kazanastra
Nombre d'articles : 0

SafeBootMin:64bit: AppMgmt – Service
SafeBootMin:64bit: Base – Driver Group
SafeBootMin:64bit: Boot Bus Extender – Driver Group
SafeBootMin:64bit: Boot file system – Driver Group
SafeBootMin:64bit: File system – Driver Group
SafeBootMin:64bit: Filter – Driver Group
SafeBootMin:64bit: HelpSvc – Service
SafeBootMin:64bit: MCODS – Reg Error: Value error.
SafeBootMin:64bit: PCI Configuration – Driver Group
SafeBootMin:64bit: PNP Filter – Driver Group
SafeBootMin:64bit: Primary disk – Driver Group
SafeBootMin:64bit: sacsvr – Service
SafeBootMin:64bit: SCSI Class – Driver Group
SafeBootMin:64bit: System Bus Extender – Driver Group
SafeBootMin:64bit: vmms – Service
SafeBootMin:64bit: WinDefend – C:Program FilesWindows DefenderMpSvc.dll (Microsoft Corporation)
SafeBootMin:64bit: {36FC9E60-C465-11CF-8056-444553540000} – Universal Serial Bus controllers
SafeBootMin:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} – CD-ROM Drive
SafeBootMin:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} – DiskDrive
SafeBootMin:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} – Standard floppy disk controller
SafeBootMin:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} – Hdc
SafeBootMin:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} – Keyboard
SafeBootMin:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} – Mouse
SafeBootMin:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} – PCMCIA Adapters
SafeBootMin:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} – SCSIAdapter
SafeBootMin:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} – System
SafeBootMin:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} – Floppy disk drive
SafeBootMin:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} – Volume shadow copy
SafeBootMin:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} – IEEE 1394 Bus host controllers
SafeBootMin:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} – Volume
SafeBootMin:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} – Human Interface Devices
SafeBootMin:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} – SBP2 IEEE 1394 Devices
SafeBootMin:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} – SecurityDevices
SafeBootMin: AppMgmt – Service
SafeBootMin: Base – Driver Group
SafeBootMin: Boot Bus Extender – Driver Group
SafeBootMin: Boot file system – Driver Group
SafeBootMin: File system – Driver Group
SafeBootMin: Filter – Driver Group
SafeBootMin: HelpSvc – Service
SafeBootMin: MCODS – Reg Error: Value error.
SafeBootMin: PCI Configuration – Driver Group
SafeBootMin: PNP Filter – Driver Group
SafeBootMin: Primary disk – Driver Group
SafeBootMin: sacsvr – Service
SafeBootMin: SCSI Class – Driver Group
SafeBootMin: System Bus Extender – Driver Group
SafeBootMin: vmms – Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} – Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} – CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} – DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} – Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} – Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} – Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} – Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} – PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} – SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} – System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} – Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} – Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} – IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} – Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} – Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} – SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} – SecurityDevices

SafeBootNet:64bit: AppMgmt – Service
SafeBootNet:64bit: Base – Driver Group
SafeBootNet:64bit: Boot Bus Extender – Driver Group
SafeBootNet:64bit: Boot file system – Driver Group
SafeBootNet:64bit: File system – Driver Group
SafeBootNet:64bit: Filter – Driver Group
SafeBootNet:64bit: HelpSvc – Service
SafeBootNet:64bit: MCODS – Reg Error: Value error.
SafeBootNet:64bit: Messenger – Service
SafeBootNet:64bit: NDIS Wrapper – Driver Group
SafeBootNet:64bit: NetBIOSGroup – Driver Group
SafeBootNet:64bit: NetDDEGroup – Driver Group
SafeBootNet:64bit: Network – Driver Group
SafeBootNet:64bit: NetworkProvider – Driver Group
SafeBootNet:64bit: PCI Configuration – Driver Group
SafeBootNet:64bit: PNP Filter – Driver Group
SafeBootNet:64bit: PNP_TDI – Driver Group
SafeBootNet:64bit: Primary disk – Driver Group
SafeBootNet:64bit: rdsessmgr – Service
SafeBootNet:64bit: sacsvr – Service
SafeBootNet:64bit: SCSI Class – Driver Group
SafeBootNet:64bit: Streams Drivers – Driver Group
SafeBootNet:64bit: System Bus Extender – Driver Group
SafeBootNet:64bit: TDI – Driver Group
SafeBootNet:64bit: vmms – Service
SafeBootNet:64bit: WinDefend – C:Program FilesWindows DefenderMpSvc.dll (Microsoft Corporation)
SafeBootNet:64bit: WudfUsbccidDriver – Driver
SafeBootNet:64bit: {36FC9E60-C465-11CF-8056-444553540000} – Universal Serial Bus controllers
SafeBootNet:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} – CD-ROM Drive
SafeBootNet:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} – DiskDrive
SafeBootNet:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} – Standard floppy disk controller
SafeBootNet:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} – Hdc
SafeBootNet:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} – Keyboard
SafeBootNet:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} – Mouse
SafeBootNet:64bit: {4D36E972-E325-11CE-BFC1-08002BE10318} – Net
SafeBootNet:64bit: {4D36E973-E325-11CE-BFC1-08002BE10318} – NetClient
SafeBootNet:64bit: {4D36E974-E325-11CE-BFC1-08002BE10318} – NetService
SafeBootNet:64bit: {4D36E975-E325-11CE-BFC1-08002BE10318} – NetTrans
SafeBootNet:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} – PCMCIA Adapters
SafeBootNet:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} – SCSIAdapter
SafeBootNet:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} – System
SafeBootNet:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} – Floppy disk drive
SafeBootNet:64bit: {50DD5230-BA8A-11D1-BF5D-0000F805F530} – Smart card readers
SafeBootNet:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} – Volume shadow copy
SafeBootNet:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} – IEEE 1394 Bus host controllers
SafeBootNet:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} – Volume
SafeBootNet:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} – Human Interface Devices
SafeBootNet:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} – SBP2 IEEE 1394 Devices
SafeBootNet:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} – SecurityDevices
SafeBootNet: AppMgmt – Service
SafeBootNet: Base – Driver Group
SafeBootNet: Boot Bus Extender – Driver Group
SafeBootNet: Boot file system – Driver Group
SafeBootNet: File system – Driver Group
SafeBootNet: Filter – Driver Group
SafeBootNet: HelpSvc – Service
SafeBootNet: MCODS – Reg Error: Value error.
SafeBootNet: Messenger – Service
SafeBootNet: NDIS Wrapper – Driver Group
SafeBootNet: NetBIOSGroup – Driver Group
SafeBootNet: NetDDEGroup – Driver Group
SafeBootNet: Network – Driver Group
SafeBootNet: NetworkProvider – Driver Group
SafeBootNet: PCI Configuration – Driver Group
SafeBootNet: PNP Filter – Driver Group
SafeBootNet: PNP_TDI – Driver Group
SafeBootNet: Primary disk – Driver Group
SafeBootNet: rdsessmgr – Service
SafeBootNet: sacsvr – Service
SafeBootNet: SCSI Class – Driver Group
SafeBootNet: Streams Drivers – Driver Group
SafeBootNet: System Bus Extender – Driver Group
SafeBootNet: TDI – Driver Group
SafeBootNet: vmms – Service
SafeBootNet: WudfUsbccidDriver – Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} – Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} – CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} – DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} – Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} – Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} – Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} – Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} – Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} – NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} – NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} – NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} – PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} – SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} – System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} – Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} – Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} – Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} – IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} – Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} – Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} – SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} – SecurityDevices

