaming\ArcSoft
O43 - CFD: 22/08/2009 - 12:36:42 - [0] ----D- C:\Users\Cat\AppData\Roaming\ATI
O43 - CFD: 02/06/2011 - 20:01:42 - [0] ----D- C:\Users\Cat\AppData\Roaming\Auslogics
O43 - CFD: 20/05/2011 - 01:11:36 - [0] ----D- C:\Users\Cat\AppData\Roaming\Avira
O43 - CFD: 12/10/2010 - 09:08:36 - [1496] ----D- C:\Users\Cat\AppData\Roaming\Canneverbe Limited
O43 - CFD: 18/05/2011 - 15:14:34 - [28938] ----D- C:\Users\Cat\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O43 - CFD: 18/05/2011 - 12:41:10 - [19569] ----D- C:\Users\Cat\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
O43 - CFD: 22/08/2009 - 21:14:22 - [296] ----D- C:\Users\Cat\AppData\Roaming\Creative
O43 - CFD: 23/08/2009 - 10:44:34 - [0] ----D- C:\Users\Cat\AppData\Roaming\CyberLink
O43 - CFD: 26/05/2011 - 15:59:38 - [0] ----D- C:\Users\Cat\AppData\Roaming\Dell
O43 - CFD: 19/05/2011 - 14:28:32 - [199] ----D- C:\Users\Cat\AppData\Roaming\dvdcss
O43 - CFD: 16/04/2011 - 15:30:14 - [19535794] ----D- C:\Users\Cat\AppData\Roaming\FastStone
O43 - CFD: 26/04/2011 - 08:17:04 - [625] ----D- C:\Users\Cat\AppData\Roaming\freeCompressor
O43 - CFD: 21/05/2011 - 21:36:02 - [841] ----D- C:\Users\Cat\AppData\Roaming\FreeScreenToVideo
O43 - CFD: 20/05/2011 - 21:48:10 - [176135] ----D- C:\Users\Cat\AppData\Roaming\GlarySoft
O43 - CFD: 20/09/2009 - 20:29:44 - [169] ----D- C:\Users\Cat\AppData\Roaming\gtk-2.0
O43 - CFD: 20/09/2009 - 20:38:48 - [223432] ----D- C:\Users\Cat\AppData\Roaming\HP
O43 - CFD: 26/02/2010 - 18:25:08 - [0] ----D- C:\Users\Cat\AppData\Roaming\HPAppData
O43 - CFD: 20/05/2011 - 21:31:00 - [26397] ----D- C:\Users\Cat\AppData\Roaming\HpUpdate
O43 - CFD: 01/04/2010 - 20:17:36 - [1204] ----D- C:\Users\Cat\AppData\Roaming\Ideas From the Deep
O43 - CFD: 22/08/2009 - 12:35:56 - [0] ----D- C:\Users\Cat\AppData\Roaming\Identities
O43 - CFD: 09/03/2011 - 15:44:42 - [27349] ----D- C:\Users\Cat\AppData\Roaming\inkscape
O43 - CFD: 21/05/2011 - 11:17:46 - [5929] ----D- C:\Users\Cat\AppData\Roaming\Macromedia
O43 - CFD: 02/11/2006 - 17:07:26 - [0] ----D- C:\Users\Cat\AppData\Roaming\Media Center Programs
O43 - CFD: 29/05/2011 - 14:41:14 - [41401480] -S--D- C:\Users\Cat\AppData\Roaming\Microsoft
O43 - CFD: 19/05/2011 - 19:49:00 - [197] ----D- C:\Users\Cat\AppData\Roaming\Nikon
O43 - CFD: 17/11/2010 - 20:46:04 - [493] ----D- C:\Users\Cat\AppData\Roaming\OfferBox
O43 - CFD: 23/08/2009 - 10:29:08 - [146249692] ----D- C:\Users\Cat\AppData\Roaming\OpenOffice.org
O43 - CFD: 29/05/2011 - 13:43:10 - [0] ----D- C:\Users\Cat\AppData\Roaming\PC Tools
O43 - CFD: 10/12/2010 - 21:01:06 - [57079454] ----D- C:\Users\Cat\AppData\Roaming\PCDr
O43 - CFD: 20/05/2011 - 01:12:44 - [1454616] ----D- C:\Users\Cat\AppData\Roaming\PCTuto
O43 - CFD: 08/11/2010 - 10:24:24 - [28] ----D- C:\Users\Cat\AppData\Roaming\pdf995
O43 - CFD: 23/08/2009 - 11:25:12 - [0] ----D- C:\Users\Cat\AppData\Roaming\PeerNetworking
O43 - CFD: 16/04/2011 - 19:04:16 - [1866] ----D- C:\Users\Cat\AppData\Roaming\PhotoFiltre
O43 - CFD: 08/11/2010 - 11:31:24 - [200507] ----D- C:\Users\Cat\AppData\Roaming\Quark
O43 - CFD: 22/08/2009 - 21:26:48 - [0] ----D- C:\Users\Cat\AppData\Roaming\Reallusion
O43 - CFD: 31/03/2010 - 12:34:56 - [0] ----D- C:\Users\Cat\AppData\Roaming\Reg.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O43 - CFD: 23/08/2009 - 10:47:02 - [640] ----D- C:\Users\Cat\AppData\Roaming\Roxio
O43 - CFD: 02/06/2011 - 22:39:08 - [157184] ----D- C:\Users\Cat\AppData\Roaming\Runscanner.net
O43 - CFD: 09/11/2010 - 11:27:50 - [8704] ----D- C:\Users\Cat\AppData\Roaming\Template
O43 - CFD: 07/05/2011 - 13:10:06 - [6194] ----D- C:\Users\Cat\AppData\Roaming\URSoft
O43 - CFD: 02/06/2011 - 11:37:24 - [1122123] ----D- C:\Users\Cat\AppData\Roaming\vlc
O43 - CFD: 21/05/2011 - 15:47:30 - [26514] ----D- C:\Users\Cat\AppData\Roaming\VSO
O43 - CFD: 22/05/2011 - 21:24:22 - [295] ----D- C:\Users\Cat\AppData\Roaming\Windows Live Writer
O43 - CFD: 17/05/2011 - 22:21:28 - [16959759] ----D- C:\Users\Cat\Appdata\Local\ACD Systems
O43 - CFD: 29/05/2011 - 13:48:32 - [15409257] ----D- C:\Users\Cat\Appdata\Local\Adobe
O43 - CFD: 20/05/2011 - 21:31:00 - [15611528] ----D- C:\Users\Cat\Appdata\Local\adslTV
O43 - CFD: 18/04/2011 - 17:18:16 - [5596] ----D- C:\Users\Cat\Appdata\Local\Agence-Exclusive
O43 - CFD: 19/05/2011 - 08:02:22 - [0] ----D- C:\Users\Cat\Appdata\Local\Apple
O43 - CFD: 19/05/2011 - 13:36:10 - [0] ----D- C:\Users\Cat\Appdata\Local\Apple Computer
O43 - CFD: 22/08/2009 - 12:32:36 - [0] -SH-D- C:\Users\Cat\Appdata\Local\Application Data
O43 - CFD: 22/08/2009 - 12:36:42 - [41304] ----D- C:\Users\Cat\Appdata\Local\ATI
O43 - CFD: 17/05/2011 - 22:14:30 - [75742208] ----D- C:\Users\Cat\Appdata\Local\Downloaded Installations
O43 - CFD: 02/10/2009 - 22:06:08 - [0] ----D- C:\Users\Cat\Appdata\Local\eMule
O43 - CFD: 26/04/2011 - 08:26:42 - [194984] ----D- C:\Users\Cat\Appdata\Local\freecompressor Air
O43 - CFD: 07/05/2011 - 13:06:06 - [444257702] ----D- C:\Users\Cat\Appdata\Local\Google
O43 - CFD: 22/08/2009 - 12:32:36 - [0] -SH-D- C:\Users\Cat\Appdata\Local\Historique
O43 - CFD: 01/09/2009 - 09:11:04 - [15747033] ----D- C:\Users\Cat\Appdata\Local\HP
O43 - CFD: 01/04/2010 - 20:17:36 - [0] ----D- C:\Users\Cat\Appdata\Local\Ideas From the Deep
O43 - CFD: 31/05/2011 - 11:46:20 - [559598456] ----D- C:\Users\Cat\Appdata\Local\Microsoft
O43 - CFD: 06/10/2009 - 16:51:44 - [1840893] ----D- C:\Users\Cat\Appdata\Local\Microsoft Games
O43 - CFD: 08/11/2010 - 21:48:06 - [0] ----D- C:\Users\Cat\Appdata\Local\Microsoft Help
O43 - CFD: 21/10/2009 - 15:53:28 - [45332] ----D- C:\Users\Cat\Appdata\Local\MicroVision Applications
O43 - CFD: 02/10/2010 - 16:34:08 - [0] ----D- C:\Users\Cat\Appdata\Local\Mozilla
O43 - CFD: 24/05/2011 - 13:26:40 - [0] ----D- C:\Users\Cat\Appdata\Local\PackageAware
O43 - CFD: 02/06/2011 - 11:46:36 - [0] ----D- C:\Users\Cat\Appdata\Local\Paint.NET
O43 - CFD: 20/05/2011 - 01:12:44 - [7828] ----D- C:\Users\Cat\Appdata\Local\PCTuto
O43 - CFD: 01/05/2011 - 15:22:56 - [147546] ----D- C:\Users\Cat\Appdata\Local\PMB Files
O43 - CFD: 02/06/2011 - 12:15:38 - [0] ----D- C:\Users\Cat\Appdata\Local\PowerDVD DX
O43 - CFD: 03/06/2011 - 12:02:00 - [537853] ----D- C:\Users\Cat\Appdata\Local\Temp
O43 - CFD: 22/08/2009 - 12:32:36 - [0] -SH-D- C:\Users\Cat\Appdata\Local\Temporary Internet Files
O43 - CFD: 30/08/2009 - 22:49:52 - [11656] ----D- C:\Users\Cat\Appdata\Local\Toshiba
O43 - CFD: 09/11/2010 - 11:24:50 - [16742571] ----D- C:\Users\Cat\Appdata\Local\VirtualStore
O43 - CFD: 01/06/2011 - 20:01:08 - [94208] ----D- C:\Users\Cat\Appdata\Local\Windows Live
O43 - CFD: 22/05/2011 - 17:25:50 - [372494] ----D- C:\Users\Cat\Appdata\Local\Windows Live Writer
O43 - CFD: 29/05/2011 - 13:48:50 - [166392102] ----D- C:\Program Files (x86)\Adobe
O43 - CFD: 18/04/2011 - 17:19:06 - [3639887] ----D- C:\Program Files (x86)\Agence-Exclusive
O43 - CFD: 16/07/2009 - 23:40:20 - [77419175] ----D- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 02/06/2011 - 20:01:36 - [9402172] ----D- C:\Program Files (x86)\Auslogics
O43 - CFD: 20/05/2011 - 01:05:56 - [119285622] ----D- C:\Program Files (x86)\Avira
O43 - CFD: 19/12/2009 - 12:49:24 - [24168136] ----D- C:\Program Files (x86)\Bbox
O43 - CFD: 20/05/2011 - 22:23:12 - [229791] ----D- C:\Program Files (x86)\BboxUpdate
O43 - CFD: 16/07/2009 - 23:33:24 - [3959335] ----D- C:\Program Files (x86)\Cisco
O43 - CFD: 02/06/2011 - 11:54:38 - [934825108] ----D- C:\Program Files (x86)\Common Files
O43 - CFD: 16/07/2009 - 23:53:36 - [14891438] ----D- C:\Program Files (x86)\Creative
O43 - CFD: 16/07/2009 - 23:52:20 - [114688] ----D- C:\Program Files (x86)\Creative Live! Cam
O43 - CFD: 16/07/2009 - 23:59:04 - [602755] ----D- C:\Program Files (x86)\Dell
O43 - CFD: 16/07/2009 - 23:53:28 - [242621223] ----D- C:\Program Files (x86)\Dell Webcam
O43 - CFD: 20/05/2011 - 21:26:54 - [1372057] ----D- C:\Program Files (x86)\FastStone Capture
O43 - CFD: 09/04/2011 - 15:13:18 - [9580240] ----D- C:\Program Files (x86)\FastStone Image Viewer
O43 - CFD: 20/05/2011 - 21:16:00 - [19475198] ----D- C:\Program Files (x86)\Glary Utilities
O43 - CFD: 29/05/2011 - 13:38:50 - [50826013] ----D- C:\Program Files (x86)\Google
O43 - CFD: 08/11/2010 - 16:22:40 - [8075602] ----D- C:\Program Files (x86)\GPLGS
O43 - CFD: 19/01/2010 - 20:28:58 - [151030976] ----D- C:\Program Files (x86)\HP
O43 - CFD: 20/05/2011 - 22:23:12 - [162801736] ----D- C:\Program Files (x86)\Inkscape
O43 - CFD: 02/06/2011 - 12:14:46 - [20527332] --H-D- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 16/07/2009 - 23:36:30 - [39007042] ----D- C:\Program Files (x86)\Intel
O43 - CFD: 19/05/2011 - 08:04:22 - [2805372] ----D- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 21/05/2011 - 21:16:42 - [89267934] ----D- C:\Program Files (x86)\Java
O43 - CFD: 21/05/2011 - 10:57:20 - [37145611] ----D- C:\Program Files (x86)\Maïdo Production
O43 - CFD: 16/07/2009 - 23:48:56 - [2664525] ----D- C:\Program Files (x86)\Microsoft