ActiveX:64bit: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} – Microsoft Windows Media Player 12.0
ActiveX:64bit: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} – %SystemRoot%system32regsvr32.exe /s /n /i:/UserInstall %SystemRoot%system32themeui.dll
ActiveX:64bit: {2D46B6DC-2207-486B-B523-A557E6D54B47} – C:windowssystem32cmd.exe /D /C start C:windowssystem32ie4uinit.exe -ClearIconCache
ActiveX:64bit: {3af36230-a269-11d1-b5bf-0000f8051515} – Offline Browsing Pack
ActiveX:64bit: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} – “%ProgramFiles%Windows MailWinMail.exe” OCInstallUserConfigOE
ActiveX:64bit: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} – DirectDrawEx
ActiveX:64bit: {45ea75a0-a269-11d1-b5bf-0000f8051515} – Internet Explorer Help
ActiveX:64bit: {4f645220-306d-11d2-995d-00c04f98bbc9} – Microsoft Windows Script 5.6
ActiveX:64bit: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} – Internet Explorer Setup Tools
ActiveX:64bit: {630b1da0-b465-11d1-9948-00c04f98bbc9} – Browsing Enhancements
ActiveX:64bit: {6BF52A52-394A-11d3-B153-00C04F79FAA6} – Microsoft Windows Media Player
ActiveX:64bit: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} – MSN Site Access
ActiveX:64bit: {7790769C-0471-11d2-AF11-00C04FA35D02} – Address Book 7
ActiveX:64bit: {89820200-ECBD-11cf-8B85-00AA005B4340} – regsvr32.exe /s /n /i:U shell32.dll
ActiveX:64bit: {89820200-ECBD-11cf-8B85-00AA005B4383} – C:windowsSystem32ie4uinit.exe -UserConfig
ActiveX:64bit: {89B4C1CD-B018-4511-B0A1-5476DBF70820} – C:Windowssystem32Rundll32.exe C:Windowssystem32mscories.dll,Install
ActiveX:64bit: {9381D8F2-0288-11D0-9501-00AA00B911A5} – Dynamic HTML Data Binding
ActiveX:64bit: {C9E9A340-D1F1-11D0-821E-444553540600} – Internet Explorer Core Fonts
ActiveX:64bit: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} – HTML Help
ActiveX:64bit: {E92B03AB-B707-11d2-9CBD-0000F87A369E} – Active Directory Service Interface
ActiveX:64bit: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} – .NET Framework
ActiveX:64bit: {FEBEF00C-046D-438D-8A88-BF94A6C9E703} – .NET Framework
ActiveX:64bit: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} – %SystemRoot%system32unregmp2.exe /ShowWMP
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} – Java (Sun)
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} – Microsoft Windows Media Player 12.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} – %SystemRoot%system32regsvr32.exe /s /n /i:/UserInstall %SystemRoot%system32themeui.dll
ActiveX: {2D46B6DC-2207-486B-B523-A557E6D54B47} – C:windowssystem32cmd.exe /D /C start C:windowssystem32ie4uinit.exe -ClearIconCache
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} – Offline Browsing Pack
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} – “%ProgramFiles(x86)%Windows MailWinMail.exe” OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} – DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} – Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} – Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} – Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} – Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} – Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} – MSN Site Access
ActiveX: {73FA19D0-2D75-11D2-995D-00C04F98BBC9} – Dossiers Web
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} – Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} – .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} – regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} –
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} – C:WindowsSysWOW64Rundll32.exe C:WindowsSysWOW64mscories.dll,Install
ActiveX: {8A69D345-D564-463c-AFF1-A69D9E530F96} – “C:Program Files (x86)GoogleChromeApplication29.0.1547.66Installerchrmstp.exe” –configure-user-settings –verbose-logging –system-level –multi-install –chrome
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} – Dynamic HTML Data Binding
ActiveX: {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} – .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} – Internet Explorer Core Fonts
ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} – Macromedia Shockwave Flash
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} – HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} – Active Directory Service Interface
ActiveX: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} – .NET Framework
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} – %SystemRoot%system32unregmp2.exe /ShowWMP

Drivers32:64bit: msacm.l3acm – C:WindowsSystem32l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm – C:WindowsSysWOW64l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid – C:windowsSysWow64iccvid.dll (Radius Inc.)
Drivers32: VIDC.VMnc – C:windowsSysWow64vmnc.dll (VMware, Inc.)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders – Created Within 30 Days ==========