O43 - CFD: 19/05/2011 - 20:55:34 - [51143387] ----D- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 08/11/2010 - 22:02:58 - [39635301] ----D- C:\Program Files (x86)\Microsoft Office.2009
O43 - CFD: 28/11/2009 - 14:27:24 - [115379074] ----D- C:\Program Files (x86)\Microsoft Picture It! 10
O43 - CFD: 24/05/2011 - 22:01:38 - [38388859] ----D- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 16/07/2009 - 23:50:04 - [1829877] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 20/05/2011 - 21:31:00 - [110372004] ----D- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 25/05/2011 - 14:30:12 - [23935] ----D- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 02/11/2006 - 17:07:28 - [25757] ----D- C:\Program Files (x86)\MSBuild
O43 - CFD: 23/08/2009 - 09:32:46 - [67885438] ----D- C:\Program Files (x86)\MSECache
O43 - CFD: 02/06/2011 - 12:05:24 - [0] ----D- C:\Program Files (x86)\Nikon
O43 - CFD: 11/05/2011 - 20:16:04 - [2143191699] ----D- C:\Program Files (x86)\NosTale(FR)
O43 - CFD: 13/03/2011 - 12:03:34 - [431725247] ----D- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 11/06/2010 - 23:08:24 - [7460142] ----D- C:\Program Files (x86)\Pando Networks
O43 - CFD: 03/06/2011 - 10:16:32 - [285743584] ----D- C:\Program Files (x86)\PC Tools Security
O43 - CFD: 20/05/2011 - 01:14:22 - [14657448] ----D- C:\Program Files (x86)\pctuto
O43 - CFD: 08/11/2010 - 18:18:06 - [25472161] ----D- C:\Program Files (x86)\PDFCreator
O43 - CFD: 16/04/2011 - 19:02:14 - [3699431] ----D- C:\Program Files (x86)\PhotoFiltre
O43 - CFD: 20/05/2011 - 22:23:12 - [76322555] ----D- C:\Program Files (x86)\QuickTime
O43 - CFD: 02/11/2006 - 17:07:28 - [38690561] ----D- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 16/07/2009 - 23:45:54 - [18684033] ----D- C:\Program Files (x86)\Roxio
O43 - CFD: 09/11/2010 - 15:56:46 - [67779640] ----D- C:\Program Files (x86)\Scribus 1.3.3.14
O43 - CFD: 19/12/2009 - 12:43:26 - [15632] ----D- C:\Program Files (x86)\Techcity
O43 - CFD: 18/05/2011 - 11:33:24 - [54413838] ----D- C:\Program Files (x86)\The KMPlayer
O43 - CFD: 02/11/2006 - 17:36:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 30/09/2009 - 20:04:36 - [76927843] ----D- C:\Program Files (x86)\VideoLAN
O43 - CFD: 20/05/2011 - 22:50:32 - [6812742] ----D- C:\Program Files (x86)\VS Revo Group
O43 - CFD: 21/05/2011 - 15:06:58 - [36242496] ----D- C:\Program Files (x86)\VSO
O43 - CFD: 03/12/2009 - 10:43:38 - [1016832] ----D- C:\Program Files (x86)\Windows Calendar
O43 - CFD: 21/01/2008 - 05:09:48 - [53248] ----D- C:\Program Files (x86)\Windows Collaboration
O43 - CFD: 21/01/2008 - 05:09:42 - [504128] ----D- C:\Program Files (x86)\Windows Defender
O43 - CFD: 25/05/2011 - 17:42:14 - [132383271] ----D- C:\Program Files (x86)\Windows Live
O43 - CFD: 25/05/2011 - 15:54:12 - [8936632] ----D- C:\Program Files (x86)\Windows Mail
O43 - CFD: 20/05/2011 - 22:23:12 - [3013093] ----D- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 02/11/2006 - 17:07:28 - [7954984] ----D- C:\Program Files (x86)\Windows NT
O43 - CFD: 03/12/2009 - 10:43:36 - [13528738] ----D- C:\Program Files (x86)\Windows Photo Gallery
O43 - CFD: 04/12/2009 - 12:08:08 - [134144] ----D- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 03/12/2009 - 10:43:38 - [6904332] ----D- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 29/05/2011 - 22:33:08 - [3659527] ----D- C:\Program Files (x86)\Wise Disk Cleaner
O43 - CFD: 20/05/2011 - 22:23:12 - [44091] ----D- C:\Program Files (x86)\Yahoo!
O43 - CFD: 03/06/2011 - 12:02:04 - [5300655] ----D- C:\Program Files (x86)\ZHPDiag
O43 - CFD: 20/05/2011 - 18:22:24 - [1908736] ----D- C:\Program Files (x86)\Common Files\ACD Systems
O43 - CFD: 29/05/2011 - 13:48:56 - [156465875] ----D- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 19/05/2011 - 08:08:14 - [54774793] ----D- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 30/08/2009 - 22:05:40 - [457237] ----D- C:\Program Files (x86)\Common Files\Hewlett-Packard
O43 - CFD: 30/08/2009 - 22:06:20 - [4999856] ----D- C:\Program Files (x86)\Common Files\HP
O43 - CFD: 02/06/2011 - 12:10:42 - [7020670] ----D- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 21/05/2011 - 20:56:04 - [1252295] ----D- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 22/05/2011 - 17:11:38 - [369282763] ----D- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 02/06/2011 - 12:06:46 - [4154745] ----D- C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 18/03/2010 - 09:37:08 - [901120] ----D- C:\Program Files (x86)\Common Files\Nosibay
O43 - CFD: 29/05/2011 - 13:43:52 - [11093505] ----D- C:\Program Files (x86)\Common Files\PC Tools