[2013/09/09 14:31:49 | 000,602,112 | —- | C] (OldTimer Tools) — C:UsersAdministrateurDesktopOTL.exe
[2013/09/01 16:27:04 | 000,000,000 | —D | C] — C:Sounds
[2013/09/01 12:54:25 | 000,000,000 | —D | C] — C:UsersAdministrateurAppDataRoamingMalwarebytes
[2013/09/01 12:54:23 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsMalwarebytes’ Anti-Malware
[2013/09/01 12:54:22 | 000,025,928 | —- | C] (Malwarebytes Corporation) — C:windowsSysNativedriversmbam.sys
[2013/09/01 12:54:22 | 000,000,000 | —D | C] — C:ProgramDataMalwarebytes
[2013/09/01 12:54:21 | 000,000,000 | —D | C] — C:Program Files (x86)Malwarebytes’ Anti-Malware
[2013/09/01 12:54:11 | 000,000,000 | —D | C] — C:UsersAdministrateurAppDataLocalPrograms
[2013/09/01 07:40:26 | 000,000,000 | —D | C] — C:windowsERUNT
[2013/09/01 07:31:14 | 000,000,000 | —D | C] — C:AdwCleaner
[2013/08/31 04:21:33 | 000,000,000 | —D | C] — C:Program Files (x86)ZHPDiag
[2013/08/31 04:21:33 | 000,000,000 | —D | C] — C:ZHP
[2013/08/29 22:02:10 | 000,000,000 | —D | C] — C:UsersAdministrateurAppDataRoamingRadiocom
[2013/08/29 22:02:05 | 000,000,000 | —D | C] — C:UsersAdministrateurRichMedia
[2013/08/29 22:02:05 | 000,000,000 | —D | C] — C:UsersAdministrateurAppDataLocalRadiocom
[2013/08/28 19:51:21 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsKaspersky Anti-Virus 2013
[2013/08/28 19:50:59 | 000,064,856 | —- | C] (Kaspersky Lab) — C:windowsSysNativeklfphc.dll
[2013/08/28 19:50:00 | 000,000,000 | —D | C] — C:windowsELAMBKUP
[2013/08/28 19:49:54 | 000,000,000 | —D | C] — C:ProgramDataKaspersky Lab
[2013/08/28 19:49:54 | 000,000,000 | —D | C] — C:Program Files (x86)Kaspersky Lab
[2013/08/28 19:49:21 | 000,620,128 | —- | C] (Kaspersky Lab ZAO) — C:windowsSysNativedriversklif.sys
[2013/08/28 19:49:21 | 000,090,208 | —- | C] (Kaspersky Lab ZAO) — C:windowsSysNativedriversklflt.sys
[2013/08/28 18:51:18 | 000,000,000 | —D | C] — C:ProgramDataMicrosoftWindowsStart MenuProgramsRich Media Player
[2013/08/28 18:50:55 | 000,000,000 | —D | C] — C:UsersAdministrateurAppDataLocalRich Media Player
[2013/08/28 03:45:25 | 000,000,000 | —D | C] — C:ProgramDataBDLogging
[2013/08/28 03:45:14 | 000,511,328 | —- | C] (Microsoft Corporation) — C:windowscapicom.dll
[2013/08/28 02:32:01 | 000,000,000 | —D | C] — C:UsersAdministrateurAppDataRoamingQuickScan
[2013/08/28 02:27:54 | 000,000,000 | —D | C] — C:Program FilesBitdefender
[2013/08/28 02:17:27 | 000,000,000 | —D | C] — C:Program FilesCommon FilesBitdefender
[2013/08/27 01:23:34 | 000,000,000 | –SD | C] — C:windowsSysWow64Microsoft
[2013/08/26 22:34:51 | 000,000,000 | RHSD | C] — C:Autorun.inf
[2013/08/25 20:07:42 | 000,000,000 | —D | C] — C:UsbFix
[2013/08/14 16:46:34 | 000,391,168 | —- | C] (Microsoft Corporation) — C:windowsSysWow64ieui.dll
[2013/08/14 16:46:33 | 000,526,336 | —- | C] (Microsoft Corporation) — C:windowsSysNativeieui.dll
[2013/08/14 16:46:30 | 000,109,056 | —- | C] (Microsoft Corporation) — C:windowsSysWow64iesysprep.dll
[2013/08/14 16:46:30 | 000,089,600 | —- | C] (Microsoft Corporation) — C:windowsSysNativeRegisterIEPKEYs.exe
[2013/08/14 16:46:30 | 000,071,680 | —- | C] (Microsoft Corporation) — C:windowsSysWow64RegisterIEPKEYs.exe
[2013/08/14 16:46:30 | 000,067,072 | —- | C] (Microsoft Corporation) — C:windowsSysNativeiesetup.dll
[2013/08/14 16:46:30 | 000,061,440 | —- | C] (Microsoft Corporation) — C:windowsSysWow64iesetup.dll
[2013/08/14 16:46:30 | 000,051,712 | —- | C] (Microsoft Corporation) — C:windowsSysNativeie4uinit.exe
[2013/08/14 16:46:30 | 000,039,936 | —- | C] (Microsoft Corporation) — C:windowsSysNativeiernonce.dll
[2013/08/14 16:46:30 | 000,033,280 | —- | C] (Microsoft Corporation) — C:windowsSysWow64iernonce.dll
[2013/08/14 16:46:29 | 000,136,704 | —- | C] (Microsoft Corporation) — C:windowsSysNativeiesysprep.dll
[2013/08/14 16:46:24 | 000,855,552 | —- | C] (Microsoft Corporation) — C:windowsSysNativejscript.dll
[2013/08/14 16:46:24 | 000,603,136 | —- | C] (Microsoft Corporation) — C:windowsSysNativemsfeeds.dll
[2013/08/14 16:46:23 | 003,958,784 | —- | C] (Microsoft Corporation) — C:windowsSysNativejscript9.dll
[2013/08/14 16:46:23 | 000,690,688 | —- | C] (Microsoft Corporation) — C:windowsSysWow64jscript.dll
[2013/08/13 21:29:09 | 001,472,512 | —- | C] (Microsoft Corporation) — C:windowsSysNativecrypt32.dll
[2013/08/13 21:29:08 | 000,224,256 | —- | C] (Microsoft Corporation) — C:windowsSysNativewintrust.dll
[2013/08/13 21:29:07 | 000,139,776 | —- | C] (Microsoft Corporation) — C:windowsSysNativecryptnet.dll
[2013/08/13 21:27:41 | 001,888,768 | —- | C] (Microsoft Corporation) — C:windowsSysNativeWMVDECOD.DLL
[2013/08/13 21:27:40 | 001,620,992 | —- | C] (Microsoft Corporation) — C:windowsSysWow64WMVDECOD.DLL
[2013/08/13 21:27:39 | 001,217,024 | —- | C] (Microsoft Corporation) — C:windowsSysNativerpcrt4.dll
[2013/08/13 21:27:34 | 003,913,664 | —- | C] (Microsoft Corporation) — C:windowsSysWow64ntoskrnl.exe
[2013/08/13 21:27:32 | 003,968,960 | —- | C] (Microsoft Corporation) — C:windowsSysWow64ntkrnlpa.exe
[2013/08/13 21:27:31 | 005,550,528 | —- | C] (Microsoft Corporation) — C:windowsSysNativentoskrnl.exe
[2013/08/13 21:27:31 | 001,732,032 | —- | C] (Microsoft Corporation) — C:windowsSysNativentdll.dll
[2013/08/13 21:27:30 | 000,243,712 | —- | C] (Microsoft Corporation) — C:windowsSysNativewow64.dll
[2013/08/13 21:27:29 | 000,014,336 | —- | C] (Microsoft Corporation) — C:windowsSysWow64ntvdm64.dll
[2013/08/13 21:27:28 | 000,025,600 | —- | C] (Microsoft Corporation) — C:windowsSysWow64setup16.exe
[2013/08/13 21:27:28 | 000,005,120 | —- | C] (Microsoft Corporation) — C:windowsSysWow64wow32.dll
[2013/08/13 21:27:27 | 000,007,680 | —- | C] (Microsoft Corporation) — C:windowsSysWow64instnm.exe
[2013/08/13 21:27:27 | 000,002,048 | —- | C] (Microsoft Corporation) — C:windowsSysWow64user.exe
[1 C:windows*.tmp files -> C:windows*.tmp -> ]

========== Files – Modified Within 30 Days ==========

[2013/09/10 23:59:56 | 001,566,088 | —- | M] () — C:windowsSysNativePerfStringBackup.INI
[2013/09/10 23:59:56 | 000,712,096 | —- | M] () — C:windowsSysNativeperfh00C.dat
[2013/09/10 23:59:56 | 000,622,464 | —- | M] () — C:windowsSysNativeperfh009.dat
[2013/09/10 23:59:56 | 000,133,806 | —- | M] () — C:windowsSysNativeperfc00C.dat
[2013/09/10 23:59:56 | 000,109,310 | —- | M] () — C:windowsSysNativeperfc009.dat
[2013/09/10 23:52:00 | 000,001,082 | —- | M] () — C:windowstasksGoogleUpdateTaskMachineUA.job
[2013/09/10 23:14:00 | 000,000,830 | —- | M] () — C:windowstasksAdobe Flash Player Updater.job
[2013/09/10 22:59:02 | 000,000,964 | —- | M] () — C:windowstasksFacebookUpdateTaskUserS-1-5-21-3799678134-1094475672-2913924675-500UA.job
[2013/09/10 22:46:00 | 000,000,924 | —- | M] () — C:windowstasksFacebookUpdateTaskUserS-1-5-21-3799678134-1094475672-2913924675-1000UA.job
[2013/09/10 21:58:11 | 000,067,584 | –S- | M] () — C:windowsbootstat.dat
[2013/09/10 19:59:01 | 000,000,942 | —- | M] () — C:windowstasksFacebookUpdateTaskUserS-1-5-21-3799678134-1094475672-2913924675-500Core.job
[2013/09/10 19:46:00 | 000,000,902 | —- | M] () — C:windowstasksFacebookUpdateTaskUserS-1-5-21-3799678134-1094475672-2913924675-1000Core.job
[2013/09/09 14:31:56 | 000,602,112 | —- | M] (OldTimer Tools) — C:UsersAdministrateurDesktopOTL.exe
[2013/09/09 14:11:32 | 000,001,078 | —- | M] () — C:windowstasksGoogleUpdateTaskMachineCore.job
[2013/09/09 01:50:14 | 000,038,784 | -H– | M] () — C:windowsSysNative7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/09/09 01:50:14 | 000,038,784 | -H– | M] () — C:windowsSysNative7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/09/09 01:42:11 | 623,069,829 | —- | M] () — C:windowsMEMORY.DMP
[2013/09/09 01:42:10 | 505,257,983 | -HS- | M] () — C:hiberfil.sys
[2013/09/02 17:55:08 | 000,000,512 | —- | M] () — C:PhysicalDisk0_MBR.bin
[2013/08/30 04:22:17 | 000,178,448 | —- | M] (Kaspersky Lab ZAO) — C:windowsSysNativedriverskneps.sys
[2013/08/30 04:22:17 | 000,054,368 | —- | M] (Kaspersky Lab ZAO) — C:windowsSysNativedriverskltdi.sys
[2013/08/30 04:22:17 | 000,029,528 | —- | M] (Kaspersky Lab) — C:windowsSysNativedriversklmouflt.sys
[2013/08/30 04:22:16 | 000,620,128 | —- | M] (Kaspersky Lab ZAO) — C:windowsSysNativedriversklif.sys
[2013/08/30 04:22:16 | 000,029,016 | —- | M] (Kaspersky Lab) — C:windowsSysNativedriversklkbdflt.sys
[2013/08/30 04:22:15 | 000,090,208 | —- | M] (Kaspersky Lab ZAO) — C:windowsSysNativedriversklflt.sys
[2013/08/28 18:42:38 | 000,230,495 | —- | M] () — C:ProgramData1377711683.bdinstall.bin
[2013/08/28 03:46:34 | 000,354,473 | —- | M] () — C:ProgramData1377657701.bdinstall.bin
[2013/08/28 03:46:20 | 000,000,385 | —- | M] () — C:windowsSysNativeuser_gensett.xml
[2013/08/28 03:45:37 | 000,000,000 | -H– | M] () — C:windowsSysNativedriversMsft_Kernel_avchv_01009.Wdf
[2013/08/28 03:40:23 | 000,370,476 | —- | M] () — C:ProgramData1377653102.bdinstall.bin
[1 C:windows*.tmp files -> C:windows*.tmp -> ]