O43 - CFD: 16/07/2009 - 23:44:38 - [3971920] ----D- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 16/07/2009 - 23:53:30 - [4221400] ----D- C:\Program Files (x86)\Common Files\Reallusion
O43 - CFD: 16/07/2009 - 23:44:40 - [32201859] ----D- C:\Program Files (x86)\Common Files\Roxio Shared
O43 - CFD: 02/11/2006 - 15:33:54 - [2702] ----D- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 16/07/2009 - 23:44:44 - [1464088] ----D- C:\Program Files (x86)\Common Files\Sonic Shared
O43 - CFD: 02/11/2006 - 15:33:54 - [41101735] ----D- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 16/07/2009 - 23:45:54 - [733760] ----D- C:\Program Files (x86)\Common Files\SureThing Shared
O43 - CFD: 03/12/2009 - 10:43:36 - [8737810] ----D- C:\Program Files (x86)\Common Files\System
O43 - CFD: 08/11/2010 - 11:43:16 - [1738826] ----D- C:\Program Files (x86)\Common Files\Vbox
O43 - CFD: 16/07/2009 - 23:47:24 - [228339413] ----D- C:\Program Files (x86)\Common Files\Windows Live
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.7CEE1700D64DF57500DCFD7E50EF1700] - 03/06/2011 - 09:45:48 ---A- . (...) -- C:\Windows\WindowsUpdate.log [401288]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 03/06/2011 - 09:31:36 ---A- . (...) -- C:\Windows\setupact.log [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 03/06/2011 - 09:31:36 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.9468FAC3DE90B7CD56570BE470AB1E61] - 03/06/2011 - 09:31:35 ---A- . (...) -- C:\Windows\ntbtlog.txt [68926]
O44 - LFC:[MD5.5A67F35163F3FDA1044DF852F43BB887] - 03/06/2011 - 09:16:10 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.6EE99EA40325B509DFCF28D10E0FB164] - 02/06/2011 - 11:28:50 ---A- . (...) -- C:\Windows\PFRO.log [332]
O44 - LFC:[MD5.4DC886B55CCF5F34DC03AF0E7BBACBD9] - 31/05/2011 - 22:15:12 ---A- . (...) -- C:\Windows\SysNative\sfcdetails.txt [2418]
O44 - LFC:[MD5.D79BA9F387F056EE105455992781C16A] - 25/05/2011 - 16:31:24 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [118262]
O44 - LFC:[MD5.D1A12490BCC5806DF3277AD19C6FAE7C] - 25/05/2011 - 16:31:24 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [144164]
O44 - LFC:[MD5.DC3EED948D97FA2F76AD0E0A7D77E641] - 25/05/2011 - 16:31:24 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [631636]
O44 - LFC:[MD5.F8C2A02AFBDB125E24EB5906A934DA32] - 25/05/2011 - 16:31:24 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [719368]
O44 - LFC:[MD5.42BE88867B3445C9BFBE885D05B2C57F] - 25/05/2011 - 16:31:24 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1587322]
O44 - LFC:[MD5.42BE88867B3445C9BFBE885D05B2C57F] - 25/05/2011 - 16:31:15 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1587322]
O44 - LFC:[MD5.24433669A792336E97976DB3C9C9A42A] - 24/05/2011 - 22:21:53 ---A- . (...) -- C:\Windows\dd_vcredistMSI735B.txt [464038]
O44 - LFC:[MD5.05CBDD410FCEC26D06C2B8FB31ED1981] - 24/05/2011 - 22:21:53 ---A- . (...) -- C:\Windows\dd_vcredistUI735B.txt [11614]
O44 - LFC:[MD5.CA2D7D5FF799861A6D3559D1EE95B577] - 24/05/2011 - 22:21:16 ---A- . (...) -- C:\Windows\dd_vcredistMSI72BE.txt [460486]
O44 - LFC:[MD5.F72A6AB5C377624FAD7AB6A3188F4513] - 24/05/2011 - 22:21:16 ---A- . (...) -- C:\Windows\dd_vcredistUI72BE.txt [11598]
O44 - LFC:[MD5.AC0FF9CCE8F8D10412036CDFB35B3FD8] - 22/05/2011 - 16:40:29 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [4972024]
O44 - LFC:[MD5.849946AD8A164ED1460B2C5F3D957500] - 22/05/2011 - 07:51:49 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\SysNative\MyDefragScreenSaver_v4.3.1.exe [1147392]
O44 - LFC:[MD5.FB76AB9B8C9869882EA8EFF133FB0F37] - 22/05/2011 - 07:51:49 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\SysNative\MyDefragScreenSaver_v4.3.1.scr [485376]
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.6B137B8D693325816096EB28F97C85E2] - 01/06/2011 - 18:20:26 ---A- - C:\Windows\Prefetch\MSASCUI.EXE-AB5A490C.pf
O45 - LFCP:[MD5.17CA205A0F7AAF425DEBEFDBBCD7927B] - 01/06/2011 - 20:28:53 ---A- - C:\Windows\Prefetch\FSPLUGIN02.DLL-19EBCC26.pf
O45 - LFCP:[MD5.D75E329AA97C53C0B5B0354BD275B9B0] - 01/06/2011 - 20:42:03 ---A- - C:\Windows\Prefetch\MOBSYNC.EXE-B307E1CC.pf
O45 - LFCP:[MD5.E5AE80A9AA509FB40ABA5F163F08B6A8] - 01/06/2011 - 21:01:24 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-EBBA463B.pf
O45 - LFCP:[MD5.E24AB9EA9F9788AA51EF8640F8C1DA75] - 01/06/2011 - 22:41:17 ---A- - C:\Windows\Prefetch\FSCAPTURE.EXE-0B7AAAA6.pf
O45 - LFCP:[MD5.05B24E79237867E07B82945FAAF14EA7] - 02/06/2011 - 09:31:26 ---A- - C:\Windows\Prefetch\PCDRSYSINFOSTORAGE.P5X-599DE45A.pf
O45 - LFCP:[MD5.628AC5EB244938AD63509E2A78A6854A] - 02/06/2011 - 09:31:27 ---A- - C:\Windows\Prefetch\PCDRSYSINFOCOMMUNICATION.P5X-A7AD8107.pf
O45 - LFCP:[MD5.AFB0A997580C2826D6F1063D2222EEFD] - 02/06/2011 - 09:31:28 ---A- - C:\Windows\Prefetch\PCDRSYSINFOSYSTEMBOARD.P5X-2D2622E2.pf
O45 - LFCP:[MD5.C5936423DC97A6963E4F2D2D88324B9B] - 02/06/2011 - 09:31:31 ---A- - C:\Windows\Prefetch\PCDRSYSINFOVIDEOCAPTURE.P5X-E0000BA0.pf
O45 - LFCP:[MD5.ABC7CCF6AAAABEE1CA47E3E92179BF92] - 02/06/2011 - 09:31:32 ---A- - C:\Windows\Prefetch\PCDRSYSINFODIRECT.P5X-6D021318.pf
O45 - LFCP:[MD5.1CB1E9ADEB15E4F1BF099C14F1A102C9] - 02/06/2011 - 10:35:09 ---A- - C:\Windows\Prefetch\KMPLAYER.EXE-58C875ED.pf
O45 - LFCP:[MD5.66A47A5C4168B162B7E0AEF209EF0693] - 02/06/2011 - 10:36:30 ---A- - C:\Windows\Prefetch\VLC.EXE-5F2E6616.pf
O45 - LFCP:[MD5.15879B3C736CDAA1D513E697EF27900D] - 02/06/2011 - 10:54:18 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-03D3FB87.pf
O45 - LFCP:[MD5.A24818203D9898CF1468527BB5BB83F5] - 02/06/2011 - 11:13:28 ---A- - C:\Windows\Prefetch\DRVINST.EXE-39D9EAC7.pf
O45 - LFCP:[MD5.555E0109452013913C186BE744A35A65] - 02/06/2011 - 11:17:05 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-D96EA92A.pf
O45 - LFCP:[MD5.093CB6C67DE8085C0CD6F6E8908D9F57] - 02/06/2011 - 11:27:17 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-F639BD7E.pf
O45 - LFCP:[MD5.298A7095D46B9EE0AC6AEDC28DDA79C8] - 02/06/2011 - 22:15:54 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-C5670914.pf
O45 - LFCP:[MD5.EE7B1E43F18B61332EC813D1B1AF5CCF] - 02/06/2011 - 22:17:29 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin
O45 - LFCP:[MD5.E4C4B383484F0405732BFA76DC6AFA94] - 02/06/2011 - 23:04:26 ---A- - C:\Windows\Prefetch\MSNMSGR.EXE-0A3C12F9.pf
O45 - LFCP:[MD5.36D339F588BE1F17BFCE2563A258BE20] - 02/06/2011 - 23:04:33 ---A- - C:\Windows\Prefetch\WLCOMM.EXE-81BAE51F.pf
O45 - LFCP:[MD5.A9C632CAC3D75565C09ADB128824AF49] - 03/06/2011 - 09:17:08 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf
O45 - LFCP:[MD5.DF9837D0DBD9C9ED83C4470C3F84AAC1] - 03/06/2011 - 09:18:01 ---A- - C:\Windows\Prefetch\WERMGR.EXE-F439C551.pf
O45 - LFCP:[MD5.2B6073145EEA0CD04543F569910A954F] - 03/06/2011 - 09:20:27 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-BB21CD77.pf
O45 - LFCP:[MD5.76031099A80734D01FA72977C5B920E6] - 03/06/2011 - 09:21:00 ---A- - C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-96506B07.pf
O45 - LFCP:[MD5.466F96C86DE08BB6A5CCA2C87187ABE7] - 03/06/2011 - 09:21:11 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-BD8A4C8F.pf
O45 - LFCP:[MD5.C3CC6992E1CC7EAFC38564F98E503E1B] - 03/06/2011 - 09:21:19 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-FB4EF753.pf
O45 - LFCP:[MD5.344EF58E36B18F82006FD3865EACDC24] - 03/06/2011 - 09:21:35 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-18FC9E64.pf
O45 - LFCP:[MD5.8FC81026B4BFE1A244167FE8F954022B] - 03/06/2011 - 09:21:47 ---A- - C:\Windows\Prefetch\HPQBAM08.EXE-744309DA.pf
O45 - LFCP:[MD5.91DF902FB1667D422B28B64B14940425] - 03/06/2011 - 09:21:47 ---A- - C:\Windows\Prefetch\HPQSTE08.EXE-A880057E.pf
O45 - LFCP:[MD5.139312C505CF928E417472202DD82A0D] - 03/06/2011 - 09:21:51 ---A- - C:\Windows\Prefetch\HPRBLOG.EXE-D706AE76.pf
O45 - LFCP:[MD5.76812B431787CD8D5F6EB597C23EB9F4] - 03/06/2011 - 09:22:16 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-766EFF52.pf
O45 - LFCP:[MD5.9251838DCB8EC08394D766E43E442B63] - 03/06/2011 - 09:22:17 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-5D573F0E.pf
O45 - LFCP:[MD5.4EC1E44B7F78A0994628C4A00B1D6424] - 03/06/2011 - 09:22:30 ---A- - C:\Windows\Prefetch\SYNTPHELPER.EXE-C8D211B9.pf
O45 - LFCP:[MD5.147DF2A99F05960B0ABABBDF65E49434] - 03/06/2011 - 09:22:53 ---A- - C:\Windows\Prefetch\WINMAIL.EXE-4A3CA0DE.pf
O45 - LFCP:[MD5.BFA1103E9D69B1E38C62B160ED0B87B2] - 03/06/2011 - 09:28:44 ---A- - C:\Windows\Prefetch\FSVIEWER.EXE-57078129.pf
O45 - LFCP:[MD5.E6787406EB06C2F435BF737347DA1E26] - 03/06/2011 - 09:31:02 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-63B92852.pf
O45 - LFCP:[MD5.95E3CCDA9040A9FE37EFDD9C3161F82D] - 03/06/2011 - 09:31:11 ---A- - C:\Windows\Prefetch\WMIAPSRV.EXE-FC8436DD.pf
O45 - LFCP:[MD5.7336E243F0AF84360BA853ECB65B09FB] - 03/06/2011 - 09:31:14 ---A- - C:\Windows\Prefetch\PCDRCUI.EXE-D9A6ECD0.pf
O45 - LFCP:[MD5.1F307A31F7DCFCD369EEA780BE15E37F] - 03/06/2011 - 09:31:19 ---A- - C:\Windows\Prefetch\PRESENTATIONFONTCACHE.EXE-AB1765B5.pf