========== Files Created – No Company Name ==========

[2013/08/31 04:31:50 | 000,000,512 | —- | C] () — C:PhysicalDisk0_MBR.bin
[2013/08/28 18:42:38 | 000,230,495 | —- | C] () — C:ProgramData1377711683.bdinstall.bin
[2013/08/28 03:46:34 | 000,354,473 | —- | C] () — C:ProgramData1377657701.bdinstall.bin
[2013/08/28 03:46:20 | 000,000,385 | —- | C] () — C:windowsSysNativeuser_gensett.xml
[2013/08/28 03:45:37 | 000,000,000 | -H– | C] () — C:windowsSysNativedriversMsft_Kernel_avchv_01009.Wdf
[2013/08/28 03:40:23 | 000,370,476 | —- | C] () — C:ProgramData1377653102.bdinstall.bin
[2013/07/27 10:22:55 | 000,000,708 | —- | C] () — C:UsersAdministrateurBibliothèques – Raccourci.lnk
[2013/03/20 16:29:00 | 001,590,564 | —- | C] () — C:windowsSysWow64PerfStringBackup.INI
[2013/03/12 18:52:42 | 000,000,382 | —- | C] () — C:windowsODBC.INI
[2013/01/06 22:55:35 | 000,000,293 | —- | C] () — C:windowsgame.ini
[2012/11/30 18:23:17 | 000,000,000 | —- | C] () — C:windowsToDisc.INI
[2012/04/07 17:14:14 | 000,128,312 | —- | C] () — C:windowsSysWow64GFNEX.dll
[2012/04/07 17:12:39 | 000,028,528 | —- | C] () — C:windowsrlt8723a_chip_bt40_fw_asic_rom_patch.dll
[2012/04/07 17:09:55 | 000,451,072 | —- | C] () — C:windowsSysWow64ISSRemoveSP.exe
[2012/04/07 17:03:23 | 000,000,000 | —- | C] () — C:windowsativpsrm.bin
[2012/04/07 17:00:51 | 000,204,960 | —- | C] () — C:windowsSysWow64ativvsvl.dat
[2012/04/07 17:00:51 | 000,157,152 | —- | C] () — C:windowsSysWow64ativvsva.dat
[2012/04/07 17:00:51 | 000,003,917 | —- | C] () — C:windowsSysWow64atipblag.dat
[2012/01/20 12:49:58 | 000,059,904 | —- | C] () — C:windowsSysWow64OpenVideo.dll
[2012/01/20 12:49:48 | 000,054,784 | —- | C] () — C:windowsSysWow64OVDecode.dll

========== ZeroAccess Check ==========

[2009/07/14 05:55:00 | 000,000,227 | RHS- | M] () — C:windowsassemblyDesktop.ini

[HKEY_CURRENT_USERSoftwareClassesclsid{42aedc87-2188-41fd-b9a3-0c966feabec1}InProcServer32] /64

[HKEY_CURRENT_USERSoftwareClassesWow6432nodeclsid{42aedc87-2188-41fd-b9a3-0c966feabec1}InProcServer32]

[HKEY_CURRENT_USERSoftwareClassesclsid{fbeb8a05-beee-4442-804e-409d6c4515e9}InProcServer32] /64

[HKEY_CURRENT_USERSoftwareClassesWow6432nodeclsid{fbeb8a05-beee-4442-804e-409d6c4515e9}InProcServer32]

[HKEY_LOCAL_MACHINESoftwareClassesclsid{42aedc87-2188-41fd-b9a3-0c966feabec1}InProcServer32] /64
“” = C:WindowsSysNativeshell32.dll — [2013/02/27 06:52:56 | 014,172,672 | —- | M] (Microsoft Corporation)
“ThreadingModel” = Apartment

[HKEY_LOCAL_MACHINESoftwareWow6432NodeClassesclsid{42aedc87-2188-41fd-b9a3-0c966feabec1}InProcServer32]
“” = %SystemRoot%system32shell32.dll — [2013/02/27 05:55:05 | 012,872,704 | —- | M] (Microsoft Corporation)
“ThreadingModel” = Apartment

[HKEY_LOCAL_MACHINESoftwareClassesclsid{5839FCA9-774D-42A1-ACDA-D6A79037F57F}InProcServer32] /64
“” = C:WindowsSysNativewbemfastprox.dll — [2009/07/14 02:40:51 | 000,909,312 | —- | M] (Microsoft Corporation)
“ThreadingModel” = Free

[HKEY_LOCAL_MACHINESoftwareWow6432NodeClassesclsid{5839FCA9-774D-42A1-ACDA-D6A79037F57F}InProcServer32]
“” = %systemroot%system32wbemfastprox.dll — [2010/11/21 04:24:25 | 000,606,208 | —- | M] (Microsoft Corporation)
“ThreadingModel” = Free

[HKEY_LOCAL_MACHINESoftwareClassesclsid{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}InProcServer32] /64
“” = C:WindowsSysNativewbemwbemess.dll — [2009/07/14 02:41:56 | 000,505,856 | —- | M] (Microsoft Corporation)
“ThreadingModel” = Both

[HKEY_LOCAL_MACHINESoftwareWow6432NodeClassesclsid{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}InProcServer32]

========== LOP Check ==========

[2013/09/10 21:58:36 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingInternetEverywhere
[2013/05/17 12:52:12 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingNotepad++
[2013/05/19 20:13:30 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingPowerISO
[2013/08/28 02:32:01 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingQuickScan
[2013/08/29 22:02:10 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingRadiocom
[2013/07/24 07:37:14 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingTheta
[2013/06/03 14:08:48 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingToshiba
[2013/07/04 04:51:53 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingUnity
[2013/07/20 12:30:21 | 000,000,000 | —D | M] — C:UsersAdministrateurAppDataRoamingWildTangent
[2013/01/01 15:25:14 | 000,000,000 | —D | M] — C:UsersInvitéAppDataRoamingInternetEverywhere
[2012/12/15 17:40:50 | 000,000,000 | —D | M] — C:UsersInvitéAppDataRoamingToshiba

========== Purity Check ==========

========== Custom Scans ==========


[2011/12/28 04:59:24 | 000,498,688 | —- | M] (Microsoft Corporation) MD5=1C7857B62DE5994A75B054A9FD4C3825 — C:windowsSysNativedriversafd.sys
[2011/12/28 04:59:24 | 000,498,688 | —- | M] (Microsoft Corporation) MD5=1C7857B62DE5994A75B054A9FD4C3825 — C:Windowswinsxsamd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17752_none_35e10b89752ee0f5afd.sys
[2011/12/28 05:01:36 | 000,498,176 | —- | M] (Microsoft Corporation) MD5=36A14FD1A23F57046361733B792CA8DB — C:Windowswinsxsamd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21887_none_364f3a028e605345afd.sys
[2010/11/21 04:24:08 | 000,499,712 | —- | M] (Microsoft Corporation) MD5=D31DC7A16DEA4A9BAF179F3D6FBDB38C — C:Windowswinsxsamd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17514_none_360e4801750ca991afd.sys
[2011/04/25 03:34:03 | 000,499,200 | —- | M] (Microsoft Corporation) MD5=D5B031C308A409A0A576BFF4CF083D30 — C:Windowswinsxsamd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17603_none_3618198975057170afd.sys
[2011/04/25 04:09:35 | 000,499,200 | —- | M] (Microsoft Corporation) MD5=F4AD06143EAC303F55D0E86C40802976 — C:Windowswinsxsamd64_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.21712_none_3695e61e8e2c13d4afd.sys