O45 - LFCP:[MD5.DF46C22AAB3A19BB845CC30DD4DC4633] - 03/06/2011 - 09:31:21 ---A- - C:\Windows\Prefetch\CSC.EXE-0E09149C.pf
O45 - LFCP:[MD5.B78DF4462FD6468698D93FD2443E35CF] - 03/06/2011 - 09:31:21 ---A- - C:\Windows\Prefetch\CVTRES.EXE-F4BA0E72.pf
O45 - LFCP:[MD5.2AA84D6421A1B0407A33F087C84E3A10] - 03/06/2011 - 09:31:21 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-E8B8DD29.pf
O45 - LFCP:[MD5.1E1A31299736A79F9172B33341248383] - 03/06/2011 - 09:31:23 ---A- - C:\Windows\Prefetch\CONIME.EXE-7C90FA24.pf
O45 - LFCP:[MD5.032B7A2A25D95728C7D63DC5D325112C] - 03/06/2011 - 09:31:30 ---A- - C:\Windows\Prefetch\PCDRSYSINFOBLUETOOTH.P5X-5375F117.pf
O45 - LFCP:[MD5.879A594DA99447DB3D7A6F136E62B7E8] - 03/06/2011 - 09:31:30 ---A- - C:\Windows\Prefetch\PCDRSYSINFOSMBIOS2.P5X-9F44627C.pf
O45 - LFCP:[MD5.2A739D7731B9D8FA27054451A96AC884] - 03/06/2011 - 09:31:31 ---A- - C:\Windows\Prefetch\PCDRSYSINFOCPU_X86.P5X-A07ADAE2.pf
O45 - LFCP:[MD5.C4B845DB26A0CE7AE502FC6DC66D18C5] - 03/06/2011 - 09:31:32 ---A- - C:\Windows\Prefetch\PCDRSYSINFOCSMI.P5X-AC20E7E5.pf
O45 - LFCP:[MD5.47A5C9214DE6DC9CBA3E69F6990F0A4E] - 03/06/2011 - 09:31:32 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-8B6144A9.pf
O45 - LFCP:[MD5.9AB6784F4AF1E1D3E2442A4B1A93C4E2] - 03/06/2011 - 09:31:35 ---A- - C:\Windows\Prefetch\PCDRSYSINFOPERIPHERAL.P5X-4F367BA5.pf
O45 - LFCP:[MD5.3295D6314D06431E7E50DDEA4847DA2C] - 03/06/2011 - 09:31:37 ---A- - C:\Windows\Prefetch\WISPTIS.EXE-467FEFF4.pf
O45 - LFCP:[MD5.62545403DCD2F679BD26592F616A0490] - 03/06/2011 - 09:31:46 ---A- - C:\Windows\Prefetch\PCDRSYSINFOSOFTWARE.P5X-47F2E010.pf
O45 - LFCP:[MD5.8ED545143065E6B152D3712DCABE4494] - 03/06/2011 - 09:31:52 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-A010D183.pf
O45 - LFCP:[MD5.CB923B2282F7F55573ECACA723884FB7] - 03/06/2011 - 09:31:52 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-6A249820.pf
O45 - LFCP:[MD5.CB7C22D381D794A66969DC2945229A0F] - 03/06/2011 - 09:31:52 ---A- - C:\Windows\Prefetch\VSSVC.EXE-6C8F0C66.pf
O45 - LFCP:[MD5.8BC5057581954F8062EF6DA7D636C5A0] - 03/06/2011 - 09:33:11 ---A- - C:\Windows\Prefetch\APPUPDATER.EXE-808A29F1.pf
O45 - LFCP:[MD5.18E0C858FE603B867C695E441E939DD7] - 03/06/2011 - 09:33:22 ---A- - C:\Windows\Prefetch\PCDRREALTIME.P5X-12BE1659.pf
O45 - LFCP:[MD5.850F6023600E273FE8FA603FA5B27684] - 03/06/2011 - 10:17:08 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.9CFE15256EC27DFEE13DD83DEF8826A2] - 03/06/2011 - 10:17:10 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.BA541F7EB23BE81A670A1F85C2A0AE4E] - 03/06/2011 - 10:17:10 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.217D03AAB6F85556D8C0639791738BE4] - 03/06/2011 - 10:17:11 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.565924734C94C8EB7B3D603C151A40C8] - 03/06/2011 - 10:26:52 ---A- - C:\Windows\Prefetch\SWRITER.EXE-83F9C56D.pf
O45 - LFCP:[MD5.CC0DE3572A2344E814E07D47B9B4E576] - 03/06/2011 - 10:45:52 ---A- - C:\Windows\Prefetch\SOFFICE.BIN-F938F4DB.pf
O45 - LFCP:[MD5.40F4161874B619B822D01738C7B2EEA9] - 03/06/2011 - 10:45:52 ---A- - C:\Windows\Prefetch\SOFFICE.EXE-05AADC00.pf
O45 - LFCP:[MD5.98BCD40E22CE4F103715B10DEF9C18F5] - 03/06/2011 - 10:51:05 ---A- - C:\Windows\Prefetch\CCLEANER64.EXE-4469D777.pf
O45 - LFCP:[MD5.A580E553428E8B787581DBFC22E7AEA6] - 03/06/2011 - 10:52:00 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-0E1E7B82.pf
O45 - LFCP:[MD5.DAEEC3A481A04614399D0F8956EDA2CE] - 03/06/2011 - 10:53:16 ---A- - C:\Windows\Prefetch\VERCLSID.EXE-FBC502B5.pf
O45 - LFCP:[MD5.4E5AC449848C003157C3D7892ADA94AD] - 03/06/2011 - 10:53:26 ---A- - C:\Windows\Prefetch\VERCLSID.EXE-AB0FD091.pf
O45 - LFCP:[MD5.C97744B07F501BFAB1393259AD78F3DE] - 03/06/2011 - 10:55:10 ---A- - C:\Windows\Prefetch\TASKENG.EXE-35FA9C06.pf
O45 - LFCP:[MD5.251E6E37DE2E913523B955D49D9A0E45] - 03/06/2011 - 10:56:19 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4B6CB38A.pf
O45 - LFCP:[MD5.24C8180844CE191FC50AFAD16F61F3DB] - 03/06/2011 - 10:58:14 ---A- - C:\Windows\Prefetch\WOW_HELPER.EXE-1FBB551F.pf
O45 - LFCP:[MD5.37FBE10BA3F0B96A27DFBDAE9D879370] - 03/06/2011 - 10:58:27 ---A- - C:\Windows\Prefetch\CHROME.EXE-B1877B61.pf
O45 - LFCP:[MD5.CF98E6868FF0CCBD79CACE433879ECA9] - 03/06/2011 - 11:01:27 ---A- - C:\Windows\Prefetch\CONSENT.EXE-40419367.pf
O45 - LFCP:[MD5.470115AD5EDBBDC7CACC16D7863A13A7] - 03/06/2011 - 11:01:32 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6389524F.pf
O45 - LFCP:[MD5.BDE18C3313E29D4B96358C189EA1E6E7] - 03/06/2011 - 11:02:04 ---A- - C:\Windows\Prefetch\CONIME.EXE-4691AE88.pf
O45 - LFCP:[MD5.987FB5240E51DBBAD2DF6D3A919D123D] - 07/05/2011 - 15:04:48 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-44162447.pf
O45 - LFCP:[MD5.99C4AF4E78C4A09D2902F3AD4F038991] - 07/05/2011 - 15:04:48 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-69C456C3.pf
O45 - LFCP:[MD5.CE19F0AD3D9DF078F50BC9F94946250D] - 13/05/2011 - 18:22:11 ---A- - C:\Windows\Prefetch\MCINST.EXE-DC9271B0.pf
O45 - LFCP:[MD5.C928C3CB033E7326604D28E1787DA0D0] - 13/05/2011 - 18:22:37 ---A- - C:\Windows\Prefetch\MCAGENT.EXE-8F4C307E.pf
O45 - LFCP:[MD5.1E8E92E4806371E2AF05965B98669D1F] - 14/05/2011 - 08:49:28 ---A- - C:\Windows\Prefetch\MCSVRCNT.EXE-ECC2405E.pf
O45 - LFCP:[MD5.EE1DF730461A5393B98CE0FF4F3CA26D] - 14/05/2011 - 11:23:48 ---A- - C:\Windows\Prefetch\TUAUTOUPDATECHECK.EXE-F4AF8D12.pf
O45 - LFCP:[MD5.8E5297F80BBE73D1F2A28A8193AAFE2A] - 14/05/2011 - 14:52:11 ---A- - C:\Windows\Prefetch\GOOGLEUPDATEONDEMAND.EXE-F30053F1.pf
O45 - LFCP:[MD5.C07BD085BE14392A002D3B51CDFC5124] - 15/05/2011 - 18:24:59 ---A- - C:\Windows\Prefetch\MCUPDMGR.EXE-2483B4A1.pf
O45 - LFCP:[MD5.99684A549A9A8292E2FA5B75448780C1] - 15/05/2011 - 18:25:00 ---A- - C:\Windows\Prefetch\MCVSMAP.EXE-88A2FB49.pf
O45 - LFCP:[MD5.A4034CF3A8DF68C8EDD0AEB39B1C6FAF] - 16/05/2011 - 15:25:27 ---A- - C:\Windows\Prefetch\MCINFO.EXE-640DD0DA.pf
O45 - LFCP:[MD5.5826C876B337DB5CAF424716F6EAD82A] - 17/05/2011 - 19:23:49 ---A- - C:\Windows\Prefetch\HWUPDCHK.EXE-D91D03E3.pf
O45 - LFCP:[MD5.E62F22925EE194BBE5D342D6D0182AA1] - 17/05/2011 - 20:28:53 ---A- - C:\Windows\Prefetch\FSVIEWERSETUP45.EXE-89D0910A.pf
O45 - LFCP:[MD5.3F345633AA7C1B03DE59B6D4FDC98F32] - 17/05/2011 - 20:29:55 ---A- - C:\Windows\Prefetch\ASKINSTALLCHECKER-1.5.0.0.EXE-626263B9.pf
O45 - LFCP:[MD5.F5C9156DF3353069F4E8235173214492] - 18/05/2011 - 09:56:07 ---A- - C:\Windows\Prefetch\MSKXAGNT.EXE-3B9F2A0F.pf
O45 - LFCP:[MD5.146D943FB55064794208E6C1C8BA5E3A] - 18/05/2011 - 10:28:28 ---A- - C:\Windows\Prefetch\THE-KMPLAYER_THE_KMPLAYER_3.0-D09675B1.pf
O45 - LFCP:[MD5.986A08DB5B6139C9C2A2EC740D6E9929] - 18/05/2011 - 14:52:59 ---A- - C:\Windows\Prefetch\ESTANTAUTORUNV.EXE-271CB2A3.pf
O45 - LFCP:[MD5.1E8BFDF2655E6151C5CBE51A493B39A4] - 18/05/2011 - 14:53:01 ---A- - C:\Windows\Prefetch\CLISTART.EXE-091A18CD.pf
O45 - LFCP:[MD5.51C32E26D5BA0A2BB60229390644F467] - 18/05/2011 - 14:53:09 ---A- - C:\Windows\Prefetch\BTLIVEUPDATE.EXE-07D229E9.pf
O45 - LFCP:[MD5.6D8DFC18F699A9FF355325C2B3D6AAD0] - 18/05/2011 - 14:53:13 ---A- - C:\Windows\Prefetch\MOM.EXE-F911D5BC.pf
O45 - LFCP:[MD5.06A229DEC4B40E38C1750E4D08C6B7B2] - 18/05/2011 - 14:53:21 ---A- - C:\Windows\Prefetch\CCC.EXE-6C5FA59C.pf
O45 - LFCP:[MD5.A64BCDE4816FFC7E8C7CEF98CAB5A3B3] - 18/05/2011 - 15:16:11 ---A- - C:\Windows\Prefetch\MCHOST.EXE-DF335CC7.pf
O45 - LFCP:[MD5.640F14924D0FA51FDE039D92D40B34BB] - 18/05/2011 - 15:42:07 ---A- - C:\Windows\Prefetch\MSKXAGNT.EXE-97F1504C.pf
O45 - LFCP:[MD5.721F3B6EFCD40944172A6080EE6F0D6B] - 18/05/2011 - 17:19:02 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-F6E20E14.pf
O45 - LFCP:[MD5.2ECB5D29948335B9807FE4623D8C0BA9] - 19/05/2011 - 12:07:15 ---A- - C:\Windows\Prefetch\TUDEFRAGBACKEND64.EXE-95F6110F.pf
O45 - LFCP:[MD5.77543C9E736D363BEDFEA26581209790] - 19/05/2011 - 12:36:45 ---A- - C:\Windows\Prefetch\SOUNDRECORDER.EXE-6AF6B428.pf
O45 - LFCP:[MD5.AD17A6AC07FEC23502279C292CB59549] - 19/05/2011 - 20:03:53 ---A- - C:\Windows\Prefetch\ONECLICK.EXE-83CABF1B.pf
O45 - LFCP:[MD5.C43D240DC905BC6CC0DF22C8DB77E02A] - 19/05/2011 - 20:16:03 ---A- - C:\Windows\Prefetch\MRT.EXE-46668014.pf
O45 - LFCP:[MD5.CEEB327DFEA7CE15DC72D2ACC9BA82B0] - 20/05/2011 - 05:24:21 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-CA30EC67.pf
O45 - LFCP:[MD5.EC15BEDB5AA19674C10C934C3C542765] - 20/05/2011 - 07:01:17 ---A- - C:\Windows\Prefetch\Layout.ini
O45 - LFCP:[MD5.934F74AF8B40AE065F0A09A040E2EEE0] - 20/05/2011 - 07:01:28 ---A- - C:\Windows\Prefetch\DFRGNTFS.EXE-ACFD6573.pf
O45 - LFCP:[MD5.175A0FF71877F2C5A029DB2F37171AAB] - 20/05/2011 - 07:14:11 ---A- - C:\Windows\Prefetch\TUNEUPUTILITIESAPP64.EXE-5237EE63.pf
O45 - LFCP:[MD5.9EE5A3E4F8765B7F658352635C7D66B0] - 20/05/2011 - 17:14:59 ---A- - C:\Windows\Prefetch\ONECLICKSTARTER.EXE-50CB36A4.pf
O45 - LFCP:[MD5.B63E7884353D8A2EBC460AFADBA79BFF] - 20/05/2011 - 17:36:56 ---A- - C:\Windows\Prefetch\TUNEUPSYSTEMSTATUSCHECK.EXE-47547C3B.pf
O45 - LFCP:[MD5.42674C96162D3AF3A43E7F8A0E11D63E] - 20/05/2011 - 17:39:50 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-997353284-3083872996-573379082-1000.snp.db