[2011/02/26 06:19:21 | 002,616,320 | —- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 — C:Windowswinsxswow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652dexplorer.exe
[2011/02/25 07:19:30 | 002,871,808 | —- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 — C:Windowsexplorer.exe
[2011/02/25 07:19:30 | 002,871,808 | —- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 — C:Windowswinsxsamd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0baexplorer.exe
[2011/02/26 07:14:34 | 002,871,808 | —- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 — C:Windowswinsxsamd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332explorer.exe
[2010/11/21 04:24:25 | 002,616,320 | —- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 — C:Windowswinsxswow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafbexplorer.exe
[2011/02/25 06:30:54 | 002,616,320 | —- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E — C:WindowsSysWOW64explorer.exe
[2011/02/25 06:30:54 | 002,616,320 | —- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E — C:Windowswinsxswow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5explorer.exe
[2010/11/21 04:24:11 | 002,872,320 | —- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 — C:Windowswinsxsamd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900explorer.exe


[2009/07/14 00:19:57 | 000,105,472 | —- | M] (Microsoft Corporation) MD5=FA55C73D4AFFA7EE23AC4BE53B4592D3 — C:windowsSysNativedriversi8042prt.sys
[2009/07/14 00:19:57 | 000,105,472 | —- | M] (Microsoft Corporation) MD5=FA55C73D4AFFA7EE23AC4BE53B4592D3 — C:windowsSysNativeDriverStoreFileRepositorykeyboard.inf_amd64_neutral_0684fdc43059f486i8042prt.sys
[2009/07/14 00:19:57 | 000,105,472 | —- | M] (Microsoft Corporation) MD5=FA55C73D4AFFA7EE23AC4BE53B4592D3 — C:windowsSysNativeDriverStoreFileRepositorymsmouse.inf_amd64_neutral_7a5f47d3150cc0ebi8042prt.sys
[2009/07/14 00:19:57 | 000,105,472 | —- | M] (Microsoft Corporation) MD5=FA55C73D4AFFA7EE23AC4BE53B4592D3 — C:Windowswinsxsamd64_keyboard.inf_31bf3856ad364e35_6.1.7601.17514_none_f5747347ef9876bfi8042prt.sys
[2009/07/14 00:19:57 | 000,105,472 | —- | M] (Microsoft Corporation) MD5=FA55C73D4AFFA7EE23AC4BE53B4592D3 — C:Windowswinsxsamd64_msmouse.inf_31bf3856ad364e35_6.1.7600.16385_none_aa28fd23ec0c39f9i8042prt.sys


[2009/07/14 02:39:16 | 000,031,232 | —- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA — C:Windowswinsxsamd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17514_none_04709031736ac277lsass.exe
[2011/11/17 07:20:34 | 000,031,232 | —- | M] (Microsoft Corporation) MD5=0A10B74FBB437FF9A23F1D5DE4446A83 — C:Windowswinsxsamd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.21861_none_04c1204e8cb39c3flsass.exe
[2012/06/04 08:51:10 | 000,031,232 | —- | M] (Microsoft Corporation) MD5=79C908CAA6F43021EB05F4C733A927D1 — C:Windowswinsxsamd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22010_none_04f609a88c8c279clsass.exe
[2011/11/17 07:33:55 | 000,031,232 | —- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 — C:windowsSysNativelsass.exe
[2011/11/17 07:33:55 | 000,031,232 | —- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 — C:Windowswinsxsamd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17725_none_0466c45b7371f20dlsass.exe
[2011/11/17 07:33:55 | 000,031,232 | —- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 — C:Windowswinsxsamd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17856_none_044756c773895c5elsass.exe


[2010/11/21 04:23:51 | 000,261,632 | —- | M] (Microsoft Corporation) MD5=09594D1089C523423B32A4229263F068 — C:windowsSysNativedriversnetbt.sys
[2010/11/21 04:23:51 | 000,261,632 | —- | M] (Microsoft Corporation) MD5=09594D1089C523423B32A4229263F068 — C:Windowswinsxsamd64_microsoft-windows-netbt_31bf3856ad364e35_6.1.7601.17514_none_be8acdd10de3b1a6netbt.sys


[2009/07/14 02:14:41 | 000,020,992 | —- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 — C:Windowswinsxsx86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356svchost.exe
[2011/03/01 09:10:51 | 000,027,648 | —- | M] (Microsoft Corporation) MD5=635455A95EB8EC47AC72142E501465ED — C:Windowswinsxsamd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7601.21671_none_14271b75353e4391svchost.exe
[2011/03/01 09:07:49 | 000,027,648 | —- | M] (Microsoft Corporation) MD5=6F68F63794097E54F36474ED4384B759 — C:windowsSysNativesvchost.exe
[2011/03/01 09:07:49 | 000,027,648 | —- | M] (Microsoft Corporation) MD5=6F68F63794097E54F36474ED4384B759 — C:Windowswinsxsamd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7601.17568_none_13af509c1c123937svchost.exe
[2011/03/01 09:07:49 | 000,021,504 | —- | M] (Microsoft Corporation) MD5=A91A288C91F9D9F1CFA4FAA9893C4D55 — C:Windowswinsxsx86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7601.21671_none_b8087ff17ce0d25bsvchost.exe
[2013/04/04 14:50:32 | 000,218,184 | —- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC — C:Program Files (x86)Malwarebytes’ Anti-MalwareChameleonsvchost.exe
[2009/07/14 02:39:46 | 000,027,136 | —- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D — C:Windowswinsxsamd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48csvchost.exe
[2011/03/01 09:05:31 | 000,021,504 | —- | M] (Microsoft Corporation) MD5=ECDB182F885292145826C58252B53000 — C:WindowsSysWOW64svchost.exe
[2011/03/01 09:05:31 | 000,021,504 | —- | M] (Microsoft Corporation) MD5=ECDB182F885292145826C58252B53000 — C:Windowswinsxsx86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7601.17568_none_b790b51863b4c801svchost.exe


[2012/10/03 18:56:54 | 001,914,248 | —- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88tcpip.sys
[2011/09/29 18:41:37 | 001,912,176 | —- | M] (Microsoft Corporation) MD5=3810F06A4D74A7D62641EE73D6B3C660 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21828_none_11c6e9949627e69ctcpip.sys
[2013/05/08 07:14:42 | 001,900,392 | —- | M] (Microsoft Corporation) MD5=3E94650745D4DAB67E161F5F32CEA597 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_11d29984961f0be0tcpip.sys
[2010/11/21 04:24:08 | 001,924,480 | —- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37tcpip.sys
[2012/08/22 19:06:13 | 001,901,936 | —- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145tcpip.sys
[2012/03/30 11:26:36 | 001,901,424 | —- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23atcpip.sys
[2011/04/25 06:33:51 | 001,923,968 | —- | M] (Microsoft Corporation) MD5=92CE29D95AC9DD2D0EE9061D551BA250 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_114de9497cfe9316tcpip.sys
[2013/05/08 07:39:01 | 001,910,632 | —- | M] (Microsoft Corporation) MD5=9849EA3843A2ADBDD1497E97A85D8CAE — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_11278ac57d1aa96btcpip.sys
[2012/03/30 12:35:47 | 001,918,320 | —- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740dtcpip.sys
[2013/07/06 06:20:38 | 001,900,992 | —- | M] (Microsoft Corporation) MD5=B27F13153343BC37A27EAE01634D94E1 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22378_none_1190b9b296509a2ftcpip.sys
[2013/01/03 07:00:54 | 001,913,192 | —- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143atcpip.sys
[2011/04/25 07:16:34 | 001,927,552 | —- | M] (Microsoft Corporation) MD5=B77977AEB2FF159D01DB08A309989C5F — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_11cbb5de9625357atcpip.sys
[2013/01/04 06:47:43 | 001,901,416 | —- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8tcpip.sys
[2011/03/19 08:45:16 | 001,927,552 | —- | M] (Microsoft Corporation) MD5=CB6A53EF141CC3DA32DA54F7E75D301B — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21687_none_118505f696597a9dtcpip.sys
[2012/10/03 18:44:29 | 001,902,472 | —- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0tcpip.sys
[2013/07/06 07:03:53 | 001,910,208 | —- | M] (Microsoft Corporation) MD5=DB74544B75566C974815E79A62433F29 — C:windowsSysNativedriverstcpip.sys
[2013/07/06 07:03:53 | 001,910,208 | —- | M] (Microsoft Corporation) MD5=DB74544B75566C974815E79A62433F29 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18203_none_114dcae97cfeb81btcpip.sys
[2011/03/19 08:39:54 | 001,924,480 | —- | M] (Microsoft Corporation) MD5=DC08410DB2D0CC542DACAC7A90E6CB7A — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17582_none_10f667b97d405c20tcpip.sys
[2012/08/22 19:12:50 | 001,913,200 | —- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668tcpip.sys
[2011/09/29 17:29:28 | 001,923,952 | —- | M] (Microsoft Corporation) MD5=FC62769E7BFF2896035AEED399108162 — C:Windowswinsxsamd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17697_none_10f09b257d43f3ebtcpip.sys


[2010/11/21 04:23:55 | 000,026,624 | —- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 — C:WindowsSysWOW64userinit.exe
[2010/11/21 04:23:55 | 000,026,624 | —- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 — C:Windowswinsxsx86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116userinit.exe
[2010/11/21 04:24:28 | 000,030,720 | —- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 — C:windowsSysNativeuserinit.exe
[2010/11/21 04:24:28 | 000,030,720 | —- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 — C:Windowswinsxsamd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824cuserinit.exe


[2010/11/21 04:23:47 | 000,295,808 | —- | M] (Microsoft Corporation) MD5=0D08D2F3B3FF84E433346669B5E0F639 — C:windowsSysNativeDriverStoreFileRepositoryvolume.inf_amd64_neutral_df8bea40ac96ca21volsnap.sys
[2010/11/21 04:23:47 | 000,295,808 | —- | M] (Microsoft Corporation) MD5=0D08D2F3B3FF84E433346669B5E0F639 — C:Windowswinsxsamd64_volume.inf_31bf3856ad364e35_6.1.7601.17514_none_73dcbcf012b4850evolsnap.sys
[2011/02/25 07:28:30 | 000,296,320 | —- | M] (Microsoft Corporation) MD5=879CE6AEA3FE874AD4C500B6B6198EB0 — C:Windowswinsxsamd64_volume.inf_31bf3856ad364e35_6.1.7601.21668_none_74344b472bf715e9volsnap.sys
[2011/02/25 07:25:38 | 000,296,320 | —- | M] (Microsoft Corporation) MD5=DF8126BD41180351A093A3AD2FC8903B — C:windowsSysNativedriversvolsnap.sys
[2011/02/25 07:25:38 | 000,296,320 | —- | M] (Microsoft Corporation) MD5=DF8126BD41180351A093A3AD2FC8903B — C:windowsSysNativeDriverStoreFileRepositoryvolume.inf_amd64_neutral_e7c4cd5b40e03494volsnap.sys
[2011/02/25 07:25:38 | 000,296,320 | —- | M] (Microsoft Corporation) MD5=DF8126BD41180351A093A3AD2FC8903B — C:Windowswinsxsamd64_volume.inf_31bf3856ad364e35_6.1.7601.17567_none_73a9ae3212da5cc8volsnap.sys


[2009/07/14 02:39:52 | 000,129,024 | —- | M] (Microsoft Corporation) MD5=94355C28C1970635A31B3FE52EB7CEBA — C:windowsSysNativewininit.exe
[2009/07/14 02:39:52 | 000,129,024 | —- | M] (Microsoft Corporation) MD5=94355C28C1970635A31B3FE52EB7CEBA — C:Windowswinsxsamd64_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_8ce7aa761e01ad49wininit.exe
[2009/07/14 02:14:45 | 000,096,256 | —- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 — C:WindowsSysWOW64wininit.exe
[2009/07/14 02:14:45 | 000,096,256 | —- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 — C:Windowswinsxsx86_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_30c90ef265a43c13wininit.exe


[2010/11/21 04:24:29 | 000,390,656 | —- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 — C:windowsSysNativewinlogon.exe
[2010/11/21 04:24:29 | 000,390,656 | —- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 — C:Windowswinsxsamd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636winlogon.exe
[2013/04/04 14:50:32 | 000,218,184 | —- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC — C:Program Files (x86)Malwarebytes’ Anti-MalwareChameleonwinlogon.exe