O45 - LFCP:[MD5.D458EE97CF3E0F493DE27408B58D9380] - 20/05/2011 - 21:26:24 ---A- - C:\Windows\Prefetch\WLTUSER.EXE-C4083456.pf
O45 - LFCP:[MD5.33B7A4722BA697099B062529C9422846] - 20/05/2011 - 22:03:01 ---A- - C:\Windows\Prefetch\SIDEBAR.EXE-BA7094F6.pf
O45 - LFCP:[MD5.DAC81A8416B29F934F4BB424F7ACD547] - 20/05/2011 - 23:17:24 ---A- - C:\Windows\Prefetch\TURATINGSYNCH.EXE-04DDE932.pf
O45 - LFCP:[MD5.7F1474B3EFF9BB2666135FEC009590FC] - 20/05/2011 - 23:49:40 ---A- - C:\Windows\Prefetch\MCSVRCNT.EXE-4914669B.pf
O45 - LFCP:[MD5.D6CF9A686B21B47C1599BF04BF422FD4] - 20/05/2011 - 23:49:40 ---A- - C:\Windows\Prefetch\MCUPDMGR.EXE-80D5DADE.pf
O45 - LFCP:[MD5.E84F2380173F4B7AA65960978D8F8EDB] - 20/05/2011 - 23:49:47 ---A- - C:\Windows\Prefetch\MCUPDATE.EXE-8E5BB827.pf
O45 - LFCP:[MD5.34914FABC91193F2BC070ED9673646EE] - 20/05/2011 - 23:50:00 ---A- - C:\Windows\Prefetch\MCVSMAP.EXE-F42DC9ED.pf
O45 - LFCP:[MD5.D6AC37008DAC0F22625C59042E56F0C3] - 20/05/2011 - 23:50:03 ---A- - C:\Windows\Prefetch\MCODS.EXE-2005F4F8.pf
O45 - LFCP:[MD5.A1C888F2D243F50FFB1B9B57B3674402] - 20/05/2011 - 23:50:48 ---A- - C:\Windows\Prefetch\MCINSUPD.EXE-616C7579.pf
O45 - LFCP:[MD5.9DFA184B6C45503FA2D9C28799F270D9] - 20/05/2011 - 23:55:22 ---A- - C:\Windows\Prefetch\AUTOUPDATER.EXE-9A11F344.pf
O45 - LFCP:[MD5.BF4302A15DC789AFF39904A9B78AEE17] - 20/05/2011 - 23:55:38 ---A- - C:\Windows\Prefetch\MCAGENT.EXE-E4C61513.pf
O45 - LFCP:[MD5.906F6CA9788EFCA30EB201FB982E0F19] - 20/05/2011 - 23:58:37 ---A- - C:\Windows\Prefetch\UPDATEPCTUTO.EXE-82365710.pf
O45 - LFCP:[MD5.3BCCFC5B0FF23B1007C96E16C9E18F4F] - 22/05/2011 - 14:45:43 ---A- - C:\Windows\Prefetch\MSFEEDSSYNC.EXE-73556D15.pf
O45 - LFCP:[MD5.1A81DD2967C39F0415FABCBA7363D576] - 23/05/2011 - 08:01:29 ---A- - C:\Windows\Prefetch\WINMAIL.EXE-6A547899.pf
O45 - LFCP:[MD5.B11AFC4480D144EBA0C2E1B1F85680A8] - 25/05/2011 - 16:14:29 ---A- - C:\Windows\Prefetch\WLMAIL.EXE-EC6E2196.pf
O45 - LFCP:[MD5.49EC8F417A5ACF4EB4969C3662607F75] - 26/05/2011 - 05:27:50 ---A- - C:\Windows\Prefetch\SYNTPENH.EXE-8A564A20.pf
O45 - LFCP:[MD5.C45C34114158839F61F73BEB05B43989] - 26/05/2011 - 14:51:18 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-1066739E.pf
O45 - LFCP:[MD5.81E6B773D244D02DF94691555FAB780B] - 27/05/2011 - 19:37:09 ---A- - C:\Windows\Prefetch\WUDFHOST.EXE-DEBBE5F1.pf
O45 - LFCP:[MD5.1E72B0BD4C624FC2D9478437C25E532B] - 27/05/2011 - 21:44:49 ---A- - C:\Windows\Prefetch\ACRORD32INFO.EXE-080408D2.pf
O45 - LFCP:[MD5.F7FF4246B2854B39FAF013DDAFAF0C64] - 29/05/2011 - 16:00:44 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-997353284-3083872996-573379082-1000.db
O45 - LFCP:[MD5.B67C7D71A91F895964C2786BE8E558C7] - 29/05/2011 - 16:00:44 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-997353284-3083872996-573379082-1000.db
O45 - LFCP:[MD5.7960E4535007400820FFD1C20536AF3F] - 29/05/2011 - 16:10:04 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-D152D88B.pf
O45 - LFCP:[MD5.8B3F58CDE977CD19A9EA3AF4B95AA54E] - 29/05/2011 - 20:28:57 ---A- - C:\Windows\Prefetch\MFPMP.EXE-DAD29CCD.pf
O45 - LFCP:[MD5.083F92F8DECC2E070024FD5607FC084B] - 30/05/2011 - 10:58:26 ---A- - C:\Windows\Prefetch\ADOBEARM.EXE-F9223367.pf
O45 - LFCP:[MD5.62B4D9AE7BF7F44DF6A740A06026D2C8] - 31/05/2011 - 10:26:32 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx
O45 - LFCP:[MD5.307D6846F19754F40843B906C1D28FA0] - 31/05/2011 - 10:27:33 ---A- - C:\Windows\Prefetch\AgCx_SC1.db
O45 - LFCP:[MD5.91779F1CB863D33C695853F86305414E] - 31/05/2011 - 10:35:59 ---A- - C:\Windows\Prefetch\AURORA.SCR-ED3E3DBD.pf
O45 - LFCP:[MD5.EFF4E7F5AC69A46474604DD8670668AC] - 31/05/2011 - 11:08:59 ---A- - C:\Windows\Prefetch\IEUSER.EXE-5376DA49.pf
O45 - LFCP:[MD5.439233E1D7E131114F726DAF208A9A51] - 31/05/2011 - 11:11:28 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-A033F7A0.pf
O45 - LFCP:[MD5.032198E109191B233FA0F960290DCA38] - 31/05/2011 - 11:11:29 ---A- - C:\Windows\Prefetch\HPSWP_CLIPBOOK.EXE-54D7BE1C.pf
O45 - LFCP:[MD5.E1BC9D66111F010A0631BF7AD219E177] - 31/05/2011 - 13:02:02 ---A- - C:\Windows\Prefetch\SNDVOL.EXE-425BC49B.pf
O45 - LFCP:[MD5.D5BF9F6A83AF3257EB0CBA8A3078541A] - 31/05/2011 - 21:27:07 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-3D9E8D72.pf
---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\autoupdater [Key] . (.PCTuto - autoupdater.) -- C:\Users\Cat\AppData\Roaming\PCTuto\PCTuto\autoupdater.exe
O53 - SMSR:HKLM\...\startupreg\pctuto [Key] . (.PCTUTO - PCTUTO.) -- C:\Program Files (x86)\PCTuto\pctuto.exe
---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0
... à suivre