[2013/07/20 12:30:29 | 001,012,600 | —- | M] (WildTangent) — C:UsersAdministrateurAppDataRoamingWildTangentWildTangent GamesAppDPConfigInstallTouchpoints-toshiba.exe
[2013/07/20 12:30:03 | 001,012,592 | —- | M] (WildTangent) — C:UsersAdministrateurAppDataRoamingWildTangentWildTangent GamesAppDPConfigInstallTouchpoints-wildgames.exe
[2013/07/20 12:29:51 | 000,000,179 | —- | M] () — C:UsersAdministrateurAppDataRoamingWildTangentWildTangent GamesAppDPConfigInstallTouchpoints-wildgames.exe_filedata
[2013/07/20 12:30:23 | 000,000,177 | —- | M] () — C:UsersAdministrateurAppDataRoamingWildTangentWildTangent GamesAppDPConfigInstallTouchpoints-toshiba.exe_filedata


[2013/08/28 03:40:23 | 000,370,476 | —- | M] () — C:ProgramData1377653102.bdinstall.bin
[2013/08/28 03:46:34 | 000,354,473 | —- | M] () — C:ProgramData1377657701.bdinstall.bin
[2013/08/28 18:42:38 | 000,230,495 | —- | M] () — C:ProgramData1377711683.bdinstall.bin
[2013/08/28 02:22:25 | 000,262,144 | —- | M] () — C:ProgramDatantuser.dat
[2013/08/28 02:22:37 | 000,005,120 | -HS- | M] () — C:ProgramDatantuser.dat.LOG1
[2013/08/28 02:22:25 | 000,000,000 | -HS- | M] () — C:ProgramDatantuser.dat.LOG2
[2013/08/28 02:22:26 | 000,065,536 | -HS- | M] () — C:ProgramDatantuser.dat{c2a52f38-0f23-11e3-9eb3-24ec99122cd8}.TM.blf
[2013/08/28 02:22:26 | 000,524,288 | -HS- | M] () — C:ProgramDatantuser.dat{c2a52f38-0f23-11e3-9eb3-24ec99122cd8}.TMContainer00000000000000000001.regtrans-ms
[2013/08/28 02:22:26 | 000,524,288 | -HS- | M] () — C:ProgramDatantuser.dat{c2a52f38-0f23-11e3-9eb3-24ec99122cd8}.TMContainer00000000000000000002.regtrans-ms
[2013/08/28 02:22:36 | 000,065,536 | -HS- | M] () — C:ProgramDatantuser.dat{c2a52f4d-0f23-11e3-9eb3-24ec99122cd8}.TM.blf
[2013/08/28 02:22:36 | 000,524,288 | -HS- | M] () — C:ProgramDatantuser.dat{c2a52f4d-0f23-11e3-9eb3-24ec99122cd8}.TMContainer00000000000000000001.regtrans-ms
[2013/08/28 02:22:36 | 000,524,288 | -HS- | M] () — C:ProgramDatantuser.dat{c2a52f4d-0f23-11e3-9eb3-24ec99122cd8}.TMContainer00000000000000000002.regtrans-ms


[2013/08/28 18:41:46 | 000,002,691 | —- | M] () — C:bdlog.txt
[2010/11/21 04:23:51 | 000,383,786 | RHS- | M] () — C:bootmgr
[2012/03/15 20:26:49 | 000,008,192 | —- | M] () — C:BOOTSECT.BAK
[2013/09/09 01:42:10 | 505,257,983 | -HS- | M] () — C:hiberfil.sys
[2013/09/09 01:42:11 | 2105,335,807 | -HS- | M] () — C:pagefile.sys
[2013/09/02 17:55:08 | 000,000,512 | —- | M] () — C:PhysicalDisk0_MBR.bin
[2013/08/26 22:33:21 | 000,012,060 | —- | M] () — C:UsbFix [Clean 3] USER-TOSH.txt
[2013/08/26 22:35:03 | 000,002,944 | —- | M] () — C:UsbFix [Listing 1 ] USER-TOSH.txt
[2013/09/05 00:42:38 | 000,004,534 | —- | M] () — C:UsbFix [Listing 2 ] USER-TOSH.txt
[2013/08/25 23:35:12 | 000,010,964 | —- | M] () — C:UsbFix [Scan 1] USER-TOSH.txt
[2013/08/26 22:21:47 | 000,010,191 | —- | M] () — C:UsbFix [Scan 2] USER-TOSH.txt
[2013/08/28 01:36:31 | 000,010,853 | —- | M] () — C:UsbFix [Scan 5] USER-TOSH.txt
[2013/08/30 02:24:24 | 000,009,829 | —- | M] () — C:UsbFix [Scan 6] USER-TOSH.txt


[2009/07/14 05:54:24 | 000,000,174 | -HS- | M] () — C:Program Files (x86)desktop.ini


[2012/11/07 09:27:01 | 000,002,446 | —- | M] () — C:Program Files (x86)Internet Explorerdebug.log
[2013/06/23 03:11:56 | 000,024,576 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet ExplorerExtExport.exe
[2013/06/23 03:11:56 | 000,002,843 | —- | M] () — C:Program Files (x86)Internet Explorerie9props.propdesc
[2013/06/23 03:11:56 | 000,697,344 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Exploreriedvtool.dll
[2013/06/23 03:11:56 | 000,467,456 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorerieinstal.exe
[2013/06/23 03:11:56 | 000,222,208 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorerielowutil.exe
[2013/07/26 04:11:59 | 000,257,536 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorerieproxy.dll
[2013/07/26 04:12:00 | 000,236,032 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet ExplorerIEShims.dll
[2013/07/26 04:49:06 | 000,770,648 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Exploreriexplore.exe
[2013/06/23 03:11:56 | 000,440,320 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorerjsdbgui.dll
[2013/07/26 04:12:04 | 000,108,032 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorerjsdebuggeride.dll
[2013/06/23 03:11:56 | 000,052,224 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet ExplorerJSProfilerCore.dll
[2013/06/23 03:11:56 | 000,147,456 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorerjsprofilerui.dll
[2013/06/23 03:11:56 | 000,285,080 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorermsdbg2.dll
[2013/06/23 03:11:56 | 000,294,400 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorernetworkinspection.dll
[2013/06/23 03:11:56 | 000,392,080 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorerpdm.dll
[2013/06/23 03:11:56 | 000,070,568 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorerpdmproxy100.dll
[2013/07/26 04:13:06 | 000,218,112 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Internet Explorersqmapi.dll